Skip to content

Update dependency npmconf to v2 [SECURITY]#10

Open
renovate[bot] wants to merge 1 commit intomasterfrom
renovate/npm-npmconf-vulnerability
Open

Update dependency npmconf to v2 [SECURITY]#10
renovate[bot] wants to merge 1 commit intomasterfrom
renovate/npm-npmconf-vulnerability

Conversation

@renovate
Copy link
Contributor

@renovate renovate bot commented Jan 9, 2025

This PR contains the following updates:

Package Change Age Confidence
npmconf 02.1.3 age confidence

GitHub Vulnerability Alerts

GHSA-57cf-349j-352g

Versions of npmconf before 2.1.3 allocate and write to disk uninitialized memory contents when a typed number is passed as input on Node.js 4.x.

Recommendation

Update to version 2.1.3 or later. Consider switching to another config storage mechanism, as npmconf is deprecated and should not be used.


Release Notes

npm/npmconf (npmconf)

v2.1.3

Compare Source

v2.1.2

Compare Source

v2.1.1

Compare Source

v2.1.0

Compare Source

v2.0.9

Compare Source

v2.0.8

Compare Source

v2.0.7

Compare Source

v2.0.6

Compare Source

v2.0.5

Compare Source

v2.0.4

Compare Source

v2.0.3

Compare Source

v2.0.2

Compare Source

v2.0.1

Compare Source

v2.0.0

Compare Source

v1.1.9

Compare Source

v1.1.8

Compare Source

v1.1.7

Compare Source

v1.1.6

Compare Source

v1.1.5

Compare Source

v1.1.4

Compare Source

v1.1.3

Compare Source

v1.1.2

Compare Source

v1.1.1

Compare Source

v1.1.0

Compare Source

v1.0.6

Compare Source

v1.0.5

Compare Source

v1.0.4

Compare Source

v1.0.3

Compare Source

v1.0.2

Compare Source

v1.0.1

Compare Source

v1.0.0

Compare Source

v0.2.0

Compare Source

v0.1.16

Compare Source

v0.1.15

Compare Source

v0.1.14

Compare Source

v0.1.13

Compare Source

v0.1.12

Compare Source

v0.1.11

Compare Source

v0.1.9

Compare Source

v0.1.8

Compare Source

v0.1.7

Compare Source

v0.1.6

Compare Source

v0.1.5

Compare Source

v0.1.4

Compare Source

v0.1.3

Compare Source

v0.1.2

Compare Source

v0.1.1

Compare Source

v0.1.0

Compare Source

v0.0.25

Compare Source

v0.0.24

Compare Source

v0.0.23

Compare Source

v0.0.22

Compare Source

v0.0.21

Compare Source

v0.0.20

Compare Source

v0.0.19

Compare Source

v0.0.18

Compare Source

v0.0.17

Compare Source

v0.0.16

Compare Source

v0.0.15

Compare Source

v0.0.14

Compare Source

v0.0.12

Compare Source

v0.0.11

Compare Source

v0.0.10

Compare Source

v0.0.9

Compare Source

v0.0.8

Compare Source

v0.0.7

Compare Source

v0.0.6

Compare Source

v0.0.5

Compare Source

v0.0.4

Compare Source

v0.0.3

Compare Source

v0.0.2

Compare Source


Configuration

📅 Schedule: Branch creation - "" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch 3 times, most recently from 09c6e05 to 51e7730 Compare January 17, 2025 11:45
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch 3 times, most recently from 78acaf3 to 89e6488 Compare January 31, 2025 19:07
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch from 89e6488 to cc5ceb3 Compare February 1, 2025 19:46
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch 2 times, most recently from b9ed697 to 39113f8 Compare February 12, 2025 07:54
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch 2 times, most recently from 40b4442 to 057e939 Compare March 8, 2025 03:32
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch 3 times, most recently from 8659a60 to cf98a4b Compare March 19, 2025 23:58
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch from cf98a4b to 294931c Compare March 21, 2025 23:49
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch 2 times, most recently from 09d097a to 9478a51 Compare April 4, 2025 03:37
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch 2 times, most recently from 257ed84 to 0d49d67 Compare April 27, 2025 07:58
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch 2 times, most recently from e83a96c to 3de86a9 Compare May 10, 2025 19:50
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch 2 times, most recently from 7c20289 to ba68e13 Compare May 18, 2025 19:27
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch 2 times, most recently from 3cecea1 to 873e386 Compare May 25, 2025 11:37
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch 3 times, most recently from 67799f0 to 50c1806 Compare June 6, 2025 18:23
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch from 50c1806 to 7189503 Compare June 8, 2025 10:34
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch from 7189503 to d9f41f8 Compare June 21, 2025 12:03
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch from d9f41f8 to 012d1fb Compare July 13, 2025 23:55
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch 2 times, most recently from e88bd94 to 9f6d2d3 Compare August 16, 2025 11:48
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch 2 times, most recently from 12eea46 to 8497449 Compare August 24, 2025 04:12
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch 2 times, most recently from 1b606c1 to ed9ff0f Compare September 2, 2025 03:52
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch 2 times, most recently from 3f20bf3 to 0b3bbe9 Compare September 27, 2025 04:06
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch 2 times, most recently from b90d284 to a8a3ce4 Compare October 26, 2025 04:02
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch 2 times, most recently from 8a6810a to 4686bd2 Compare November 20, 2025 08:14
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch 2 times, most recently from 2e3c6bb to 6c0d8d1 Compare December 6, 2025 11:05
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch 2 times, most recently from 0306e9a to 38d977d Compare January 2, 2026 07:39
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch 2 times, most recently from b356494 to 6f3767e Compare January 11, 2026 04:03
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch 2 times, most recently from fa16ac8 to a5e228d Compare January 21, 2026 11:56
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch 2 times, most recently from 430f179 to 860ce54 Compare February 5, 2026 00:03
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch 3 times, most recently from 72ecdce to f3abc84 Compare February 17, 2026 07:02
@renovate renovate bot force-pushed the renovate/npm-npmconf-vulnerability branch from f3abc84 to 3620648 Compare February 20, 2026 12:10
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants

Comments