Skip to content

Conversation

@renovate
Copy link

@renovate renovate bot commented Mar 18, 2023

This PR contains the following updates:

Package Change Age Confidence
debug ~2.2.0~2.6.9 age confidence

GitHub Vulnerability Alerts

CVE-2017-20165

A vulnerability classified as problematic has been found in debug-js debug up to 3.0.x. This affects the function useColors of the file src/node.js. The manipulation of the argument str leads to inefficient regular expression complexity. Upgrading to version 3.1.0 is able to address this issue. The name of the patch is c38a0166c266a679c8de012d4eaccec3f944e685. It is recommended to upgrade the affected component. The identifier VDB-217665 was assigned to this vulnerability. The patch has been backported to the 2.6.x branch in version 2.6.9.


Release Notes

debug-js/debug (debug)

v2.6.9

Compare Source

Patches
  • Remove ReDoS regexp in %o formatter: #​504
Credits

Huge thanks to @​zhuangya for their help!

v2.6.8

Compare Source

v2.6.7

Compare Source

v2.6.6

Compare Source

v2.6.5

Compare Source

v2.6.4

Compare Source

v2.6.3

Compare Source

v2.6.2

Compare Source

v2.6.1

Compare Source

v2.6.0

Compare Source

v2.5.2

Compare Source

v2.5.1

Compare Source

v2.5.0

Compare Source

v2.4.5

Compare Source

v2.4.4

Compare Source

v2.4.3

Compare Source

v2.4.2

Compare Source

v2.4.1

Compare Source

v2.4.0

Compare Source

v2.3.3

Compare Source

v2.3.2

Compare Source

v2.3.1

Compare Source

v2.3.0

Compare Source


Configuration

📅 Schedule: Branch creation - "" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.0 [security] fix(deps): update dependency debug to ~2.6.9 [security] Mar 27, 2023
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from 802ffd7 to 134ac73 Compare March 27, 2023 17:14
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.9 [security] fix(deps): update dependency debug to ~2.6.0 [security] May 29, 2023
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.0 [security] fix(deps): update dependency debug to ~2.6.9 [security] Jun 2, 2023
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from b718b6d to c595a95 Compare June 2, 2023 02:22
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from c595a95 to 3cf46f8 Compare June 9, 2023 05:47
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.9 [security] fix(deps): update dependency debug to ~2.6.0 [security] Jun 9, 2023
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.0 [security] fix(deps): update dependency debug to ~2.6.9 [security] Jun 10, 2023
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from 3cf46f8 to 9ba7dbc Compare June 10, 2023 11:49
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.9 [security] fix(deps): update dependency debug to ~2.6.0 [security] Jun 13, 2023
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from 9ba7dbc to 9024c77 Compare June 13, 2023 20:59
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.0 [security] fix(deps): update dependency debug to ~2.6.9 [security] Jun 16, 2023
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from 9024c77 to 36968d4 Compare June 16, 2023 02:50
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.9 [security] fix(deps): update dependency debug to ~2.6.0 [security] Jun 18, 2023
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from 36968d4 to 1bb1167 Compare June 18, 2023 11:50
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.0 [security] fix(deps): update dependency debug to ~2.6.9 [security] Jun 22, 2023
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from 1bb1167 to ab59577 Compare June 22, 2023 23:33
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.9 [security] fix(deps): update dependency debug to ~2.6.0 [security] Jun 29, 2023
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from ab59577 to d2cf4cb Compare June 29, 2023 23:36
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.0 [security] fix(deps): update dependency debug to ~2.6.9 [security] Jun 30, 2023
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from d2cf4cb to 0b9906e Compare June 30, 2023 17:52
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.9 [security] fix(deps): update dependency debug to ~2.6.0 [security] Jul 7, 2023
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from 0b9906e to 46f06db Compare July 7, 2023 23:42
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.0 [security] fix(deps): update dependency debug to ~2.6.9 [security] Jul 8, 2023
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from 46f06db to 0d46830 Compare July 8, 2023 05:25
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.9 [security] fix(deps): update dependency debug to ~2.6.0 [security] Jul 10, 2023
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from 0d46830 to 2060bb8 Compare July 10, 2023 05:54
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.0 [security] fix(deps): update dependency debug to ~2.6.9 [security] Jul 11, 2023
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from 2060bb8 to d23a5f8 Compare July 11, 2023 23:53
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.9 [security] fix(deps): update dependency debug to ~2.6.0 [security] Jul 17, 2023
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.0 [security] fix(deps): update dependency debug to ~2.6.9 [security] Aug 24, 2025
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from 5f256b1 to 0279182 Compare September 1, 2025 10:22
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.9 [security] fix(deps): update dependency debug to ~2.6.0 [security] Sep 1, 2025
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from 0279182 to e6bdfb6 Compare September 2, 2025 15:53
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.0 [security] fix(deps): update dependency debug to ~2.6.9 [security] Sep 2, 2025
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from e6bdfb6 to f463954 Compare September 27, 2025 03:01
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.9 [security] fix(deps): update dependency debug to ~2.6.0 [security] Sep 27, 2025
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from f463954 to da94942 Compare September 28, 2025 06:50
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.0 [security] fix(deps): update dependency debug to ~2.6.9 [security] Sep 28, 2025
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from da94942 to 7266ccc Compare October 23, 2025 19:56
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.9 [security] fix(deps): update dependency debug to ~2.6.0 [security] Oct 23, 2025
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from 7266ccc to b77ed46 Compare October 26, 2025 04:03
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.0 [security] fix(deps): update dependency debug to ~2.6.9 [security] Oct 26, 2025
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from b77ed46 to bc4205c Compare November 16, 2025 16:11
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.9 [security] fix(deps): update dependency debug to ~2.6.0 [security] Nov 16, 2025
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from bc4205c to 8316cfb Compare November 20, 2025 11:30
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.0 [security] fix(deps): update dependency debug to ~2.6.9 [security] Nov 20, 2025
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from 8316cfb to 64b4314 Compare December 4, 2025 11:46
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.9 [security] fix(deps): update dependency debug to ~2.6.0 [security] Dec 4, 2025
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from 64b4314 to 372120f Compare December 6, 2025 00:05
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.0 [security] fix(deps): update dependency debug to ~2.6.9 [security] Dec 6, 2025
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from 372120f to 56a5858 Compare December 30, 2025 10:57
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.9 [security] fix(deps): update dependency debug to ~2.6.0 [security] Dec 30, 2025
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from 56a5858 to e38b08c Compare January 2, 2026 07:37
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.0 [security] fix(deps): update dependency debug to ~2.6.9 [security] Jan 2, 2026
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from e38b08c to 947b531 Compare January 9, 2026 03:41
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.9 [security] fix(deps): update dependency debug to ~2.6.0 [security] Jan 9, 2026
@renovate renovate bot force-pushed the renovate/npm-debug-vulnerability branch from 947b531 to 6b0e056 Compare January 10, 2026 03:56
@renovate renovate bot changed the title fix(deps): update dependency debug to ~2.6.0 [security] fix(deps): update dependency debug to ~2.6.9 [security] Jan 10, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant