Skip to content

Update dependency chownr to v1 [SECURITY]#7

Open
renovate[bot] wants to merge 1 commit intomasterfrom
renovate/npm-chownr-vulnerability
Open

Update dependency chownr to v1 [SECURITY]#7
renovate[bot] wants to merge 1 commit intomasterfrom
renovate/npm-chownr-vulnerability

Conversation

@renovate
Copy link
Contributor

@renovate renovate bot commented Jan 9, 2025

This PR contains the following updates:

Package Change Age Confidence
chownr 01.1.0 age confidence

GitHub Vulnerability Alerts

CVE-2017-18869

A TOCTOU issue in the chownr package before 1.1.0 for Node.js 10.10 could allow a local attacker to trick it into descending into unintended directories via symlink attacks.


Release Notes

isaacs/chownr (chownr)

v1.1.0

Compare Source

v1.0.1

Compare Source

v1.0.0

Compare Source

v0.0.2

Compare Source


Configuration

📅 Schedule: Branch creation - "" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from e2c117d to d4abe30 Compare January 11, 2025 11:48
@renovate renovate bot changed the title Update dependency chownr to v3 [SECURITY] Update dependency chownr to v1 [SECURITY] Jan 11, 2025
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from d4abe30 to b091b3b Compare January 15, 2025 19:40
@renovate renovate bot changed the title Update dependency chownr to v1 [SECURITY] Update dependency chownr to v3 [SECURITY] Jan 15, 2025
@renovate renovate bot changed the title Update dependency chownr to v3 [SECURITY] Update dependency chownr to v1 [SECURITY] Jan 17, 2025
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from b091b3b to 8f97c37 Compare January 17, 2025 11:45
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from 8f97c37 to b857fa9 Compare January 25, 2025 11:49
@renovate renovate bot changed the title Update dependency chownr to v1 [SECURITY] Update dependency chownr to v3 [SECURITY] Jan 25, 2025
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from b857fa9 to e404ccd Compare January 26, 2025 06:13
@renovate renovate bot changed the title Update dependency chownr to v3 [SECURITY] Update dependency chownr to v1 [SECURITY] Jan 26, 2025
@renovate renovate bot changed the title Update dependency chownr to v1 [SECURITY] Update dependency chownr to v3 [SECURITY] Jan 31, 2025
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch 2 times, most recently from 81d4cd5 to 3b87c63 Compare February 1, 2025 19:46
@renovate renovate bot changed the title Update dependency chownr to v3 [SECURITY] Update dependency chownr to v1 [SECURITY] Feb 1, 2025
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from 3b87c63 to 94fdee2 Compare February 9, 2025 11:31
@renovate renovate bot changed the title Update dependency chownr to v1 [SECURITY] Update dependency chownr to v3 [SECURITY] Feb 9, 2025
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from 94fdee2 to a00ad56 Compare February 12, 2025 07:54
@renovate renovate bot changed the title Update dependency chownr to v3 [SECURITY] Update dependency chownr to v1 [SECURITY] Feb 12, 2025
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from a00ad56 to 486a136 Compare March 5, 2025 03:43
@renovate renovate bot changed the title Update dependency chownr to v1 [SECURITY] Update dependency chownr to v3 [SECURITY] Mar 5, 2025
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from 486a136 to e9d9ca7 Compare March 8, 2025 03:32
@renovate renovate bot changed the title Update dependency chownr to v3 [SECURITY] Update dependency chownr to v1 [SECURITY] Mar 8, 2025
@renovate renovate bot changed the title Update dependency chownr to v1 [SECURITY] Update dependency chownr to v3 [SECURITY] Mar 13, 2025
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch 2 times, most recently from cab8057 to 3d75a7c Compare March 15, 2025 11:18
@renovate renovate bot changed the title Update dependency chownr to v3 [SECURITY] Update dependency chownr to v1 [SECURITY] Mar 15, 2025
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from 3d75a7c to e17a203 Compare March 19, 2025 23:58
