Skip to content
This repository has been archived by the owner on Dec 25, 2024. It is now read-only.

[Snyk] Upgrade express-session from 1.17.3 to 1.18.0 #814

Closed
wants to merge 1 commit into from

Conversation

Coteh
Copy link
Owner

@Coteh Coteh commented Jul 17, 2024

This PR was automatically created by Snyk using the credentials of a real user.


![snyk-top-banner](https://github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)

Snyk has created this PR to upgrade express-session from 1.17.3 to 1.18.0.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 1 version ahead of your current version.

  • The recommended version was released on 6 months ago.

Release notes
Package name: express-session
  • 1.18.0 - 2024-01-28
    • Add debug log for pathname mismatch
    • Add partitioned to cookie options
    • Add priority to cookie options
    • Fix handling errors from setting cookie
    • Support any type in secret that crypto.createHmac supports
    • deps: [email protected]
      • Fix expires option to reject invalid dates
      • perf: improve default decode speed
      • perf: remove slow string split in parse
    • deps: [email protected]
  • 1.17.3 - 2022-05-11
from express-session GitHub release notes

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

Snyk has created this PR to upgrade express-session from 1.17.3 to 1.18.0.

See this package in npm:
express-session

See this project in Snyk:
https://app.snyk.io/org/coteh/project/c779e2ce-a66d-48f0-8067-00ffb104f8f7?utm_source=github&utm_medium=referral&page=upgrade-pr
Copy link

codecov bot commented Jul 17, 2024

Codecov Report

All modified and coverable lines are covered by tests ✅

Project coverage is 82.89%. Comparing base (879342e) to head (ad00908).

Additional details and impacted files
@@           Coverage Diff           @@
##           master     #814   +/-   ##
=======================================
  Coverage   82.89%   82.89%           
=======================================
  Files          31       31           
  Lines        1222     1222           
=======================================
  Hits         1013     1013           
  Misses        209      209           
Flag Coverage Δ
?

Flags with carried forward coverage won't be shown. Click here to find out more.

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

Copy link

New and removed dependencies detected. Learn more about Socket for GitHub ↗︎

Package New capabilities Transitives Size Publisher
npm/[email protected] environment Transitive: filesystem, network +6 189 kB dougwilson

🚮 Removed packages: npm/[email protected]

View full report↗︎

Copy link

stale bot commented Sep 21, 2024

This issue has been automatically marked as stale because it has not had recent activity. It will be closed if no further activity occurs. Thank you for your contributions.

@stale stale bot added the wontfix label Sep 21, 2024
@stale stale bot closed this Sep 29, 2024
@Coteh Coteh deleted the snyk-upgrade-e493ad03027fb84dd949d4853d3e88bc branch December 25, 2024 03:53
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants