chore(deps): update dependency xml-crypto to v6 #2462
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
2.1.5->6.1.2Release Notes
node-saml/xml-crypto (xml-crypto)
v6.1.2Compare Source
cac1c8d)v6.1.1Compare Source
ab1c69e)v6.1.0Compare Source
badaf20)v6.0.1Compare Source
8ac6118)This addresses two critical CVE:
v6.0.0Compare Source
💣 Major Changes
getCertFromKeyInfotonoop#445🔗 Dependencies
📚 Documentation
v5.1.1Compare Source
🐛 Bug Fixes
v5.1.0Compare Source
🚀 Minor Changes
🔗 Dependencies
v5.0.0Compare Source
💣 Major Changes
getKeyInfo()private as it has no public consumers #412getKeyInfoContentforcing a consumer to choose #411🚀 Minor Changes
🔗 Dependencies
🐛 Bug Fixes
📚 Documentation
⚙️ Technical Tasks
v4.1.0Compare Source
💣 Major Changes
pemToDer()return type #364⚙️ Technical Tasks
xmldom#365findChilds()tofindChildren()#363v4.0.1Compare Source
🐛 Bug Fixes
v4.0.0Compare Source
💣 Major Changes
signingCert->publicCertandsigningKey->privateKey#315KeyInfoProvider#301🚀 Minor Changes
🔗 Dependencies
🐛 Bug Fixes
⚙️ Technical Tasks
no-unused-vars#349deprecation#347prefer-template#346no-this-alias#345masterbranch when generating changelog #342no-unused-vars#322no-prototype-builtins#321eqeqeqrule #320prefer-const#312no-var#311curly#310one-var#309v3.2.1Compare Source
💣 Major Changes
getKeyInfo()private as it has no public consumers #412getKeyInfoContentforcing a consumer to choose #411🚀 Minor Changes
🔗 Dependencies
🐛 Bug Fixes
📚 Documentation
⚙️ Technical Tasks
v3.2.0Compare Source
masterbranch when generating changelog (#341) (d53a771)96bdea8)a259d83)index.json release (#337) (10e8705)6bcbaa6)4b1e39e)a31e7ff)be17c06)v3.1.0Compare Source
💣 Major Changes
getKeyInfo()private as it has no public consumers #412getKeyInfoContentforcing a consumer to choose #411🚀 Minor Changes
🔗 Dependencies
🐛 Bug Fixes
📚 Documentation
⚙️ Technical Tasks
v3.0.1Compare Source
🔗 Dependencies
v3.0.0Compare Source
💣 Major Changes
signingCert->publicCertandsigningKey->privateKey#315KeyInfoProvider#301🚀 Minor Changes
🔗 Dependencies
🐛 Bug Fixes
⚙️ Technical Tasks
no-unused-vars#349deprecation#347prefer-template#346no-this-alias#345masterbranch when generating changelog #342no-unused-vars#322no-prototype-builtins#321eqeqeqrule #320prefer-const#312no-var#311curly#310one-var#309v2.1.6Compare Source
Full Changelog: node-saml/xml-crypto@v2.1.5...v2.1.6
This addresses two critical CVE:
Please note that this version of xml-crypto is an older version of this library and you are encouraged to update to the latest release. This fix was provided because of the severity of the issue and doesn't include other enhancements, security or otherwise, that have been otherwise made to the latest releases.
Configuration
📅 Schedule: Branch creation - Only on Sunday and Saturday ( * * * * 0,6 ) (UTC), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR was generated by Mend Renovate. View the repository job log.