Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

repository security vulnerabilities closed #1123

Open
wants to merge 242 commits into
base: master
Choose a base branch
from
Open
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
242 commits
Select commit Hold shift + click to select a range
3335ece
Create codeql-analysis.yml
Codes-Exe Dec 12, 2021
6f3c6d3
Create SECURITY.md
Codes-Exe Dec 12, 2021
065a166
Bump node-sass
dependabot[bot] Mar 15, 2022
48bdab1
Bump follow-redirects
dependabot[bot] Mar 15, 2022
f03346e
Bump lodash
dependabot[bot] Mar 15, 2022
0cbd969
Bump url-parse
dependabot[bot] Mar 15, 2022
445f197
Create powershell.yml
Codes-Exe Mar 15, 2022
a3cfcbd
Bump node-sass
dependabot[bot] Mar 15, 2022
cf0bbc7
Bump url-parse
dependabot[bot] Mar 15, 2022
a1389ce
Bump lodash
dependabot[bot] Mar 15, 2022
42c3981
Bump follow-redirects
dependabot[bot] Mar 15, 2022
1fb2644
Bump async
dependabot[bot] Apr 29, 2022
ab8c296
Bump async
dependabot[bot] Apr 29, 2022
bd2f063
Bump Microsoft.AspNetCore.Mvc
dependabot[bot] May 17, 2022
d306b42
Bump Microsoft.AspNetCore.Mvc
dependabot[bot] May 17, 2022
7323b1e
Bump Microsoft.AspNetCore.Mvc
dependabot[bot] May 17, 2022
476409a
Bump Microsoft.AspNetCore.Mvc
dependabot[bot] May 17, 2022
e3ce323
Merge pull request #1 from StarTeknolojiSpace/dependabot/npm_and_yarn…
May 23, 2022
efa5f75
Merge pull request #2 from StarTeknolojiSpace/dependabot/npm_and_yarn…
May 23, 2022
2d9fc37
Merge pull request #3 from StarTeknolojiSpace/dependabot/npm_and_yarn…
May 23, 2022
ee38922
Merge pull request #4 from StarTeknolojiSpace/dependabot/npm_and_yarn…
May 23, 2022
dce3671
Merge pull request #5 from StarTeknolojiSpace/dependabot/npm_and_yarn…
May 23, 2022
617f796
Merge pull request #6 from StarTeknolojiSpace/dependabot/nuget/sample…
May 23, 2022
5bb7cdf
Merge pull request #7 from StarTeknolojiSpace/dependabot/nuget/sample…
May 23, 2022
7bd43cd
Bump Microsoft.AspNetCore.Mvc
dependabot[bot] May 23, 2022
90233b0
Merge pull request #1 from Studio-Hardware/dependabot/npm_and_yarn/sa…
May 27, 2022
82ad04f
Merge pull request #2 from Studio-Hardware/dependabot/npm_and_yarn/sa…
May 27, 2022
c975c28
Merge pull request #3 from Studio-Hardware/dependabot/npm_and_yarn/sa…
May 27, 2022
c0f027a
Merge pull request #4 from Studio-Hardware/dependabot/npm_and_yarn/sa…
May 27, 2022
3a946fb
Merge pull request #5 from Studio-Hardware/dependabot/npm_and_yarn/sa…
May 27, 2022
d9ebde3
Merge pull request #6 from Studio-Hardware/dependabot/nuget/samples/f…
May 27, 2022
d372403
Merge pull request #7 from Studio-Hardware/dependabot/nuget/samples/f…
May 27, 2022
cdf53d3
Merge pull request #8 from SystemsUnits/dependabot/nuget/samples/feat…
May 27, 2022
96dea7d
Merge pull request #9 from Studio-Hardware/master
May 27, 2022
73187fe
Bump Microsoft.AspNetCore.Mvc
dependabot[bot] May 27, 2022
c09808e
Bump eventsource
dependabot[bot] Jun 1, 2022
61bcffd
Bump eventsource
dependabot[bot] Jun 1, 2022
661d727
Bump Newtonsoft.Json in /samples/databases/wide-world-importers/wwi-app
dependabot[bot] Jun 23, 2022
e3502a7
Bump Newtonsoft.Json
dependabot[bot] Jun 23, 2022
4c894ad
Bump Newtonsoft.Json
dependabot[bot] Jun 23, 2022
9bcd2de
Bump Newtonsoft.Json
dependabot[bot] Jun 23, 2022
908b81d
Bump Newtonsoft.Json in /samples/databases/wide-world-importers/wwi-app
dependabot[bot] Jun 23, 2022
304faa5
Bump Newtonsoft.Json
dependabot[bot] Jun 23, 2022
4474dda
Merge pull request #10 from Er-Cetin/dependabot/npm_and_yarn/samples/…
Jun 24, 2022
f985867
Merge pull request #11 from Er-Cetin/dependabot/nuget/samples/databas…
Jun 24, 2022
8947787
Merge pull request #12 from Er-Cetin/dependabot/nuget/samples/feature…
Jun 24, 2022
56d0d79
Merge pull request #13 from Er-Cetin/dependabot/nuget/samples/manage/…
Jun 24, 2022
40183e5
Merge pull request #8 from ErcetinJunk/dependabot/nuget/samples/featu…
Jun 26, 2022
e2d85c6
Merge pull request #9 from ErcetinJunk/dependabot/npm_and_yarn/sample…
Jun 26, 2022
f2f3296
Merge pull request #10 from ErcetinJunk/dependabot/nuget/samples/mana…
Jun 26, 2022
d3845ab
Merge pull request #11 from ErcetinJunk/dependabot/nuget/samples/feat…
Jun 26, 2022
3b11b18
Merge pull request #12 from ErcetinJunk/dependabot/nuget/samples/data…
Jun 26, 2022
7943cf4
Merge pull request #14 from ErcetinJunk/master
Jun 26, 2022
499a155
Bump terser
dependabot[bot] Jul 21, 2022
525a95e
Bump terser
dependabot[bot] Jul 21, 2022
d23ea07
Merge pull request #15 from Codes-Exe/dependabot/npm_and_yarn/samples…
Codes-Exe Jul 30, 2022
7304529
Bump Microsoft.Owin
dependabot[bot] Aug 27, 2022
e8f299c
Bump Microsoft.Owin
dependabot[bot] Aug 27, 2022
02e5010
Bump Microsoft.Owin
dependabot[bot] Aug 27, 2022
a7afcdb
Bump Microsoft.Owin
dependabot[bot] Aug 27, 2022
177247b
Merge pull request #15 from Star-Teknolog/dependabot/npm_and_yarn/sam…
Codes-Exe Aug 28, 2022
299521f
Merge pull request #16 from Star-Teknolog/dependabot/nuget/samples/ma…
Codes-Exe Aug 28, 2022
dbaf105
Merge pull request #17 from Star-Teknolog/dependabot/nuget/samples/fe…
Codes-Exe Aug 28, 2022
ed53096
Merge branch 'Codes-Exe:master' into master
Codes-Exe Aug 28, 2022
361ccbf
Merge pull request #16 from Codes-Exe/dependabot/nuget/samples/featur…
Codes-Exe Aug 28, 2022
c413d03
Merge pull request #17 from Codes-Exe/dependabot/nuget/samples/manage…
Codes-Exe Aug 28, 2022
4e3e4e3
Update SECURITY.md
Codes-Exe Aug 28, 2022
cf7ee23
Merge pull request #18 from Codes-Exe/Codes-Exe-patch-1
Codes-Exe Aug 28, 2022
7e369d3
Create sarif v1.yml
Codes-Exe Aug 28, 2022
6ca29a7
Merge pull request #19 from Codes-Exe/Codes-Exe-patch-2
Codes-Exe Aug 28, 2022
aa5efbc
Bump Microsoft.Owin
dependabot[bot] Sep 5, 2022
cb13d42
Bump Microsoft.Owin.Security.Cookies
dependabot[bot] Sep 5, 2022
943f85e
Bump Microsoft.Owin.Security.Cookies
dependabot[bot] Sep 5, 2022
21a47d0
Bump Microsoft.Owin
dependabot[bot] Sep 5, 2022
9f96628
Merge pull request #1 from StarTeknoloji/dependabot/nuget/samples/man…
Codes-Exe Sep 16, 2022
71a86a6
Merge pull request #2 from StarTeknoloji/dependabot/nuget/samples/man…
Codes-Exe Sep 16, 2022
5c9b16b
Merge pull request #3 from StarTeknoloji/dependabot/nuget/samples/fea…
Codes-Exe Sep 16, 2022
e9d746b
Merge pull request #4 from StarTeknoloji/dependabot/nuget/samples/fea…
Codes-Exe Sep 16, 2022
5df1163
Bump shell-quote and react-scripts
dependabot[bot] Sep 16, 2022
b7859e2
Merge branch 'Codes-Exe:master' into master
Codes-Exe Sep 19, 2022
de6bbaa
Merge pull request #5 from StarTeknoloji/dependabot/npm_and_yarn/samp…
Codes-Exe Oct 11, 2022
04c9c1f
Bump path-parse
dependabot[bot] Oct 11, 2022
b939de5
Bump thenify
dependabot[bot] Oct 11, 2022
4bcb3af
Bump scss-tokenizer and node-sass
dependabot[bot] Oct 11, 2022
1138888
Merge pull request #6 from StarTeknoloji/dependabot/npm_and_yarn/samp…
Codes-Exe Oct 11, 2022
2aac123
Merge pull request #9 from StarTeknoloji/dependabot/npm_and_yarn/samp…
Codes-Exe Oct 11, 2022
f1242a0
Bump ajv
dependabot[bot] Oct 11, 2022
e0860c8
Merge pull request #11 from StarTeknoloji/dependabot/npm_and_yarn/sam…
Codes-Exe Oct 11, 2022
a7164e8
Merge pull request #12 from StarTeknoloji/dependabot/npm_and_yarn/sam…
Codes-Exe Oct 11, 2022
c30ca3a
Bump urijs and wct-local
dependabot[bot] Oct 11, 2022
1d6508c
Bump minimatch, gulp and gulp-add-src
dependabot[bot] Nov 1, 2022
982aafa
Bump minimatch
dependabot[bot] Nov 1, 2022
5fc0ae7
Bump socket.io-parser and socket.io
dependabot[bot] Nov 10, 2022
54fcfd0
Bump loader-utils
dependabot[bot] Nov 16, 2022
efc434c
Bump engine.io and socket.io
dependabot[bot] Nov 22, 2022
b693681
Bump hibernate-core
dependabot[bot] Nov 24, 2022
b8c2411
Bump hibernate-core
dependabot[bot] Nov 24, 2022
154f957
Bump hibernate-core
dependabot[bot] Nov 24, 2022
d8172b9
Bump hibernate-core
dependabot[bot] Nov 24, 2022
5ec748b
Bump hibernate-core
dependabot[bot] Nov 24, 2022
44755f0
Bump hibernate-core
dependabot[bot] Nov 24, 2022
2508ca3
Bump hibernate-core
dependabot[bot] Nov 24, 2022
b06140a
Bump hibernate-core
dependabot[bot] Nov 24, 2022
7fa2a4a
Merge pull request #15 from StarTeknoloji/dependabot/npm_and_yarn/sam…
Codes-Exe Dec 27, 2022
8fa2fce
Bump async and wd
dependabot[bot] Dec 27, 2022
263734a
Bump express
dependabot[bot] Dec 27, 2022
1985c81
Bump json5
dependabot[bot] Jan 9, 2023
8e052f4
Merge pull request #16 from StarTeknoloji/dependabot/npm_and_yarn/sam…
Codes-Exe Jan 16, 2023
3230488
Merge pull request #20 from StarTeknoloji/dependabot/npm_and_yarn/sam…
Codes-Exe Jan 16, 2023
cf4a784
Bump decode-uri-component
dependabot[bot] Jan 16, 2023
8afd046
Merge pull request #21 from StarTeknoloji/dependabot/npm_and_yarn/sam…
Codes-Exe Jan 16, 2023
c0dfd6e
Merge pull request #23 from StarTeknoloji/dependabot/npm_and_yarn/sam…
Codes-Exe Jan 16, 2023
380f138
Merge pull request #24 from StarTeknoloji/dependabot/npm_and_yarn/sam…
Codes-Exe Jan 16, 2023
b70e23f
Bump qs, body-parser and express
dependabot[bot] Jan 16, 2023
421de07
Merge pull request #25 from StarTeknoloji/dependabot/npm_and_yarn/sam…
Codes-Exe Jan 16, 2023
ac02eff
Merge pull request #26 from StarTeknoloji/dependabot/maven/samples/tu…
Codes-Exe Jan 16, 2023
194b36f
Merge pull request #27 from StarTeknoloji/dependabot/maven/samples/tu…
Codes-Exe Jan 16, 2023
2da5951
Merge pull request #28 from StarTeknoloji/dependabot/maven/samples/tu…
Codes-Exe Jan 16, 2023
79d6c3f
Merge pull request #29 from StarTeknoloji/dependabot/maven/samples/tu…
Codes-Exe Jan 16, 2023
5491891
Merge pull request #30 from StarTeknoloji/dependabot/npm_and_yarn/sam…
Codes-Exe Jan 16, 2023
1504b09
Merge pull request #31 from StarTeknoloji/dependabot/npm_and_yarn/sam…
Codes-Exe Jan 16, 2023
9d18f37
Bump json5 and rollup-plugin-babel
dependabot[bot] Jan 16, 2023
2be1f27
Merge pull request #32 from StarTeknoloji/dependabot/npm_and_yarn/sam…
Codes-Exe Jan 16, 2023
d05c574
Bump System.Data.SqlClient
dependabot[bot] Jan 16, 2023
ca11b00
Bump System.Data.SqlClient
dependabot[bot] Jan 16, 2023
9e5e3a7
Merge pull request #33 from StarTeknoloji/dependabot/npm_and_yarn/sam…
Codes-Exe Jan 16, 2023
2f4e97b
Merge pull request #37 from StarTeknoloji/dependabot/npm_and_yarn/sam…
Codes-Exe Jan 16, 2023
534a8af
Merge pull request #38 from StarTeknoloji/dependabot/nuget/samples/fe…
Codes-Exe Jan 16, 2023
47d834a
Merge pull request #39 from StarTeknoloji/dependabot/nuget/samples/de…
Codes-Exe Jan 16, 2023
b8c63e6
Merge pull request #39 from StarTeknoloji/master
Codes-Exe Jan 16, 2023
57abfa8
Bump minimatch
dependabot[bot] Jan 16, 2023
3980bfb
Merge pull request #28 from Star-Teknolog/dependabot/maven/samples/tu…
Codes-Exe Jan 16, 2023
29331ce
Merge pull request #21 from Star-Teknolog/dependabot/npm_and_yarn/sam…
Codes-Exe Jan 16, 2023
578c679
Merge pull request #25 from Star-Teknolog/dependabot/maven/samples/tu…
Codes-Exe Jan 16, 2023
5063464
Merge pull request #26 from Star-Teknolog/dependabot/maven/samples/tu…
Codes-Exe Jan 16, 2023
ca3e274
Merge pull request #27 from Star-Teknolog/dependabot/maven/samples/tu…
Codes-Exe Jan 16, 2023
2878ae4
Merge pull request #20 from Star-Teknolog/master
Codes-Exe Jan 16, 2023
9d4fdf7
Bump minimatch
dependabot[bot] Jan 16, 2023
bdbf533
Bump ua-parser-js
dependabot[bot] Jan 27, 2023
452280a
Bump ua-parser-js
dependabot[bot] Jan 27, 2023
2c45544
Bump http-cache-semantics
dependabot[bot] Feb 4, 2023
42e4c40
Bump http-cache-semantics
dependabot[bot] Feb 4, 2023
2cb14d5
Bump cryptography
dependabot[bot] Feb 8, 2023
fe25d99
Merge pull request #40 from StarTeknoloji/dependabot/npm_and_yarn/sam…
Codes-Exe Feb 17, 2023
5a1284d
Merge pull request #41 from StarTeknoloji/dependabot/npm_and_yarn/sam…
Codes-Exe Feb 17, 2023
7b4bdfc
Merge pull request #42 from StarTeknoloji/dependabot/npm_and_yarn/sam…
Codes-Exe Feb 17, 2023
9b06b3b
Merge pull request #43 from StarTeknoloji/dependabot/pip/samples/feat…
Codes-Exe Feb 17, 2023
7402476
Merge pull request #45 from StarTeknoloji/master
Codes-Exe Feb 17, 2023
5b4052c
Merge pull request #40 from Star-Teknolog/dependabot/npm_and_yarn/sam…
Codes-Exe Feb 17, 2023
9f82cab
Merge pull request #41 from Star-Teknolog/dependabot/npm_and_yarn/sam…
Codes-Exe Feb 17, 2023
5f115a5
Merge pull request #21 from Star-Teknolog/master
Codes-Exe Feb 17, 2023
005edf8
Update package-lock.json
Codes-Exe Nov 12, 2023
8eb277d
Update composer.lock
Codes-Exe Nov 12, 2023
3c09f6e
Update ContosoHR.csproj
Codes-Exe Nov 12, 2023
c707e98
Bump cryptography
dependabot[bot] Mar 31, 2024
343dbfd
Bump follow-redirects
dependabot[bot] Mar 31, 2024
6e740cf
Bump ip
dependabot[bot] Mar 31, 2024
b8f697e
Bump express
dependabot[bot] Mar 31, 2024
94a0ae1
Bump express
dependabot[bot] Mar 31, 2024
030bfc8
Merge pull request #22 from Codes-Exe/dependabot/pip/samples/features…
Codes-Exe Mar 31, 2024
3bc8d10
Merge pull request #23 from Codes-Exe/dependabot/npm_and_yarn/samples…
Codes-Exe Mar 31, 2024
c56c55a
Bump webpack-dev-middleware
dependabot[bot] Mar 31, 2024
7571b25
Bump follow-redirects
dependabot[bot] Mar 31, 2024
907084a
Merge pull request #24 from Codes-Exe/dependabot/npm_and_yarn/samples…
Codes-Exe Mar 31, 2024
fe3991b
Merge pull request #25 from Codes-Exe/dependabot/npm_and_yarn/samples…
Codes-Exe Mar 31, 2024
b8039c1
Merge pull request #26 from Codes-Exe/dependabot/npm_and_yarn/samples…
Codes-Exe Mar 31, 2024
edfe525
Bump System.Data.SqlClient in /samples/tutorials/f#/SqlServerSample
dependabot[bot] Mar 31, 2024
b6ce84b
Bump System.Data.SqlClient
dependabot[bot] Mar 31, 2024
759640a
Merge pull request #27 from Codes-Exe/dependabot/npm_and_yarn/samples…
Codes-Exe Mar 31, 2024
208480e
Bump System.Data.SqlClient
dependabot[bot] Mar 31, 2024
dca6fe3
Merge pull request #28 from Codes-Exe/dependabot/npm_and_yarn/samples…
Codes-Exe Mar 31, 2024
84775a6
Bump System.Data.SqlClient
dependabot[bot] Mar 31, 2024
7904d39
Merge pull request #29 from Codes-Exe/dependabot/nuget/samples/tutori…
Codes-Exe Mar 31, 2024
5cdf8d9
Merge pull request #30 from Codes-Exe/dependabot/nuget/samples/tutori…
Codes-Exe Mar 31, 2024
e1739db
Bump System.Data.SqlClient
dependabot[bot] Mar 31, 2024
bc57131
Merge pull request #31 from Codes-Exe/dependabot/nuget/samples/featur…
Codes-Exe Mar 31, 2024
b28fab7
Merge pull request #32 from Codes-Exe/dependabot/nuget/samples/tutori…
Codes-Exe Mar 31, 2024
f0b5e12
Merge pull request #33 from Codes-Exe/dependabot/nuget/samples/demos/…
Codes-Exe Mar 31, 2024
f4f92c2
Bump System.Data.SqlClient
dependabot[bot] Mar 31, 2024
8d2cd4d
Bump System.Data.SqlClient
dependabot[bot] Mar 31, 2024
efcfaa0
Bump System.Data.SqlClient
dependabot[bot] Mar 31, 2024
ba79579
Bump System.Data.SqlClient
dependabot[bot] Mar 31, 2024
6def1be
Bump System.Data.SqlClient in /samples/tutorials/c#/SLES/SqlServerSample
dependabot[bot] Mar 31, 2024
0502e74
Bump System.Data.SqlClient
dependabot[bot] Mar 31, 2024
2ce25d0
Bump System.Data.SqlClient
dependabot[bot] Mar 31, 2024
6aadb1c
Bump System.Data.SqlClient in /samples/tutorials/c#/RHEL/SqlServerSample
dependabot[bot] Mar 31, 2024
11b24bb
Bump tar
dependabot[bot] Apr 11, 2024
b394ed2
Bump Azure.Identity
dependabot[bot] Apr 11, 2024
6d0d44e
Bump Azure.Identity
dependabot[bot] Apr 11, 2024
186787e
Bump ejs
dependabot[bot] May 2, 2024
061266a
Merge pull request #34 from Codes-Exe/dependabot/nuget/samples/tutori…
Codes-Exe May 24, 2024
ff3fcd0
Merge pull request #35 from Codes-Exe/dependabot/nuget/samples/tutori…
Codes-Exe May 24, 2024
a7c4fd4
Merge pull request #36 from Codes-Exe/dependabot/nuget/samples/tutori…
Codes-Exe May 24, 2024
710a12b
Merge pull request #37 from Codes-Exe/dependabot/nuget/samples/tutori…
Codes-Exe May 24, 2024
50b4ef8
Merge pull request #38 from Codes-Exe/dependabot/nuget/samples/tutori…
Codes-Exe May 24, 2024
92408a6
Merge pull request #39 from Codes-Exe/dependabot/nuget/samples/tutori…
Codes-Exe May 24, 2024
06d5b6e
Merge pull request #40 from Codes-Exe/dependabot/nuget/samples/tutori…
Codes-Exe May 24, 2024
293a9c8
Merge pull request #41 from Codes-Exe/dependabot/nuget/samples/tutori…
Codes-Exe May 24, 2024
a0ce16e
Merge pull request #42 from Codes-Exe/dependabot/npm_and_yarn/samples…
Codes-Exe May 24, 2024
b992002
Merge pull request #43 from Codes-Exe/dependabot/nuget/samples/featur…
Codes-Exe May 24, 2024
9099d70
Bump System.Data.SqlClient in /samples/features/json/Dapper-Orm
dependabot[bot] May 24, 2024
43f3fc8
Merge pull request #44 from Codes-Exe/dependabot/nuget/samples/featur…
Codes-Exe May 24, 2024
4fe1aa6
Merge pull request #45 from Codes-Exe/dependabot/npm_and_yarn/samples…
Codes-Exe May 24, 2024
415cfbb
Bump Microsoft.Data.SqlClient
dependabot[bot] May 24, 2024
3bc0861
Merge pull request #46 from Codes-Exe/dependabot/nuget/samples/featur…
Codes-Exe May 24, 2024
fc17bce
Merge pull request #47 from Codes-Exe/dependabot/nuget/samples/featur…
Codes-Exe May 24, 2024
b960d47
Bump System.Data.SqlClient
dependabot[bot] May 24, 2024
1968868
Bump azure-identity
dependabot[bot] Jun 11, 2024
6cfae6a
Bump Azure.Identity
dependabot[bot] Jun 11, 2024
a822032
Bump braces
dependabot[bot] Jul 10, 2024
7049004
Bump ws, engine.io and engine.io-client
dependabot[bot] Jul 10, 2024
a41862d
Bump socket.io-parser
dependabot[bot] Jul 23, 2024
c391094
Merge pull request #48 from Codes-Exe/dependabot/nuget/samples/featur…
Codes-Exe Aug 3, 2024
e10d92c
Merge pull request #49 from Codes-Exe/dependabot/pip/samples/features…
Codes-Exe Aug 3, 2024
b43d72d
Merge pull request #50 from Codes-Exe/dependabot/nuget/samples/featur…
Codes-Exe Aug 3, 2024
87c4971
Merge pull request #51 from Codes-Exe/dependabot/npm_and_yarn/samples…
Codes-Exe Aug 3, 2024
553d4e4
Merge pull request #52 from Codes-Exe/dependabot/npm_and_yarn/samples…
Codes-Exe Aug 3, 2024
aecb0b1
Merge pull request #53 from Codes-Exe/dependabot/npm_and_yarn/samples…
Codes-Exe Aug 3, 2024
493b69c
Bump bootstrap
dependabot[bot] Aug 3, 2024
2cbbf10
Merge pull request #54 from Codes-Exe/dependabot/nuget/samples/featur…
Codes-Exe Aug 3, 2024
8b580c9
Bump requirejs
dependabot[bot] Aug 3, 2024
ac073eb
Bump Azure.Identity
dependabot[bot] Aug 3, 2024
4f02dcb
Merge pull request #55 from Codes-Exe/dependabot/npm_and_yarn/samples…
Codes-Exe Aug 3, 2024
9bb7bbe
Merge pull request #56 from Codes-Exe/dependabot/nuget/samples/featur…
Codes-Exe Aug 3, 2024
9cb5f56
Bump webpack
dependabot[bot] Aug 30, 2024
692efd8
Bump micromatch
dependabot[bot] Sep 2, 2024
8a7b9cb
Bump cryptography
dependabot[bot] Sep 4, 2024
770b64b
Bump body-parser and express
dependabot[bot] Sep 17, 2024
f9f7a31
Bump rollup
dependabot[bot] Sep 27, 2024
012db77
Merge pull request #57 from Codes-Exe/dependabot/npm_and_yarn/samples…
Codes-Exe Oct 3, 2024
aa3bbf4
Merge pull request #58 from Codes-Exe/dependabot/npm_and_yarn/samples…
Codes-Exe Oct 3, 2024
a37ac31
Merge pull request #59 from Codes-Exe/dependabot/pip/samples/features…
Codes-Exe Oct 3, 2024
af7810f
Merge pull request #60 from Codes-Exe/dependabot/npm_and_yarn/samples…
Codes-Exe Oct 3, 2024
a04f596
Merge pull request #63 from Codes-Exe/dependabot/npm_and_yarn/samples…
Codes-Exe Oct 3, 2024
c1f5a01
Bump body-parser and express
dependabot[bot] Oct 3, 2024
5717650
Merge pull request #64 from Codes-Exe/dependabot/npm_and_yarn/samples…
Codes-Exe Oct 3, 2024
73af008
Bump send and express
dependabot[bot] Oct 3, 2024
d23a22c
Bump serve-static and express
dependabot[bot] Oct 3, 2024
db06515
Bump bootstrap
dependabot[bot] Oct 3, 2024
98a0ef8
Merge pull request #61 from Codes-Exe/dependabot/npm_and_yarn/samples…
Codes-Exe Oct 3, 2024
b91dc57
Merge pull request #65 from Codes-Exe/dependabot/nuget/samples/manage…
Codes-Exe Oct 3, 2024
f038de6
Merge pull request #62 from Codes-Exe/dependabot/npm_and_yarn/samples…
Codes-Exe Oct 3, 2024
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
70 changes: 70 additions & 0 deletions .github/workflows/codeql-analysis.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,70 @@
# For most projects, this workflow file will not need changing; you simply need
# to commit it to your repository.
#
# You may wish to alter this file to override the set of languages analyzed,
# or to provide custom queries or build logic.
#
# ******** NOTE ********
# We have attempted to detect the languages in your repository. Please check
# the `language` matrix defined below to confirm you have the correct set of
# supported CodeQL languages.
#
name: "CodeQL"

on:
push:
branches: [ master ]
pull_request:
# The branches below must be a subset of the branches above
branches: [ master ]
schedule:
- cron: '20 14 * * 1'

jobs:
analyze:
name: Analyze
runs-on: ubuntu-latest
permissions:
actions: read
contents: read
security-events: write

strategy:
fail-fast: false
matrix:
language: [ ]
# CodeQL supports [ 'cpp', 'csharp', 'go', 'java', 'javascript', 'python', 'ruby' ]
# Learn more about CodeQL language support at https://git.io/codeql-language-support

steps:
- name: Checkout repository
uses: actions/checkout@v2

# Initializes the CodeQL tools for scanning.
- name: Initialize CodeQL
uses: github/codeql-action/init@v1
with:
languages: ${{ matrix.language }}
# If you wish to specify custom queries, you can do so here or in a config file.
# By default, queries listed here will override any specified in a config file.
# Prefix the list here with "+" to use these queries and those in the config file.
# queries: ./path/to/local/query, your-org/your-repo/queries@main

# Autobuild attempts to build any compiled languages (C/C++, C#, or Java).
# If this step fails, then you should remove it and run the build manually (see below)
- name: Autobuild
uses: github/codeql-action/autobuild@v1

# ℹ️ Command-line programs to run using the OS shell.
# 📚 https://git.io/JvXDl

# ✏️ If the Autobuild fails above, remove it and uncomment the following three lines
# and modify them (or add more) to build your code if your project
# uses a compiled language

#- run: |
# make bootstrap
# make release

- name: Perform CodeQL Analysis
uses: github/codeql-action/analyze@v1
42 changes: 42 additions & 0 deletions .github/workflows/powershell.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,42 @@
# This workflow uses actions that are not certified by GitHub.
# They are provided by a third-party and are governed by
# separate terms of service, privacy policy, and support
# documentation.
#
# https://github.com/microsoft/action-psscriptanalyzer
# For more information on PSScriptAnalyzer in general, see
# https://github.com/PowerShell/PSScriptAnalyzer

name: PSScriptAnalyzer

on:
push:
branches: [ master ]
pull_request:
branches: [ master ]
schedule:
- cron: '39 7 * * 1'

jobs:
build:
name: PSScriptAnalyzer
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@v2

- name: Run PSScriptAnalyzer
uses: microsoft/psscriptanalyzer-action@2044ae068e37d0161fa2127de04c19633882f061
with:
# Check https://github.com/microsoft/action-psscriptanalyzer for more info about the options.
# The below set up runs PSScriptAnalyzer to your entire repository and runs some basic security rules.
path: .\
recurse: true
# Include your own basic security rules. Removing this option will run all the rules
includeRule: '"PSAvoidGlobalAliases", "PSAvoidUsingConvertToSecureStringWithPlainText"'
output: results.sarif

# Upload the SARIF file generated in the previous step
- name: Upload SARIF results file
uses: github/codeql-action/upload-sarif@v1
with:
sarif_file: results.sarif
22 changes: 22 additions & 0 deletions SECURITY.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,22 @@
# Security Policy

## Supported Versions

Use this section to tell people about which versions of your project are
currently being supported with security updates.

| Version | Supported |
| ------- | ------------------ |
| 5.1.x | :white_check_mark: |
| 5.0.x | :x: |
| 4.0.x | :white_check_mark: |
| < 4.0 | :x: |

## Reporting a Vulnerability

Use this section to tell people how to report a vulnerability.

Tell them where to go, how often they can expect to get an update on a
reported vulnerability, what to expect if the vulnerability is accepted or
declined, etc.
www.bounty.github.com
Original file line number Diff line number Diff line change
Expand Up @@ -22,7 +22,7 @@
<PackageReference Include="Microsoft.VisualStudio.Web.BrowserLink" Version="2.0.2" />
<PackageReference Include="Microsoft.VisualStudio.Web.CodeGeneration.Design" Version="2.0.3" />
<PackageReference Include="MsSql.RestApi" Version="0.4.0" />
<PackageReference Include="Newtonsoft.Json" Version="11.0.2" />
<PackageReference Include="Newtonsoft.Json" Version="13.0.1" />
</ItemGroup>
<ItemGroup>
<DotNetCliToolReference Include="Microsoft.VisualStudio.Web.CodeGeneration.Tools" Version="1.0.1" />
Expand Down
Loading