From 2fbeacd89102844d60933577eceae49a19e3e0f3 Mon Sep 17 00:00:00 2001 From: DeepSource Bot Date: Fri, 7 Feb 2025 20:08:05 +0000 Subject: [PATCH] =?UTF-8?q?fix(deps):=20update=20npm/happy-dom=20from=2014?= =?UTF-8?q?.12.3=20=E2=86=92=2015.10.2=20fix(deps):=20update=20npm/happy-d?= =?UTF-8?q?om=20from=2014.12.3=20=E2=86=92=2015.10.2?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit This pull request addresses security vulnerabilities in this repository by updating dependencies to a safe version. We recommend manually auditing the package manifest files to verify the fixes. ### Upgrade Summary **happy-dom**: 14.12.3 → 15.10.2 - Fixes [CVE-2024-51757](https://nvd.nist.gov/vuln/detail/CVE-2024-51757) (Critical severity) - References: - [https://github.com/capricorn86/happy-dom/security/advisories/GHSA-96g7-g7g9-jxw8](https://github.com/capricorn86/happy-dom/security/advisories/GHSA-96g7-g7g9-jxw8) - [https://nvd.nist.gov/vuln/detail/CVE-2024-51757](https://nvd.nist.gov/vuln/detail/CVE-2024-51757) - [https://github.com/capricorn86/happy-dom/issues/1585](https://github.com/capricorn86/happy-dom/issues/1585) - [https://github.com/capricorn86/happy-dom/pull/1586](https://github.com/capricorn86/happy-dom/pull/1586) - [https://github.com/capricorn86/happy-dom/commit/5ee0b1676d4ce20cc2a70d1c9c8d6f1e3f57efac](https://github.com/capricorn86/happy-dom/commit/5ee0b1676d4ce20cc2a70d1c9c8d6f1e3f57efac) - [https://github.com/capricorn86/happy-dom/commit/d23834c232f1cf5519c9418b073f1dcec6b2f0fd](https://github.com/capricorn86/happy-dom/commit/d23834c232f1cf5519c9418b073f1dcec6b2f0fd) - [https://github.com/capricorn86/happy-dom](https://github.com/capricorn86/happy-dom) - [https://github.com/capricorn86/happy-dom/releases/tag/v15.10.2](https://github.com/capricorn86/happy-dom/releases/tag/v15.10.2) --- 🤖 This pull request was automatically generated by DeepSource SCA. To view all vulnerabilities in this repository, please visit the [dashboard](https://app.deepsource.com/gh/QuackatronHQ/gitbutler/dependencies/). --- pnpm-lock.yaml | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/pnpm-lock.yaml b/pnpm-lock.yaml index 18fe45bf65a..6109e4e20db 100644 --- a/pnpm-lock.yaml +++ b/pnpm-lock.yaml @@ -4269,9 +4269,9 @@ packages: resolution: {integrity: sha512-GGTKBX4SD7Wdb8mqeDLni2oaRGYQWjWHGKPQ24ZMnUtKfcsVoiv4uX8+LJr1K6U5VW2Lu1BwJnj7uiori0YtRw==} engines: {node: ^12.22.0 || ^14.16.0 || ^16.0.0 || >=17.0.0} - happy-dom@14.12.3: - resolution: {integrity: sha512-vsYlEs3E9gLwA1Hp+w3qzu+RUDFf4VTT8cyKqVICoZ2k7WM++Qyd2LwzyTi5bqMJFiIC/vNpTDYuxdreENRK/g==} - engines: {node: '>=16.0.0'} + happy-dom@15.10.2: + resolution: {integrity: sha512-NbA5XrSovenJIIcfixCREX3ZnV7yHP4phhbfuxxf4CPn+LZpz/jIM9EqJ2DrPwgVDSMoAKH3pZwQvkbsSiCrUw==} + engines: {node: '>=18.0.0'} has-bigints@1.0.2: resolution: {integrity: sha512-tSvCKtBr9lkF0Ex0aQiP9N+OpV4zi2r/Nee5VkRDbaqv35RLYMzbwQfFSZZH0kR+Rd6302UJZ2p/bJCEoR3VoQ==} @@ -11264,7 +11264,7 @@ snapshots: graphql@16.9.0: {} - happy-dom@14.12.3: + happy-dom@15.10.2: dependencies: entities: 4.5.0 webidl-conversions: 7.0.0