Update dependency body-parser to ~1.20.6 - #33
Open
dev-mend-for-github-com[bot] wants to merge 1 commit into
Open
Update dependency body-parser to ~1.20.6#33dev-mend-for-github-com[bot] wants to merge 1 commit into
dev-mend-for-github-com[bot] wants to merge 1 commit into
Conversation
dev-mend-for-github-com
Bot
force-pushed
the
whitesource-remediate/body-parser-1.x
branch
from
July 26, 2026 02:01
06c6d57 to
1c479a9
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
~1.13.2→~1.20.6By merging this PR, the below vulnerabilities will be automatically resolved:
Release Notes
expressjs/body-parser (body-parser)
v1.20.6Compare Source
===================
limitoption validation (#698)limitvalues (e.g. unparseable strings orNaN) now throw instead of being silently ignored, which previously disabled size limit enforcementnullandundefinedfall back to the default 100kb limitv1.20.5Compare Source
===================
v1.20.4Compare Source
===================
v1.20.3Compare Source
===================
depthoption to customize the depth level in the parserdepthlevel for parsing URL-encoded data is now32(previously wasInfinity)v1.20.2Compare Source
===================
v1.20.1Compare Source
===================
v1.20.0Compare Source
===================
strictevalusage withFunctionconstructorprocessto check for listenersv1.19.2Compare Source
===================
__proto__keysv1.19.1Compare Source
===================
v1.19.0Compare Source
===================
pb) supportthrowon invalid typev1.18.3Compare Source
===================
v1.18.2Compare Source
===================
v1.18.1Compare Source
===================
v1.18.0Compare Source
===================
bodyproperty on verify errorstypeproperty on all generated errorshttp-errorsto set status code on errorsBufferloadinghttp-errorsfor standard emitted errorsthrowwhen missing charsetv1.17.2Compare Source
===================
DEBUG_MAX_ARRAY_LENGTHv1.17.1Compare Source
===================
[v1.17.0Compare Source
===================
messageproperty enumerable forHttpErrorsv1.16.1Compare Source
===================
DEBUG_FDset to1or2v1.16.0Compare Source
===================
DEBUG_FDenvironment variablev1.15.2Compare Source
===================
setprototypeofmodule to replace__proto__settingv1.15.1Compare Source
===================
v1.15.0Compare Source
===================
HttpErrorexport, forerr instanceof createError.HttpErrorv1.14.2Compare Source
===================
v1.14.1Compare Source
===================
verifyusediconv-litev1.14.0Compare Source
===================
requireanalysis inurlencodedparserv1.13.3Compare Source
===================