Update dependency pug to v3.0.3 #73

Merged
bot merged 1 commits from renovate/pug-3.x-lockfile into master 2024-05-25 02:04:10 +02:00
Collaborator

This PR contains the following updates:

Package Type Update Change
pug (source) dependencies patch 3.0.2 -> 3.0.3

Release Notes

pugjs/pug (pug)

v3.0.3

Compare Source

Bug Fixes

  • Update pug-code-gen with the following fix: (#​3438)

    Validate templateName and globals are valid JavaScript identifiers to prevent possible remote code execution if un-trusted user input is passed to the compilation options


Configuration

📅 Schedule: Branch creation - "every weekday,every weekend" (UTC), Automerge - "every weekend" (UTC).

🚦 Automerge: Enabled.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Renovate Bot.

This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [pug](https://pugjs.org) ([source](https://github.com/pugjs/pug)) | dependencies | patch | [`3.0.2` -> `3.0.3`](https://renovatebot.com/diffs/npm/pug/3.0.2/3.0.3) | --- ### Release Notes <details> <summary>pugjs/pug (pug)</summary> ### [`v3.0.3`](https://github.com/pugjs/pug/releases/tag/pug%403.0.3) [Compare Source](https://github.com/pugjs/pug/compare/pug@3.0.2...pug@3.0.3) #### Bug Fixes - Update pug-code-gen with the following fix: ([#&#8203;3438](https://github.com/pugjs/pug/issues/3438)) Validate `templateName` and `globals` are valid JavaScript identifiers to prevent possible remote code execution if un-trusted user input is passed to the compilation options </details> --- ### Configuration 📅 **Schedule**: Branch creation - "every weekday,every weekend" (UTC), Automerge - "every weekend" (UTC). 🚦 **Automerge**: Enabled. ♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox. 🔕 **Ignore**: Close this PR and you won't be reminded about this update again. --- - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box --- This PR has been generated by [Renovate Bot](https://github.com/renovatebot/renovate). <!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiIzNy41OS44IiwidXBkYXRlZEluVmVyIjoiMzcuNTkuOCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciJ9-->
bot added 1 commit 2024-05-25 02:04:09 +02:00
Update dependency pug to v3.0.3
All checks were successful
continuous-integration/drone/pr Build is passing
continuous-integration/drone/push Build is passing
fed8f370d0
bot scheduled this pull request to auto merge when all checks succeed 2024-05-25 02:04:09 +02:00
bot merged commit fed8f370d0 into master 2024-05-25 02:04:10 +02:00
Sign in to join this conversation.
No Reviewers
No Label
No Milestone
No project
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: sora/OTM#73
No description provided.