Skip to content

fix(deps): update dependency opentok to ^2.23.2 (main) - #399

Open
mend-for-github-com[bot] wants to merge 1 commit into
mainfrom
whitesource-remediate/main-opentok-2.x
Open

fix(deps): update dependency opentok to ^2.23.2 (main)#399
mend-for-github-com[bot] wants to merge 1 commit into
mainfrom
whitesource-remediate/main-opentok-2.x

Conversation

@mend-for-github-com

@mend-for-github-com mend-for-github-com Bot commented Jul 12, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
opentok ^2.3.2^2.23.2 age adoption passing confidence

This PR resolves the vulnerabilities described in Issue #379


Version 2.23.1
Risk Change Critical High Medium Low
N/A 2 2 1 1
Version 2.23.2
Risk Change Critical High Medium Low
-7% 2 (--) 0 (-2 ) 0 (-1 ) 2 (+1)

Mend ensures you have the greatest risk reduction ("Recommended Fix"-highlighted in green) by removing as many vulnerabilities as possible. Click to see how we calculate risk reduction.


Release Notes

opentok/opentok-node (opentok)

v2.23.2

Compare Source

What's Changed

Full Changelog: v2.23.1...v2.23.2

v2.23.1

Compare Source

What's Changed

Full Changelog: v2.23.0...v2.23.1

v2.23.0

Compare Source

What's Changed

Full Changelog: v2.22.0...v2.23.0

v2.22.0

Compare Source

What's Changed

New Contributors

Full Changelog: 2.21.1...v2.22.0

v2.21.2

Compare Source

v2.21.1

Compare Source

What's Changed

Full Changelog: 2.21.0...2.21.1

v2.21.0

Compare Source

What's Changed

Full Changelog: v2.20.0...2.21.0

v2.20.0

Compare Source

What's Changed

Full Changelog: v2.18.1...v2.20.0

v2.19.0

Compare Source

v2.18.1

Compare Source

What's Changed

v2.18.0

Compare Source

What's Changed

Full Changelog: v2.17.0...v2.18.0

v2.17.2

Compare Source

v2.17.1

Compare Source

v2.17.0

Compare Source

What's Changed

New Contributors

Full Changelog: v2.16.0...v2.17.0

v2.16.0

Compare Source

v2.15.2

Compare Source

v2.15.1

Compare Source

Added

  • N/A

Changed

  • N/A

Fixed

  • Updating a broadcast now properly checks for a 204 response instead of a 200 response

v2.15.0

Compare Source

This release adds video archiving along with experience composer functionality. The SDK now requires the latest LTS versions of Node (14.x, 16.x and 18.x)

What's Changed

New Contributors

Full Changelog: v2.14.3...v2.15.0

v2.14.3: Fix patch response http code

Compare Source

What's Changed

Full Changelog: v2.14.2...v2.14.3

v2.14.2: Fix JS issues / increase error usefulness

Compare Source

What's Changed

New Contributors

Full Changelog: v2.14.1...v2.14.2

v2.14.1: Add streammode to archiving post body

Compare Source

v2.14.0: Support for DVR and low-latency HLS broadcasts

Compare Source

See the DVR and lowLatency options for Opentok.startBroadcast() method.

... Also other docs corrections.

v2.13.0: Force mute and selective stream archive/broadcast API additions

Compare Source

v2.12.1: Node module updates, minor edits to the DTMF docs

Compare Source

v2.12.0: Add support for SIP video and DTMF for SIP

Compare Source

v2.11.0: Adds screen-sharing layout enhancements for archives and broadcasts

Compare Source

  • Adds support for new screen-sharing layout enhancements for archives and broadcasts (see this documentation).
  • Fixes error reporting on client for startBroadcast and setStreamClassLists
  • Updates lodash version

v2.10.0

Compare Source

Adds a timeout config variable in order to allow users with slow networks to increase request timeouts.

v2.9.2

Compare Source

  • Updates node modules(fixes #​216)
  • Docs corrections
  • Don't wrap the same request instance with defaults (fixes #​212)

v2.9.1

Compare Source

  • Fixes vulnerability issues
  • Updates lodash dependency
  • Drops support for Node 3 &4 which have been deprecated by the Node team

v2.9.0

Compare Source

  • Adds List Broadcasts API
  • Updates Docs to share support for RTMPS
  • Adds testing against Node 8, 9, 10.

v2.8.1

Compare Source

  • Allow from property to be used for SIP Dial #​197
  • Minor README edits
  • Improve Broadcast sample

v2.8.0

Compare Source

  • Add Broadcast functionalities & documentation #​189
  • Add Broadcast sample application

Thanks @​jeffswartz!!

v2.7.0

Compare Source

  • Added getStream
  • Added listStreams
  • Added setArchiveLayout
  • Added setStreamClassLists
  • Fixed linting errors
  • Doc corrections & sample improvements

Thanks @​jeffswartz

v2.6.2

Compare Source

v2.6.1

Compare Source

  • Updated version of ejs in sample projects due to a vulnerability (#​170)
  • Fix SipError to correctly extend Error (#​168 Thanks @​synthmusic!)

v2.6.0

Compare Source

  • Feature: Callbacks API (#​156)
  • Feature: Moderation API (#​160)
  • Feature: Signal API (#​161)
  • Feature: List archives by session ID (#​149 Thanks @​CatGuardian)
  • Feature: initialLayoutClassList for layout control of broadcasts and composed archives (#​155)

And also:

v2.5.1

Compare Source

Updating jsonwebtoken dependency which updates ms package (#​153)
ms@​0.7.3 is vulnerable to a ReDoS attack: https://snyk.io/vuln/npm:ms:20170412

v2.5.0

Compare Source

v2.4.0

Compare Source

New feature: Added SIP Interconnect support. Thanks @​davemun!
Updated dependencies: #​133. Thanks @​westy92!


  • If you want to rebase/retry this PR, check this box

@mend-for-github-com mend-for-github-com Bot added the security fix Security fix generated by Mend label Jul 12, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

security fix Security fix generated by Mend

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants