ant-plus
ant-plus copied to clipboard
[Snyk] Security upgrade usb from 1.6.0 to 1.8.0
This PR was automatically created by Snyk using the credentials of a real user.
Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.
Changes included in this PR
- Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
- package.json
- package-lock.json
Vulnerabilities that will be fixed
With an upgrade:
Severity | Priority Score (*) | Issue | Breaking Change | Exploit Maturity |
---|---|---|---|---|
![]() |
696/1000 Why? Proof of Concept exploit, Has a fix available, CVSS 7.5 |
Regular Expression Denial of Service (ReDoS) SNYK-JS-ANSIREGEX-1583908 |
No | Proof of Concept |
(*) Note that the real score may have changed since the PR was raised.
Commit messages
Package name: usb
The new version differs by 79 commits.- b8b3a6a v1.8.0
- a0da058 Introduce prebuildify (#450)
- a6db778 Use libusb with sleep crash fix (#451)
- 354287f Merge pull request #445 from mildsunrise/patch-2
- 4179e43 Merge pull request #447 from tessel/libusb-move
- 3d94f4b Update libusb submodule URL
- 84dcb72 fix invalid initial refs
- e336b03 v1.7.1
- 6353add Merge pull request #440 from danielmain/master
- cafde3c destruction of hotplugThis when unsubscribing
- c882d34 Bump version
- 986ebef Merge pull request #422 from joelpurra/update-test-instructions
- c6e93b8 Merge pull request #421 from joelpurra/ignore-compiled-test-file
- d217ea5 Update test instructions
- 6206001 Ignore compiled test file
- 4202670 Merge pull request #428 from tessel/thegecko-patch-1
- 0907f19 Update node version
- ca9d35a v1.7.1
- a6b83fb Bumped lodash dependency
- c00ed65 Merge pull request #419 from joelpurra/fix-build-warnings
- 728c257 Merge pull request #359 from penx/patch-1
- c3d4d1d Merge pull request #420 from joelpurra/update-repository-reference
- 5f8e3fc v1.7.1-alpha.1
- c43d4c8 Merge pull request #424 from tessel/prebuild-ubuntu-18.04
Check the changes in this PR to ensure they won't cause issues with your project.
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📚 Read more about Snyk's upgrade and patch logic
Learn how to fix vulnerabilities with free interactive lessons: