Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update dependency ansi_up to v5 #332

Open
wants to merge 1 commit into
base: develop
Choose a base branch
from

Conversation

mend-for-github-com[bot]
Copy link

@mend-for-github-com mend-for-github-com bot commented Mar 25, 2021

This PR contains the following updates:

Package Type Update Change
ansi_up dependencies major ^2.0.2 -> ^5.0.0
ansi_up dependencies major ^2.0.2 -> ^5.0.0

By merging this PR, the below issues will be automatically resolved and closed:

Severity CVSS Score CVE GitHub Issue
Medium 6.1 CVE-2021-3377 #232

Release Notes

drudru/ansi_up

v5.0.0

Compare Source

If you had a malformed URL when using the OSC URL sequence, it would not be properly escaped.
Also, html escaping is now mandatory. The 'escape_for_html' property was removed.
As a result, we increased the MAJOR version to 5.

v4.0.4

Compare Source

  • Merged proper path to Typescript d.ts file in package.json (#​54)
  • Merged in an actual LICENSE file (no change to license) (#​53)

v4.0.3

Compare Source

Now supports escaped URL support - or 'terminal links' #​51
This is the proper solution to displaying URLs in a terminal.

Additional bug fixes were also merged in.

v4.0.2

Compare Source

v3.0.0

Compare Source

Now has proper Bold support.
Bug fixes and pull requests merged.


  • If you want to rebase/retry this PR, check this box.

@mend-for-github-com mend-for-github-com bot added the security fix Security fix generated by WhiteSource label Mar 25, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
security fix Security fix generated by WhiteSource
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

0 participants