evernote-random
evernote-random copied to clipboard
[Snyk] Security upgrade cookie-session from 1.3.2 to 2.0.0
This PR was automatically created by Snyk using the credentials of a real user.
Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.
Changes included in this PR
- Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
- package.json
Vulnerabilities that will be fixed
With an upgrade:
Severity | Priority Score (*) | Issue | Breaking Change | Exploit Maturity |
---|---|---|---|---|
![]() |
461/1000 Why? Recently disclosed, Has a fix available, CVSS 3.5 |
Regular Expression Denial of Service (ReDoS) SNYK-JS-DEBUG-3227433 |
Yes | No Known Exploit |
(*) Note that the real score may have changed since the PR was raised.
Commit messages
Package name: cookie-session
The new version differs by 250 commits.- 8271793 2.0.0
- 8027668 build: add version script for npm version releases
- 0bfde39 build: support Node.js 17.x
- e36988a build: [email protected]
- 15e1257 docs: fix typo in readme
- 9aead33 build: [email protected]
- 1cedb4d build: [email protected]
- 3fe11c0 build: [email protected]
- 850055b build: [email protected]
- 7359af9 build: [email protected]
- 0826318 build: [email protected]
- 9d0a908 build: [email protected]
- b2fca5b build: [email protected]
- f57eaa6 build: [email protected]
- d4dc226 build: [email protected]
- 371bf24 build: [email protected]
- be176dd build: [email protected]
- def7414 build: [email protected]
- d751730 build: [email protected]
- 82fffbf build: [email protected]
- c5907ec build: [email protected]
- 63bad93 build: [email protected]
- 620f7b5 build: [email protected]
- 1360a54 build: [email protected]
Check the changes in this PR to ensure they won't cause issues with your project.
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📚 Read more about Snyk's upgrade and patch logic
Learn how to fix vulnerabilities with free interactive lessons: