Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[release/v1.4] build(deps): bump express from 4.19.2 to 4.20.0 in /internal/web/ui #1723

Merged
merged 1 commit into from
Sep 23, 2024

Conversation

ptodev
Copy link
Contributor

@ptodev ptodev commented Sep 20, 2024

This resolves a medium-level vulnerability which the CVE scanner found in the UI.

It ports #1660 to the release branch.

…1660)

Bumps [express](https://github.com/expressjs/express) from 4.19.2 to 4.20.0.
- [Release notes](https://github.com/expressjs/express/releases)
- [Changelog](https://github.com/expressjs/express/blob/master/History.md)
- [Commits](expressjs/express@4.19.2...4.20.0)

---
updated-dependencies:
- dependency-name: express
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
@ptodev ptodev requested a review from a team as a code owner September 20, 2024 16:49
@ptodev ptodev changed the title build(deps): bump express from 4.19.2 to 4.20.0 in /internal/web/ui [release/v1.4] build(deps): bump express from 4.19.2 to 4.20.0 in /internal/web/ui Sep 20, 2024
@ptodev ptodev merged commit 41c5150 into release/v1.4 Sep 23, 2024
18 checks passed
@ptodev ptodev deleted the ptodev/fix-ui-cve branch September 23, 2024 08:49
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants