[CVE-2024-45296] Bump path-to-regexp to 1.9.0, 3.3.0, and 6.3.0 #8197
Merged
ashwin-pc merged 3 commits intoopensearch-project:mainfrom Sep 16, 2024
Merged
[CVE-2024-45296] Bump path-to-regexp to 1.9.0, 3.3.0, and 6.3.0 #8197ashwin-pc merged 3 commits intoopensearch-project:mainfrom
ashwin-pc merged 3 commits intoopensearch-project:mainfrom
Conversation
added 2 commits
September 13, 2024 17:33
Signed-off-by: Miki <miki@amazon.com>
Signed-off-by: Miki <miki@amazon.com>
Merged
7 tasks
Collaborator
Author
|
Manually backported to 2.17 with #8198 Needs to be backported to 2.x from main. |
ashwin-pc
approved these changes
Sep 14, 2024
Codecov ReportAll modified and coverable lines are covered by tests ✅
Additional details and impacted files@@ Coverage Diff @@
## main #8197 +/- ##
==========================================
- Coverage 64.04% 64.04% -0.01%
==========================================
Files 3740 3740
Lines 88608 88608
Branches 13799 13799
==========================================
- Hits 56746 56745 -1
- Misses 31264 31265 +1
Partials 598 598
Flags with carried forward coverage won't be shown. Click here to find out more. ☔ View full report in Codecov by Sentry. |
zhongnansu
approved these changes
Sep 16, 2024
ashwin-pc
approved these changes
Sep 16, 2024
opensearch-trigger-bot bot
pushed a commit
that referenced
this pull request
Sep 16, 2024
* Revert 8176 Signed-off-by: Miki <miki@amazon.com> * [CVE-2024-45296] Bump `path-to-regexp` to 1.9.0, 3.3.0, and 6.3.0 Signed-off-by: Miki <miki@amazon.com> * Changeset file for PR #8197 created/updated --------- Signed-off-by: Miki <miki@amazon.com> Co-authored-by: opensearch-changeset-bot[bot] <154024398+opensearch-changeset-bot[bot]@users.noreply.github.com> (cherry picked from commit 3c4dc9d) Signed-off-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
AMoo-Miki
pushed a commit
that referenced
this pull request
Oct 17, 2024
… (#8206) * Revert 8176 * [CVE-2024-45296] Bump `path-to-regexp` to 1.9.0, 3.3.0, and 6.3.0 * Changeset file for PR #8197 created/updated --------- (cherry picked from commit 3c4dc9d) Signed-off-by: Miki <miki@amazon.com> Signed-off-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com> Co-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com> Co-authored-by: opensearch-changeset-bot[bot] <154024398+opensearch-changeset-bot[bot]@users.noreply.github.com>
ruchidh
pushed a commit
to ruchidh/OpenSearch-Dashboards
that referenced
this pull request
Jul 18, 2025
…search-project#8197) (opensearch-project#8206) * Revert 8176 * [CVE-2024-45296] Bump `path-to-regexp` to 1.9.0, 3.3.0, and 6.3.0 * Changeset file for PR opensearch-project#8197 created/updated --------- (cherry picked from commit 3c4dc9d) Signed-off-by: Miki <miki@amazon.com> Signed-off-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com> Co-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com> Co-authored-by: opensearch-changeset-bot[bot] <154024398+opensearch-changeset-bot[bot]@users.noreply.github.com> Signed-off-by: Ruchi Sharma <ruchi492@gmail.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Description
[CVE-2024-45296] Bump path-to-regexp to 1.9.0, 3.3.0, and 6.3.0
Changelog
path-to-regexpto 1.9.0, 3.3.0, and 6.3.0Check List
yarn test:jestyarn test:jest_integration