Huge News!Announcing our $40M Series B led by Abstract Ventures.Learn More
Socket
Sign inDemoInstall
Socket

@contrast/assess

Package Overview
Dependencies
Maintainers
8
Versions
53
Alerts
File Explorer

Advanced tools

Socket logo

Install Socket

Detect and block malicious and high-risk dependencies

Install

@contrast/assess - npm Package Compare versions

Comparing version 1.38.0 to 1.39.0

2

lib/dataflow/sinks/install/express/reflected-xss.js

@@ -75,3 +75,3 @@ /*

reflectedXss.install = function() {
depHooks.resolve({ name: 'express', file: 'lib/response' }, (Response) => {
depHooks.resolve({ name: 'express', version: '>=4.0.0 <5.0.0', file: 'lib/response' }, (Response) => {
const name = 'Express.Response.send';

@@ -78,0 +78,0 @@ patcher.patch(Response, 'send', {

@@ -70,3 +70,3 @@ /*

unvalidatedRedirect.install = function() {
depHooks.resolve({ name: 'express', file: 'lib/response' }, (Response) => {
depHooks.resolve({ name: 'express', version: '>=4.0.0 <5.0.0', file: 'lib/response' }, (Response) => {
const name = 'Express.Response.location';

@@ -73,0 +73,0 @@ patcher.patch(Response, 'location', {

@@ -34,3 +34,3 @@ /*

depHooks.resolve(
{ name: 'express', file: 'lib/router/layer.js' },
{ name: 'express', version: '>=4.0.0 <5.0.0', file: 'lib/router/layer.js' },
(Layer) => {

@@ -50,3 +50,3 @@ patcher.patch(Layer.prototype, 'match', {

const sourceContext = getSourceContext(SOURCE)
const sourceContext = getSourceContext(SOURCE);
if (!sourceContext) return;

@@ -53,0 +53,0 @@

@@ -35,3 +35,3 @@ /*

depHooks.resolve(
{ name: 'express', file: 'lib/middleware/init.js' },
{ name: 'express', version: '>=4.0.0 <5.0.0', file: 'lib/middleware/init.js' },
/** @param {import('express/lib/middleware/init')} mw */

@@ -38,0 +38,0 @@ (mw) => {

@@ -36,3 +36,3 @@ 'use strict';

.resolve
.withArgs({ name: 'express', file: 'lib/middleware/init.js' })
.withArgs({ name: 'express', version: '>=4.0.0 <5.0.0', file: 'lib/middleware/init.js' })
.yields(middleware);

@@ -39,0 +39,0 @@ });

{
"name": "@contrast/assess",
"version": "1.38.0",
"version": "1.39.0",
"description": "Contrast service providing framework-agnostic Assess support",

@@ -5,0 +5,0 @@ "license": "SEE LICENSE IN LICENSE",

SocketSocket SOC 2 Logo

Product

  • Package Alerts
  • Integrations
  • Docs
  • Pricing
  • FAQ
  • Roadmap
  • Changelog

Packages

npm

Stay in touch

Get open source security insights delivered straight into your inbox.


  • Terms
  • Privacy
  • Security

Made with ⚡️ by Socket Inc