vscode-dbt-power-user
vscode-dbt-power-user copied to clipboard
[Snyk] Security upgrade zeromq from 6.1.0 to 6.1.1
Snyk has created this PR to fix 5 vulnerabilities in the npm dependencies of this project.
Snyk changed the following file(s):
package.jsonpackage-lock.json
Vulnerabilities that will be fixed with an upgrade:
| Issue | |
|---|---|
| Regular Expression Denial of Service (ReDoS) SNYK-JS-ANSIREGEX-1583908 |
|
| Regular Expression Denial of Service (ReDoS) SNYK-JS-BROWSERSLIST-1090194 |
|
| Server-side Request Forgery (SSRF) SNYK-JS-REQUEST-3361831 |
|
| Prototype Pollution SNYK-JS-TOUGHCOOKIE-5672873 |
|
| Missing Release of Resource after Effective Lifetime SNYK-JS-INFLIGHT-6095116 |
[!IMPORTANT]
- Check the changes in this PR to ensure they won't cause issues with your project.
- Max score is 1000. Note that the real score may have changed since the PR was raised.
- This PR was automatically created by Snyk using the credentials of a real user.
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Regular Expression Denial of Service (ReDoS) 🦉 Server-side Request Forgery (SSRF) 🦉 Prototype Pollution
[!IMPORTANT] Upgrade
zeromqto 6.1.1 to fix multiple security vulnerabilities.
- Dependencies:
- Upgrade
zeromqfrom 6.1.0 to 6.1.1 inpackage.jsonandpackage-lock.json.- Security:
- Fixes vulnerabilities: ReDoS (SNYK-JS-ANSIREGEX-1583908, SNYK-JS-BROWSERSLIST-1090194), SSRF (SNYK-JS-REQUEST-3361831), Prototype Pollution (SNYK-JS-TOUGHCOOKIE-5672873), Missing Resource Release (SNYK-JS-INFLIGHT-6095116).
This description was created by
for ce186f8ba5c4a31d7d8857d0e2516c81e723aff6. It will automatically update as commits are pushed.