libreact
libreact copied to clipboard
[Snyk] Fix for 1 vulnerabilities
Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.
Changes included in this PR
- Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
- package.json
Vulnerabilities that will be fixed
With an upgrade:
| Severity | Priority Score (*) | Issue | Breaking Change | Exploit Maturity |
|---|---|---|---|---|
| 471/1000 Why? Recently disclosed, Has a fix available, CVSS 3.7 |
Prototype Pollution SNYK-JS-MINIMIST-2429795 |
Yes | No Known Exploit |
(*) Note that the real score may have changed since the PR was raised.
Commit messages
Package name: mkdirp
The new version differs by 4 commits.Package name: mocha
The new version differs by 250 commits.- eb781e2 Release v6.2.3
- 10dbe94 update CHANGELOG for v6.2.3 [ci skip]
- 848d6fb security: update mkdirp, yargs, yargs-parser
- 843a322 6.2.2
- aec8b02 update CHANGELOG for v6.2.2 [ci skip]
- 7a8b95a npm audit fixes
- cebddf2 Improve reporter documentation for mocha in browser. (#4026)
- 3f7b987 uncaughtException: report more than one exception per test (#4033)
- ee82d38 modify alt text of image from Backers to Sponsors inside Sponsors section in Readme (#4046)
- e9c036c special-case parsing of "require" in unparseNodeArgs(); closes #4035 (#4063)
- 954cf0b Fix HTMLCollection iteration to make unhide function work as expected (#4051)
- 816dc27 uncaughtException: fix double EVENT_RUN_END events (#4025)
- 9650d3f add OpenJS Foundation logo to website (#4008)
- f04b81d Adopt the OpenJSF Code of Conduct (#3971)
- aca8895 Add link checking to docs build step (#3972)
- ef6c820 Release v6.2.1
- 9524978 updated CHANGELOG for v6.2.1 [ci skip]
- dfdb8b3 Update yargs to v13.3.0 (#3986)
- 18ad1c1 treat '--require esm' as Node option (#3983)
- fcffd5a Update yargs-unparser to v1.6.0 (#3984)
- ad4860e Remove extraGlobals() (#3970)
- b269ad0 Clarify effect of .skip() (#3947)
- 1e6cf3b Add Matomo to website (#3765)
- 91b3a54 fix style on mochajs.org (#3886)
Check the changes in this PR to ensure they won't cause issues with your project.
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📚 Read more about Snyk's upgrade and patch logic
Learn how to fix vulnerabilities with free interactive lessons: