lazyweb
lazyweb copied to clipboard
[Snyk] Security upgrade novel from 0.1.22 to 0.2.3
This PR was automatically created by Snyk using the credentials of a real user.
Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.
Changes included in this PR
- Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
- lazyweb/package.json
Vulnerabilities that will be fixed
With an upgrade:
Severity | Priority Score (*) | Issue | Breaking Change | Exploit Maturity |
---|---|---|---|---|
![]() |
661/1000 Why? Recently disclosed, Has a fix available, CVSS 7.5 |
Uncontrolled resource consumption SNYK-JS-BRACES-6838727 |
No | No Known Exploit |
![]() |
661/1000 Why? Recently disclosed, Has a fix available, CVSS 7.5 |
Inefficient Regular Expression Complexity SNYK-JS-MICROMATCH-6838728 |
No | No Known Exploit |
(*) Note that the real score may have changed since the PR was raised.
Commit messages
Package name: novel
The new version differs by 64 commits.- 1c1e149 chore: update lock
- 957e5dc feat: forward ref components
- 6098232 chore: cleanup packages
- cfc4cce chore: bump version
- 8d168f5 fix: update types
- fb2f35f chore: bump version
- 5ca260e fix: remove AI autocomplete default placeholder
- 1cc5140 fix: add docs button
- 4569347 feat: update docs with demo code link
- 59277bc chore: bump version
- cd119ad 0.1.0
- 4155f06 fix: hide drag handle on scrolling
- c3592cd chore: update docs styles
- 4affcc7 Merge pull request #287 from brunocroh/fix/image-drag-n-drop
- 8f7995b Merge branch 'main' of https://github.com/steven-tey/novel
- 0768fff fix: update editor-content docs
- 8a0f540 Merge pull request #274 from justinjunodev/readme-fix-license-link
- ad79b1f Update README.md
- e6fc416 fix: type issue vercel build
- 19631d7 feat: update docs with component props
- f35c9db fix: image move when dragged
- cbbe155 fix: hydration local storage fix
- af6284e Merge branch 'main' of https://github.com/steven-tey/novel
- fe078d2 feat: export EditorContentProps
Check the changes in this PR to ensure they won't cause issues with your project.
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📚 Read more about Snyk's upgrade and patch logic
Learn how to fix vulnerabilities with free interactive lessons: