Skip to content

Conversation

@renovate
Copy link
Contributor

@renovate renovate bot commented Aug 6, 2024

This PR contains the following updates:

Package Change Age Confidence
lodash (source) 4.17.15 -> 4.17.21 age confidence

GitHub Vulnerability Alerts

CVE-2021-23337

lodash versions prior to 4.17.21 are vulnerable to Command Injection via the template function.


Release Notes

lodash/lodash (lodash)

v4.17.21

Compare Source

v4.17.20

Compare Source

v4.17.19

v4.17.16

Compare Source


Configuration

📅 Schedule: Branch creation - "" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate bot added the renovate label Aug 6, 2024
@renovate renovate bot force-pushed the renovate/npm-lodash-vulnerability branch 2 times, most recently from e43da95 to fb5831f Compare January 30, 2025 19:25
@renovate renovate bot force-pushed the renovate/npm-lodash-vulnerability branch from fb5831f to a710a69 Compare February 9, 2025 13:41
@renovate renovate bot force-pushed the renovate/npm-lodash-vulnerability branch from a710a69 to 643e250 Compare March 3, 2025 16:25
@renovate renovate bot force-pushed the renovate/npm-lodash-vulnerability branch 3 times, most recently from a908af7 to 97e2ace Compare March 17, 2025 16:56
@renovate renovate bot force-pushed the renovate/npm-lodash-vulnerability branch 2 times, most recently from a7011a2 to 745c550 Compare April 8, 2025 13:05
@renovate renovate bot force-pushed the renovate/npm-lodash-vulnerability branch from 745c550 to b4db01b Compare April 24, 2025 06:48
@renovate renovate bot force-pushed the renovate/npm-lodash-vulnerability branch from b4db01b to be2da45 Compare May 19, 2025 20:04
@renovate renovate bot force-pushed the renovate/npm-lodash-vulnerability branch 2 times, most recently from ef01331 to 1a111dd Compare June 4, 2025 06:54
@renovate renovate bot force-pushed the renovate/npm-lodash-vulnerability branch from 1a111dd to 59f33fa Compare June 22, 2025 14:11
@renovate renovate bot force-pushed the renovate/npm-lodash-vulnerability branch from 59f33fa to 6e5d01d Compare July 2, 2025 21:43
@renovate renovate bot force-pushed the renovate/npm-lodash-vulnerability branch from 6e5d01d to da7f057 Compare August 2, 2025 12:14
@renovate renovate bot changed the title fix(deps): update dependency lodash to v4.17.21 [security] chore(deps): update dependency lodash to v4.17.21 [security] Sep 25, 2025
@renovate renovate bot force-pushed the renovate/npm-lodash-vulnerability branch from da7f057 to 886def1 Compare November 10, 2025 23:52
@renovate renovate bot force-pushed the renovate/npm-lodash-vulnerability branch from 886def1 to 75b8c17 Compare November 18, 2025 22:49
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant