cmv-app
cmv-app copied to clipboard
[Snyk] Security upgrade grunt from 1.4.1 to 1.5.3
This PR was automatically created by Snyk using the credentials of a real user.
Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.
Changes included in this PR
- Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
- package.json
Vulnerabilities that will be fixed
With an upgrade:
Severity | Priority Score (*) | Issue | Breaking Change | Exploit Maturity |
---|---|---|---|---|
![]() |
718/1000 Why? Proof of Concept exploit, Recently disclosed, Has a fix available, CVSS 6.5 |
Race Condition SNYK-JS-GRUNT-2813632 |
No | Proof of Concept |
(*) Note that the real score may have changed since the PR was raised.
Commit messages
Package name: grunt
The new version differs by 21 commits.- 82d79b8 1.5.3
- 572d79b Merge pull request #1745 from gruntjs/fix-copy-op
- 58016ff Patch up race condition in symlink copying.
- 0749e1d Merge pull request #1746 from JamieSlome/patch-1
- 69b7c50 Create SECURITY.md
- ac667b2 1.5.2
- 7f15fd5 Update Changelog
- b0ec6e1 Merge pull request #1743 from gruntjs/cleanup-link
- 433f91b Clean up link handling
- d5969ec 1.5.1
- ad22608 Merge pull request #1742 from gruntjs/update-symlink-test
- 0652305 Fix symlink test
- a7ab0a8 1.5.0
- b2b2c2b Updated changelog
- 3eda6ae Merge pull request #1740 from gruntjs/update-deps-22-10
- 47d32de Update testing matrix
- 2e9161c More updates
- 04b960e Remove console log
- aad3d45 Update dependencies, tests...
- fdc7056 Merge pull request #1736 from justlep/main
- e35fe54 support .cjs extension
Check the changes in this PR to ensure they won't cause issues with your project.
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📚 Read more about Snyk's upgrade and patch logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Learn about vulnerability in an interactive lesson of Snyk Learn.