Skip to content

Commit

Permalink
Security/26 fix vulnerabilities (#27)
Browse files Browse the repository at this point in the history
* #26: update dependencies

* #26: swapped out jsrsasign for node-forge

* run pk fix and update changes file
  • Loading branch information
pj-spoelders authored Feb 6, 2024
1 parent 70c737c commit ae9369d
Show file tree
Hide file tree
Showing 9 changed files with 1,353 additions and 945 deletions.
8 changes: 5 additions & 3 deletions .github/workflows/broken_links_checker.yml

Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.

53 changes: 23 additions & 30 deletions .github/workflows/project-keeper-verify.yml

Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.

7 changes: 5 additions & 2 deletions .github/workflows/project-keeper.sh

Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.

10 changes: 5 additions & 5 deletions dependencies.md

Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.

1 change: 1 addition & 0 deletions doc/changes/changelog.md

Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.

23 changes: 23 additions & 0 deletions doc/changes/changes_0.1.3.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,23 @@
# Exasol Driver ts 0.1.3, released 2024-02-06

Code name: Fix bable traverse and jsrsasign vulnerabilities.

## Summary

This release fixes vulnerabilities in bable traverse by updating the package and swaps out jsrsasign with node-forge to replace RSA encryption.

## Features

- #26: Fix vulnerabilities

## Dependency Updates

### Compile Dependency Updates

* Added `node-forge:^1.3.1`
* Removed `jsrsasign:^10.8.6`

### Development Dependency Updates

* Added `@types/node-forge:^1.3.11`
* Removed `@types/jsrsasign:^10.5.8`
Loading

0 comments on commit ae9369d

Please sign in to comment.