@renovate renovate bot changed the title Update dependency chownr to v1 [SECURITY] Update dependency chownr to v3 [SECURITY] Mar 19, 2025
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from e17a203 to 1dd6baf Compare March 21, 2025 23:48
@renovate renovate bot changed the title Update dependency chownr to v3 [SECURITY] Update dependency chownr to v1 [SECURITY] Mar 21, 2025
@renovate renovate bot changed the title Update dependency chownr to v3 [SECURITY] Update dependency chownr to v1 [SECURITY] Nov 20, 2025
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from a6d4aaf to 993fb6e Compare December 5, 2025 07:43
@renovate renovate bot changed the title Update dependency chownr to v1 [SECURITY] Update dependency chownr to v3 [SECURITY] Dec 5, 2025
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from 993fb6e to f456450 Compare December 6, 2025 11:05
@renovate renovate bot changed the title Update dependency chownr to v3 [SECURITY] Update dependency chownr to v1 [SECURITY] Dec 6, 2025
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from f456450 to 94f3445 Compare December 30, 2025 11:46
@renovate renovate bot changed the title Update dependency chownr to v1 [SECURITY] Update dependency chownr to v3 [SECURITY] Dec 30, 2025
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from 94f3445 to 33b6456 Compare January 2, 2026 07:38
@renovate renovate bot changed the title Update dependency chownr to v3 [SECURITY] Update dependency chownr to v1 [SECURITY] Jan 2, 2026
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from 33b6456 to 85d0ff6 Compare January 10, 2026 07:28
@renovate renovate bot changed the title Update dependency chownr to v1 [SECURITY] Update dependency chownr to v3 [SECURITY] Jan 10, 2026
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from 85d0ff6 to 596e996 Compare January 11, 2026 04:03
@renovate renovate bot changed the title Update dependency chownr to v3 [SECURITY] Update dependency chownr to v1 [SECURITY] Jan 11, 2026
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from 596e996 to 27afce8 Compare January 20, 2026 04:14
@renovate renovate bot changed the title Update dependency chownr to v1 [SECURITY] Update dependency chownr to v3 [SECURITY] Jan 20, 2026
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from 27afce8 to 415e328 Compare January 21, 2026 11:56
@renovate renovate bot changed the title Update dependency chownr to v3 [SECURITY] Update dependency chownr to v1 [SECURITY] Jan 21, 2026
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from 415e328 to 18ad503 Compare February 3, 2026 11:49
@renovate renovate bot changed the title Update dependency chownr to v1 [SECURITY] Update dependency chownr to v3 [SECURITY] Feb 3, 2026
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from 18ad503 to e78bbf3 Compare February 5, 2026 00:02
@renovate renovate bot changed the title Update dependency chownr to v3 [SECURITY] Update dependency chownr to v1 [SECURITY] Feb 5, 2026
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from e78bbf3 to e8d6eec Compare February 13, 2026 11:57
@renovate renovate bot changed the title Update dependency chownr to v1 [SECURITY] Update dependency chownr to v3 [SECURITY] Feb 13, 2026
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from e8d6eec to ee4973e Compare February 14, 2026 06:57
@renovate renovate bot changed the title Update dependency chownr to v3 [SECURITY] Update dependency chownr to v1 [SECURITY] Feb 14, 2026
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from ee4973e to 1c2763c Compare February 17, 2026 07:02
@renovate renovate bot changed the title Update dependency chownr to v1 [SECURITY] Update dependency chownr to v3 [SECURITY] Feb 17, 2026
@renovate renovate bot force-pushed the renovate/npm-chownr-vulnerability branch from 1c2763c to 8b95047 Compare February 20, 2026 12:10
@renovate renovate bot changed the title Update dependency chownr to v3 [SECURITY] Update dependency chownr to v1 [SECURITY] Feb 20, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants

Comments