[Snyk] Fix for 92 vulnerabilities - #1
Open
snyk-io-eu[bot] wants to merge 1 commit into
Open
Conversation
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-SERIALIZEJAVASCRIPT-15809196 - https://snyk.io/vuln/SNYK-JS-SERIALIZEJAVASCRIPT-570062 - https://snyk.io/vuln/SNYK-JS-SERIALIZEJAVASCRIPT-6147607 - https://snyk.io/vuln/SNYK-JS-SHELLQUOTE-1766506 - https://snyk.io/vuln/SNYK-JS-TERSER-2806366 - https://snyk.io/vuln/SNYK-JS-TMPL-1583443 - https://snyk.io/vuln/SNYK-JS-TOOTALLNATEONCE-15250612 - https://snyk.io/vuln/SNYK-JS-TOUGHCOOKIE-5672873 - https://snyk.io/vuln/SNYK-JS-TRIMNEWLINES-1298042 - https://snyk.io/vuln/SNYK-JS-UNSETVALUE-2400660 - https://snyk.io/vuln/SNYK-JS-WEBPACK-7840298 - https://snyk.io/vuln/SNYK-JS-WEBPACKDEVMIDDLEWARE-6476555 - https://snyk.io/vuln/SNYK-JS-WORDWRAP-3149973 - https://snyk.io/vuln/SNYK-JS-WS-1296835 - https://snyk.io/vuln/SNYK-JS-WS-7266574 - https://snyk.io/vuln/SNYK-JS-YAML-15765520 - https://snyk.io/vuln/SNYK-JS-NODEFORGE-15789771 - https://snyk.io/vuln/SNYK-JS-NODEFORGE-15789767 - https://snyk.io/vuln/SNYK-JS-NODEFORGE-15789769 - https://snyk.io/vuln/SNYK-JS-NODEFORGE-15789773 - https://snyk.io/vuln/SNYK-JS-FORMDATA-10841150 - https://snyk.io/vuln/SNYK-JS-BABELTRAVERSE-5962462 - https://snyk.io/vuln/SNYK-JS-FLATTED-15700433 - https://snyk.io/vuln/SNYK-JS-CROSSSPAWN-8303230 - https://snyk.io/vuln/SNYK-JS-FLATTED-15518041 - https://snyk.io/vuln/SNYK-JS-HTTPPROXYMIDDLEWARE-8229906 - https://snyk.io/vuln/SNYK-JS-MINIMATCH-15309438 - https://snyk.io/vuln/SNYK-JS-MINIMATCH-15353389 - https://snyk.io/vuln/SNYK-JS-QS-14724253 - https://snyk.io/vuln/SNYK-JS-PROTOBUFJS-5756498 - https://snyk.io/vuln/SNYK-JS-ROLLUP-15340920 - https://snyk.io/vuln/SNYK-JS-AJV-15274295 - https://snyk.io/vuln/SNYK-JS-PROTOBUFJS-2441248 - https://snyk.io/vuln/SNYK-JS-EJS-2803307 - https://snyk.io/vuln/SNYK-JS-PICOMATCH-15765511 - https://snyk.io/vuln/SNYK-JS-IP-12704893 - https://snyk.io/vuln/SNYK-JS-IP-12761655 - https://snyk.io/vuln/SNYK-JS-LODASH-15869625 - https://snyk.io/vuln/SNYK-JS-ANSIHTML-1296849 - https://snyk.io/vuln/SNYK-JS-ANSIREGEX-1583908 - https://snyk.io/vuln/SNYK-JS-ASYNC-2441827 - https://snyk.io/vuln/SNYK-JS-BRACES-6838727 - https://snyk.io/vuln/SNYK-JS-DECODEURICOMPONENT-3149970 - https://snyk.io/vuln/SNYK-JS-MOMENT-2944238 - https://snyk.io/vuln/SNYK-JS-QS-3153490 - https://snyk.io/vuln/SNYK-JS-SEMVER-3247795 - https://snyk.io/vuln/SNYK-JS-LODASHTEMPLATE-1088054 - https://snyk.io/vuln/SNYK-JS-NODEFORGE-14114940 - https://snyk.io/vuln/SNYK-JS-AXIOS-6032459 - https://snyk.io/vuln/SNYK-JS-BABELRUNTIME-10044504 - https://snyk.io/vuln/SNYK-JS-BNJS-15274301 - https://snyk.io/vuln/SNYK-JS-NODEFORGE-14125745 - https://snyk.io/vuln/SNYK-JS-IP-7148531 - https://snyk.io/vuln/SNYK-JS-REQUEST-3361831 - https://snyk.io/vuln/SNYK-JS-JSONSCHEMA-1920922 - https://snyk.io/vuln/SNYK-JS-JSON5-3182856 - https://snyk.io/vuln/SNYK-JS-APEXCHARTS-1300579 - https://snyk.io/vuln/SNYK-JS-DIFF-14917201 - https://snyk.io/vuln/SNYK-JS-ELLIPTIC-14908844 - https://snyk.io/vuln/SNYK-JS-LODASH-15869619 - https://snyk.io/vuln/SNYK-JS-PICOMATCH-15765513 - https://snyk.io/vuln/SNYK-JS-JWS-14188253 - https://snyk.io/vuln/SNYK-JS-IMMER-1540542 - https://snyk.io/vuln/SNYK-JS-LOADERUTILS-3043105 - https://snyk.io/vuln/SNYK-JS-MOMENT-2440688 - https://snyk.io/vuln/SNYK-JS-BROWSERSLIST-1090194 - https://snyk.io/vuln/SNYK-JS-EJS-6689533 - https://snyk.io/vuln/SNYK-JS-GLOBPARENT-1016905 - https://snyk.io/vuln/SNYK-JS-NODEFORGE-2330875 - https://snyk.io/vuln/SNYK-JS-PATHPARSE-1077067 - https://snyk.io/vuln/SNYK-JS-PROMPTS-1729737 - https://snyk.io/vuln/SNYK-JS-NODEFORGE-2430339 - https://snyk.io/vuln/SNYK-JS-ROLLUP-8073097 - https://snyk.io/vuln/SNYK-JS-GRPCGRPCJS-7242922 - https://snyk.io/vuln/SNYK-JS-JSYAML-13961110 - https://snyk.io/vuln/SNYK-JS-LODASH-15053838 - https://snyk.io/vuln/SNYK-JS-ESLINT-15102420 - https://snyk.io/vuln/SNYK-JS-NODEFETCH-2342118 - https://snyk.io/vuln/SNYK-JS-NODEFORGE-14125097 - https://snyk.io/vuln/SNYK-JS-NODEFORGE-2331908 - https://snyk.io/vuln/SNYK-JS-EJS-1049328 - https://snyk.io/vuln/SNYK-JS-NWSAPI-2841516 - https://snyk.io/vuln/SNYK-JS-MINIMIST-2429795 - https://snyk.io/vuln/SNYK-JS-NODEFORGE-2430337 - https://snyk.io/vuln/SNYK-JS-NODEFORGE-2430341 - https://snyk.io/vuln/SNYK-JS-RAMDA-1582370 - https://snyk.io/vuln/SNYK-JS-LOADERUTILS-3042992 - https://snyk.io/vuln/SNYK-JS-LOADERUTILS-3105943 - https://snyk.io/vuln/SNYK-JS-MICROMATCH-6838728 - https://snyk.io/vuln/SNYK-JS-MINIMATCH-3050818 - https://snyk.io/vuln/SNYK-JS-POSTCSS-5926692 - https://snyk.io/vuln/SNYK-JS-ISTANBULREPORTS-2328088
Author
✅ Snyk checks have passed. No issues have been found so far.
💻 Catch issues earlier using the plugins for VS Code, JetBrains IDEs, Visual Studio, and Eclipse. |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Snyk has created this PR to fix 92 vulnerabilities in the yarn dependencies of this project.
Snyk changed the following file(s):
packages/client/package.jsonNote for zero-installs users
If you are using the Yarn feature zero-installs that was introduced in Yarn V2, note that this PR does not update the
.yarn/cache/directory meaning this code cannot be pulled and immediately developed on as one would expect for a zero-install project - you will need to runyarnto update the contents of the./yarn/cachedirectory.If you are not using zero-install you can ignore this as your flow should likely be unchanged.
Vulnerabilities that will be fixed with an upgrade:
SNYK-JS-SERIALIZEJAVASCRIPT-15809196
SNYK-JS-SERIALIZEJAVASCRIPT-570062
SNYK-JS-SERIALIZEJAVASCRIPT-6147607
SNYK-JS-SHELLQUOTE-1766506
SNYK-JS-TERSER-2806366
SNYK-JS-TMPL-1583443
SNYK-JS-TOOTALLNATEONCE-15250612
SNYK-JS-TOUGHCOOKIE-5672873
SNYK-JS-TRIMNEWLINES-1298042
SNYK-JS-UNSETVALUE-2400660
SNYK-JS-WEBPACK-7840298
SNYK-JS-WEBPACKDEVMIDDLEWARE-6476555
SNYK-JS-WORDWRAP-3149973
SNYK-JS-WS-1296835
SNYK-JS-WS-7266574
SNYK-JS-YAML-15765520
SNYK-JS-NODEFORGE-15789771
SNYK-JS-NODEFORGE-15789767
SNYK-JS-NODEFORGE-15789769
SNYK-JS-NODEFORGE-15789773
SNYK-JS-FORMDATA-10841150
SNYK-JS-BABELTRAVERSE-5962462
SNYK-JS-FLATTED-15700433
SNYK-JS-CROSSSPAWN-8303230
SNYK-JS-FLATTED-15518041
SNYK-JS-HTTPPROXYMIDDLEWARE-8229906
SNYK-JS-MINIMATCH-15309438
SNYK-JS-MINIMATCH-15353389
SNYK-JS-QS-14724253
SNYK-JS-PROTOBUFJS-5756498
SNYK-JS-ROLLUP-15340920
SNYK-JS-AJV-15274295
SNYK-JS-PROTOBUFJS-2441248
SNYK-JS-EJS-2803307
SNYK-JS-PICOMATCH-15765511
SNYK-JS-IP-12704893
SNYK-JS-IP-12761655
SNYK-JS-LODASH-15869625
SNYK-JS-ANSIHTML-1296849
SNYK-JS-ANSIREGEX-1583908
SNYK-JS-ASYNC-2441827
SNYK-JS-BRACES-6838727
SNYK-JS-DECODEURICOMPONENT-3149970
SNYK-JS-MOMENT-2944238
SNYK-JS-QS-3153490
SNYK-JS-SEMVER-3247795
SNYK-JS-LODASHTEMPLATE-1088054
SNYK-JS-NODEFORGE-14114940
SNYK-JS-AXIOS-6032459
SNYK-JS-BABELRUNTIME-10044504
SNYK-JS-BNJS-15274301
SNYK-JS-NODEFORGE-14125745
SNYK-JS-IP-7148531
SNYK-JS-REQUEST-3361831
SNYK-JS-JSONSCHEMA-1920922
SNYK-JS-JSON5-3182856
SNYK-JS-APEXCHARTS-1300579
SNYK-JS-DIFF-14917201
SNYK-JS-ELLIPTIC-14908844
SNYK-JS-LODASH-15869619
SNYK-JS-PICOMATCH-15765513
SNYK-JS-JWS-14188253
SNYK-JS-IMMER-1540542
SNYK-JS-LOADERUTILS-3043105
SNYK-JS-MOMENT-2440688
SNYK-JS-BROWSERSLIST-1090194
SNYK-JS-EJS-6689533
SNYK-JS-GLOBPARENT-1016905
SNYK-JS-NODEFORGE-2330875
SNYK-JS-PATHPARSE-1077067
SNYK-JS-PROMPTS-1729737
SNYK-JS-NODEFORGE-2430339
SNYK-JS-ROLLUP-8073097
SNYK-JS-GRPCGRPCJS-7242922
SNYK-JS-JSYAML-13961110
SNYK-JS-LODASH-15053838
SNYK-JS-ESLINT-15102420
SNYK-JS-NODEFETCH-2342118
SNYK-JS-NODEFORGE-14125097
SNYK-JS-NODEFORGE-2331908
SNYK-JS-EJS-1049328
SNYK-JS-NWSAPI-2841516
SNYK-JS-MINIMIST-2429795
SNYK-JS-NODEFORGE-2430337
SNYK-JS-NODEFORGE-2430341
SNYK-JS-RAMDA-1582370
SNYK-JS-LOADERUTILS-3042992
SNYK-JS-LOADERUTILS-3105943
SNYK-JS-MICROMATCH-6838728
SNYK-JS-MINIMATCH-3050818
SNYK-JS-POSTCSS-5926692
SNYK-JS-ISTANBULREPORTS-2328088
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Regular Expression Denial of Service (ReDoS)
🦉 Cross-site Scripting (XSS)
🦉 Prototype Pollution
🦉 More lessons are available in Snyk Learn