Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump superagent to 9.0.0 to address CVE-2022-29622 #93

Closed
wants to merge 1 commit into from

Conversation

davidcornu
Copy link
Member

What

Bumps the superagent dependency in order to bump formidable (sub-dependency) to a patched version.

Why

CVE-2022-29622

SDK Release Checklist

  • Have you added an integration test for the changes?
  • Have you built the package locally and made queries against it successfully?
  • Did you update the changelog?
  • Did you bump the package version?
  • If endpoints were removed, did you manually remove the corresponding files? (this should be rare)
  • For breaking changes, did you plan for the release of the new SDK versions and deploy the API to production?

@pcothenet
Copy link
Contributor

Note: the changes need to be generated from https://github.com/patch-technology/client-code-generation. I've created #94 , which supersedes this.

@pcothenet pcothenet closed this May 6, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants