Next.js-Flat-Prototype-Pollution icon indicating copy to clipboard operation
Next.js-Flat-Prototype-Pollution copied to clipboard

[Snyk] Upgrade next from 12.0.4 to 12.3.4

Open PwnFunction opened this issue 1 year ago • 0 comments

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade next from 12.0.4 to 12.3.4.

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 295 versions ahead of your current version.
  • The recommended version was released a year ago, on 2022-11-21.

The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Prototype Pollution
SNYK-JS-LOADERUTILS-3043105
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Denial of Service (DoS)
SNYK-JS-NEXT-2312745
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Regular Expression Denial of Service (ReDoS)
SNYK-JS-SEMVER-3247795
589/1000
Why? Has a fix available, CVSS 7.5
Proof of Concept
Prototype Pollution
SNYK-JS-JSON5-3182856
589/1000
Why? Has a fix available, CVSS 7.5
Proof of Concept
Regular Expression Denial of Service (ReDoS)
SNYK-JS-LOADERUTILS-3042992
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Regular Expression Denial of Service (ReDoS)
SNYK-JS-LOADERUTILS-3105943
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Information Exposure
SNYK-JS-NANOID-2332193
589/1000
Why? Has a fix available, CVSS 7.5
Proof of Concept
Denial of Service (DoS)
SNYK-JS-NEXT-2388583
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
User Interface (UI) Misrepresentation of Critical Information
SNYK-JS-NEXT-2405694
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Information Exposure
SNYK-JS-NODEFETCH-2342118
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Prototype Pollution
SNYK-JS-MINIMIST-2429795
589/1000
Why? Has a fix available, CVSS 7.5
Proof of Concept

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: next
  • 12.3.4 - 2022-11-21

    v12.3.4

  • 12.3.3 - 2022-11-09
  • 12.3.2 - 2022-10-30
  • 12.3.2-canary.43 - 2022-10-25
  • 12.3.2-canary.42 - 2022-10-25
  • 12.3.2-canary.41 - 2022-10-25
  • 12.3.2-canary.40 - 2022-10-25
  • 12.3.2-canary.39 - 2022-10-24
  • 12.3.2-canary.38 - 2022-10-24
  • 12.3.2-canary.35 - 2022-10-23
  • 12.3.2-canary.34 - 2022-10-23
  • 12.3.2-canary.33 - 2022-10-22
  • 12.3.2-canary.32 - 2022-10-19
  • 12.3.2-canary.31 - 2022-10-19
  • 12.3.2-canary.30 - 2022-10-18
  • 12.3.2-canary.29 - 2022-10-16
  • 12.3.2-canary.28 - 2022-10-13
  • 12.3.2-canary.27 - 2022-10-13
  • 12.3.2-canary.26 - 2022-10-12
  • 12.3.2-canary.25 - 2022-10-11
  • 12.3.2-canary.24 - 2022-10-11
  • 12.3.2-canary.23 - 2022-10-08
  • 12.3.2-canary.22 - 2022-10-07
  • 12.3.2-canary.21 - 2022-10-06
  • 12.3.2-canary.20 - 2022-10-05
  • 12.3.2-canary.19 - 2022-10-04
  • 12.3.2-canary.18 - 2022-10-04
  • 12.3.2-canary.17 - 2022-10-02
  • 12.3.2-canary.16 - 2022-09-30
  • 12.3.2-canary.15 - 2022-09-29
  • 12.3.2-canary.13 - 2022-09-29
  • 12.3.2-canary.12 - 2022-09-28
  • 12.3.2-canary.11 - 2022-09-27
  • 12.3.2-canary.10 - 2022-09-27
  • 12.3.2-canary.9 - 2022-09-26
  • 12.3.2-canary.7 - 2022-09-23
  • 12.3.2-canary.6 - 2022-09-23
  • 12.3.2-canary.3 - 2022-09-22
  • 12.3.2-canary.2 - 2022-09-22
  • 12.3.2-canary.0 - 2022-09-21
  • 12.3.1 - 2022-09-19
  • 12.3.1-canary.5 - 2022-09-19
  • 12.3.1-canary.4 - 2022-09-19
  • 12.3.1-canary.3 - 2022-09-16
  • 12.3.1-canary.2 - 2022-09-14
  • 12.3.1-canary.1 - 2022-09-12
  • 12.3.1-canary.0 - 2022-09-08
  • 12.3.0 - 2022-09-08
  • 12.2.6 - 2022-09-29
  • 12.2.6-canary.13 - 2022-09-08
  • 12.2.6-canary.12 - 2022-09-08
  • 12.2.6-canary.11 - 2022-09-07
  • 12.2.6-canary.10 - 2022-09-05
  • 12.2.6-canary.9 - 2022-09-05
  • 12.2.6-canary.8 - 2022-09-01
  • 12.2.6-canary.7 - 2022-08-30
  • 12.2.6-canary.6 - 2022-08-29
  • 12.2.6-canary.5 - 2022-08-24
  • 12.2.6-canary.4 - 2022-08-24
  • 12.2.6-canary.3 - 2022-08-24
  • 12.2.6-canary.2 - 2022-08-23
  • 12.2.6-canary.1 - 2022-08-17
  • 12.2.6-canary.0 - 2022-08-13
  • 12.2.5 - 2022-08-12
  • 12.2.5-canary.7 - 2022-08-12
  • 12.2.5-canary.6 - 2022-08-11
  • 12.2.5-canary.5 - 2022-08-11
  • 12.2.5-canary.4 - 2022-08-11
  • 12.2.5-canary.3 - 2022-08-11
  • 12.2.5-canary.1 - 2022-08-09
  • 12.2.5-canary.0 - 2022-08-09
  • 12.2.4 - 2022-08-04
  • 12.2.4-canary.12 - 2022-08-04
  • 12.2.4-canary.11 - 2022-08-03
  • 12.2.4-canary.9 - 2022-08-01
  • 12.2.4-canary.8 - 2022-07-29
  • 12.2.4-canary.7 - 2022-07-29
  • 12.2.4-canary.6 - 2022-07-28
  • 12.2.4-canary.5 - 2022-07-28
  • 12.2.4-canary.4 - 2022-07-28
  • 12.2.4-canary.3 - 2022-07-28
  • 12.2.4-canary.2 - 2022-07-26
  • 12.2.4-canary.1 - 2022-07-25
  • 12.2.4-canary.0 - 2022-07-23
  • 12.2.3 - 2022-07-22
  • 12.2.3-canary.17 - 2022-07-21
  • 12.2.3-canary.16 - 2022-07-21
  • 12.2.3-canary.15 - 2022-07-20
  • 12.2.3-canary.14 - 2022-07-19
  • 12.2.3-canary.13 - 2022-07-18
  • 12.2.3-canary.12 - 2022-07-18
  • 12.2.3-canary.10 - 2022-07-15
  • 12.2.3-canary.9 - 2022-07-15
  • 12.2.3-canary.8 - 2022-07-14
  • 12.2.3-canary.7 - 2022-07-14
  • 12.2.3-canary.6 - 2022-07-13
  • 12.2.3-canary.5 - 2022-07-13
  • 12.2.3-canary.4 - 2022-07-13
  • 12.2.3-canary.3 - 2022-07-13
  • 12.2.3-canary.2 - 2022-07-12
  • 12.2.3-canary.1 - 2022-07-12
  • 12.2.3-canary.0 - 2022-07-11
  • 12.2.2 - 2022-07-09
  • 12.2.2-canary.0 - 2022-07-09
  • 12.2.1 - 2022-07-07
  • 12.2.1-canary.5 - 2022-07-07
  • 12.2.1-canary.4 - 2022-07-06
  • 12.2.1-canary.3 - 2022-07-05
  • 12.2.1-canary.2 - 2022-07-02
  • 12.2.1-canary.1 - 2022-06-29
  • 12.2.0 - 2022-06-28
  • 12.1.7-canary.52 - 2022-06-28
  • 12.1.7-canary.51 - 2022-06-28
  • 12.1.7-canary.50 - 2022-06-28
  • 12.1.7-canary.49 - 2022-06-27
  • 12.1.7-canary.48 - 2022-06-25
  • 12.1.7-canary.47 - 2022-06-24
  • 12.1.7-canary.46 - 2022-06-24
  • 12.1.7-canary.45 - 2022-06-22
  • 12.1.7-canary.44 - 2022-06-21
  • 12.1.7-canary.42 - 2022-06-20
  • 12.1.7-canary.41 - 2022-06-17
  • 12.1.7-canary.40 - 2022-06-15
  • 12.1.7-canary.39 - 2022-06-14
  • 12.1.7-canary.38 - 2022-06-14
  • 12.1.7-canary.37 - 2022-06-13
  • 12.1.7-canary.36 - 2022-06-13
  • 12.1.7-canary.35 - 2022-06-11
  • 12.1.7-canary.33 - 2022-06-08
  • 12.1.7-canary.32 - 2022-06-08
  • 12.1.7-canary.31 - 2022-06-06
  • 12.1.7-canary.30 - 2022-06-06
  • 12.1.7-canary.29 - 2022-06-02
  • 12.1.7-canary.28 - 2022-06-02
  • 12.1.7-canary.27 - 2022-06-01
  • 12.1.7-canary.26 - 2022-05-31
  • 12.1.7-canary.24 - 2022-05-30
  • 12.1.7-canary.23 - 2022-05-30
  • 12.1.7-canary.19 - 2022-05-27
  • 12.1.7-canary.18 - 2022-05-27
  • 12.1.7-canary.16 - 2022-05-25
  • 12.1.7-canary.15 - 2022-05-24
  • 12.1.7-canary.12 - 2022-05-24
  • 12.1.7-canary.11 - 2022-05-23
  • 12.1.7-canary.10 - 2022-05-19
  • 12.1.7-canary.9 - 2022-05-19
  • 12.1.7-canary.8 - 2022-05-19
  • 12.1.7-canary.7 - 2022-05-17
  • 12.1.7-canary.6 - 2022-05-13
  • 12.1.7-canary.5 - 2022-05-12
  • 12.1.7-canary.4 - 2022-05-11
  • 12.1.7-canary.3 - 2022-05-06
  • 12.1.7-canary.2 - 2022-05-05
  • 12.1.7-canary.1 - 2022-05-03
  • 12.1.7-canary.0 - 2022-05-03
  • 12.1.6 - 2022-05-02
  • 12.1.6-canary.17 - 2022-05-02
  • 12.1.6-canary.16 - 2022-05-01
  • 12.1.6-canary.15 - 2022-04-29
  • 12.1.6-canary.14 - 2022-04-28
  • 12.1.6-canary.13 - 2022-04-28
  • 12.1.6-canary.12 - 2022-04-27
  • 12.1.6-canary.11 - 2022-04-27
  • 12.1.6-canary.10 - 2022-04-27
  • 12.1.6-canary.9 - 2022-04-26
  • 12.1.6-canary.8 - 2022-04-26
  • 12.1.6-canary.7 - 2022-04-26
  • 12.1.6-canary.6 - 2022-04-22
  • 12.1.6-canary.5 - 2022-04-21
  • 12.1.6-canary.4 - 2022-04-19
  • 12.1.6-canary.3 - 2022-04-16
  • 12.1.6-canary.2 - 2022-04-15
  • 12.1.6-canary.1 - 2022-04-14
  • 12.1.6-canary.0 - 2022-04-13
  • 12.1.5 - 2022-04-12
  • 12.1.5-canary.7 - 2022-04-12
  • 12.1.5-canary.6 - 2022-04-11
  • 12.1.5-canary.4 - 2022-04-07
  • 12.1.5-canary.3 - 2022-04-06
  • 12.1.5-canary.2 - 2022-04-06
  • 12.1.5-canary.1 - 2022-04-04
  • 12.1.5-canary.0 - 2022-04-01
  • 12.1.4 - 2022-03-31
  • 12.1.4-canary.1 - 2022-03-31
  • 12.1.4-canary.0 - 2022-03-30
  • 12.1.3 - 2022-03-30
  • 12.1.3-canary.4 - 2022-03-30
  • 12.1.3-canary.3 - 2022-03-30
  • 12.1.3-canary.2 - 2022-03-30
  • 12.1.3-canary.1 - 2022-03-30
  • 12.1.3-canary.0 - 2022-03-29
  • 12.1.2 - 2022-03-28
  • 12.1.2-canary.1 - 2022-03-28
  • 12.1.2-canary.0 - 2022-03-27
  • 12.1.1 - 2022-03-25
  • 12.1.1-canary.18 - 2022-03-25
  • 12.1.1-canary.17 - 2022-03-22
  • 12.1.1-canary.16 - 2022-03-22
  • 12.1.1-canary.15 - 2022-03-18
  • 12.1.1-canary.14 - 2022-03-17
  • 12.1.1-canary.13 - 2022-03-17
  • 12.1.1-canary.10 - 2022-03-11
  • 12.1.1-canary.9 - 2022-03-10
  • 12.1.1-canary.8 - 2022-03-09
  • 12.1.1-canary.7 - 2022-03-07
  • 12.1.1-canary.6 - 2022-03-02
  • 12.1.1-canary.5 - 2022-03-01
  • 12.1.1-canary.4 - 2022-02-26
  • 12.1.1-canary.3 - 2022-02-25
  • 12.1.1-canary.2 - 2022-02-24
  • 12.1.1-canary.1 - 2022-02-19
  • 12.1.1-canary.0 - 2022-02-18
  • 12.1.0 - 2022-02-17
  • 12.0.11-canary.21 - 2022-02-17
  • 12.0.11-canary.20 - 2022-02-17
  • 12.0.11-canary.19 - 2022-02-16
  • 12.0.11-canary.18 - 2022-02-16
  • 12.0.11-canary.17 - 2022-02-15
  • 12.0.11-canary.16 - 2022-02-15
  • 12.0.11-canary.15 - 2022-02-11
  • 12.0.11-canary.14 - 2022-02-11
  • 12.0.11-canary.13 - 2022-02-11
  • 12.0.11-canary.12 - 2022-02-10
  • 12.0.11-canary.11 - 2022-02-09
  • 12.0.11-canary.10 - 2022-02-09
  • 12.0.11-canary.9 - 2022-02-08
  • 12.0.11-canary.8 - 2022-02-08
  • 12.0.11-canary.7 - 2022-02-07
  • 12.0.11-canary.6 - 2022-02-04
  • 12.0.11-canary.5 - 2022-02-04
  • 12.0.11-canary.4 - 2022-02-03
  • 12.0.11-canary.3 - 2022-02-02
  • 12.0.11-canary.2 - 2022-02-02
  • 12.0.11-canary.1 - 2022-02-01
  • 12.0.11-canary.0 - 2022-02-01
  • 12.0.10 - 2022-02-01
  • 12.0.10-canary.2 - 2022-02-01
  • 12.0.10-canary.1 - 2022-01-29
  • 12.0.10-canary.0 - 2022-01-27
  • 12.0.9 - 2022-01-26
  • 12.0.9-canary.12 - 2022-01-26
  • 12.0.9-canary.11 - 2022-01-26
  • 12.0.9-canary.9 - 2022-01-25
  • 12.0.9-canary.8 - 2022-01-24
  • 12.0.9-canary.7 - 2022-01-24
  • 12.0.9-canary.6 - 2022-01-21
  • 12.0.9-canary.5 - 2022-01-21
  • 12.0.9-canary.4 - 2022-01-20
  • 12.0.9-canary.3 - 2022-01-19
  • 12.0.9-canary.2 - 2022-01-19
  • 12.0.9-canary.1 - 2022-01-18
  • 12.0.9-canary.0 - 2022-01-13
  • 12.0.8 - 2022-01-12
  • 12.0.8-canary.22 - 2022-01-12
  • 12.0.8-canary.21 - 2022-01-11
  • 12.0.8-canary.20 - 2022-01-10
  • 12.0.8-canary.19 - 2022-01-06
  • 12.0.8-canary.18 - 2022-01-05
  • 12.0.8-canary.17 - 2022-01-04
  • 12.0.8-canary.16 - 2022-01-04
  • 12.0.8-canary.15 - 2022-01-03
  • 12.0.8-canary.14 - 2022-01-02
  • 12.0.8-canary.13 - 2021-12-22
  • 12.0.8-canary.12 - 2021-12-21
  • 12.0.8-canary.11 - 2021-12-20
  • 12.0.8-canary.10 - 2021-12-18
  • 12.0.8-canary.8 - 2021-12-16
  • 12.0.8-canary.7 - 2021-12-15
  • 12.0.8-canary.6 - 2021-12-14
  • 12.0.8-canary.5 - 2021-12-13
  • 12.0.8-canary.4 - 2021-12-10
  • 12.0.8-canary.3 - 2021-12-09
  • 12.0.8-canary.2 - 2021-12-08
  • 12.0.8-canary.1 - 2021-12-07
  • 12.0.8-canary.0 - 2021-12-05
  • 12.0.7 - 2021-12-05
  • 12.0.7-canary.0 - 2021-12-04
  • 12.0.6 - 2021-12-04
  • 12.0.6-canary.0 - 2021-12-04
  • 12.0.5 - 2021-12-03
  • 12.0.5-canary.19 - 2021-12-03
  • 12.0.5-canary.18 - 2021-12-03
  • 12.0.5-canary.16 - 2021-12-03
  • 12.0.5-canary.14 - 2021-12-02
  • 12.0.5-canary.13 - 2021-12-01
  • 12.0.5-canary.12 - 2021-11-30
  • 12.0.5-canary.11 - 2021-11-29
  • 12.0.5-canary.10 - 2021-11-25
  • 12.0.5-canary.9 - 2021-11-23
  • 12.0.5-canary.8 - 2021-11-21
  • 12.0.5-canary.6 - 2021-11-20
  • 12.0.5-canary.5 - 2021-11-19
  • 12.0.5-canary.4 - 2021-11-18
  • 12.0.5-canary.3 - 2021-11-18
  • 12.0.5-canary.0 - 2021-11-16
  • 12.0.4 - 2021-11-15
from next GitHub release notes
Commit messages
Package name: next
  • e2c5952 v12.3.4
  • 4006812 Update experimental skipTrailingSlashRedirect handling
  • be75d09 v12.3.3
  • 623622f Update swc builds
  • 0381cf0 Add missing matcher support
  • b9c7408 Apply normalize patch
  • 1b8ab4e Apply middleware patches
  • 58dcf30 Apply fix(stream): Allows body larger than 16 KiB with middleware
  • f3fc912 v12.3.2
  • 3e0f0d6 lock docker image
  • 9ab1166 apply changes for publish
  • e7208a1 [edge] serialize custom config to middleware-manifest
  • 980095d v12.3.1
  • 4901fc7 v12.3.1-canary.5
  • a03cdc6 docs(examples): fix error connection handling (#40633)
  • 5a50a99 Drop legacy RSC server and client extension (#40692)
  • 35098a1 v12.3.1-canary.4
  • 7f9fe8c chore: Refactor active-class-name example (#40670)
  • 24b20dd chore: Migrate with-prefetching example to typescript (#40671)
  • 6279dba Avoid direct React client API imports in the server graph (#40686)
  • aed2dc0 Add handling for static generation in app (#40561)
  • 4a53582 fix(image): preload should respect crossOrigin (#40676)
  • db3b844 Remove non existed exports and files (#40685)
  • 9b0c00a misc: update caniuse-lite to latest (#40680)

Compare


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

PwnFunction avatar Oct 12 '23 14:10 PwnFunction