Bump @apidevtools/json-schema-ref-parser from 11.6.4 to 14.0.1
Merged
Number: #8
Type: Pull Request
State: Merged
Type: Pull Request
State: Merged
Author:
dependabot[bot]
Association: None
Comments: 0
Association: None
Comments: 0
Created:
June 17, 2025 at 03:49 PM UTC
(5 months ago)
(5 months ago)
Updated:
June 17, 2025 at 03:49 PM UTC
(5 months ago)
(5 months ago)
Merged:
June 17, 2025 at 03:49 PM UTC
(5 months ago)
by craigyu
(5 months ago)
by craigyu
Time to Close:
1 minute
Labels:
dependencies javascript
dependencies javascript
Description:
Bumps @apidevtools/json-schema-ref-parser from 11.6.4 to 14.0.1.
Release notes
Sourced from @apidevtools/json-schema-ref-parser's releases.
v14.0.1
14.0.1 (2025-06-16)
Bug Fixes
- options: make safe url resolver optional and boolean (171e30f)
v14.0.0
14.0.0 (2025-06-16)
Bug Fixes
- safety: assume browsers are safe urls (5ffea78)
Fix
- Dont allow internal URL resolution, and add flag to reenable internal / private URL resolution (0a06a78)
BREAKING CHANGES
- Fix security vulnerability allowing default http resolver to make requests to internal hostnames
v13.0.5
13.0.5 (2025-06-10)
Bug Fixes
- url: update docs url (3a287ea)
v13.0.4
13.0.4 (2025-06-08)
Bug Fixes
- url: ensure url is resolvable (bf4edf9)
v13.0.3
13.0.3 (2025-06-06)
Bug Fixes
- location: use explicit window.location (45bcd17)
... (truncated)
Commits
171e30ffix(options): make safe url resolver optional and boolean0ac9f35chore(tests): skip url safety resolver in browser5ffea78fix(safety): assume browsers are safe urls932683fchore: deps0a06a78Fix: Dont allow internal URL resolution, and add flag to reenable internal / ...b8a8a6fchore trigger buildf74b3adtrigger pages71b58dcchore(deps): update deps3a287eafix(url): update docs urle377609chore: deps- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Pull Request Statistics
Commits:
1
1
Files Changed:
2
2
Additions:
+6
+6
Deletions:
-11
-11
Package Dependencies
Package:
@apidevtools/json-schema-ref-parser
Ecosystem:
npm
npm
Version Change:
11.6.4 → 14.0.1
Update Type:
Major
Major
Technical Details
| ID: | 1810436 |
| UUID: | 2599248249 |
| Node ID: | PR_kwDOO9Pirs6a7WF5 |
| Host: | GitHub |
| Repository: | bcgov/typescript-codegen |
| Merge State: | Unknown |