expo-hamburger-menu-template icon indicating copy to clipboard operation
expo-hamburger-menu-template copied to clipboard

[Snyk] Fix for 1 vulnerabilities

Open kathawala opened this issue 6 months ago • 0 comments

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

Changes included in this PR

  • Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
    • package.json

Vulnerabilities that will be fixed

With an upgrade:
Severity Priority Score (*) Issue Breaking Change Exploit Maturity
high severity 661/1000
Why? Recently disclosed, Has a fix available, CVSS 7.5
Missing Release of Resource after Effective Lifetime
SNYK-JS-INFLIGHT-6095116
Yes No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Commit messages
Package name: expo The new version differs by 250 commits.
  • 4c592ec Publish expo
  • 6cb429c Publish expo-checkbox, expo-auth-session
  • 638da41 [checkbox] Add checkbox package for the deprecated android checkbox (#11274)
  • e630c42 [docs][expo-auth-session] Make expo-random a peer dependency (#11280)
  • 3e3a62f [expo] Deprecate globals (#11279)
  • a89728f [fastlane] add release notes for android version 139
  • 439487e [android] bump version to 2.18.3 (139)
  • ecc04af [home] publish dev and prod home
  • 4aae7eb [home] fix QR code icon on android
  • e7c0dc5 [android] bump version to 2.18.2 (138)
  • af89214 [android] backport installationId change to versioned abi40 code
  • 0e4dea1 [android] Make expo-notifications installation ID provider in managed apps migrate legacy ID to a different location (#11249)
  • 022e019 Publish expo-linking
  • a5ed245 [expotools] add a few checks to android-shell-app command for problematic scenarios
  • 5a9fa62 [shell-app-ios] Remove hotfix now that xdl is udpated
  • 5db2d88 Publish expo-clipboard
  • 13e9297 [iOS][expotools] Inject code for auto per-project RCTAppearance pre-configuration during SDK versioning/drop (#11258)
  • 215c705 [templates] Bump tabs version
  • 3250de1 [templates] Update expo-linking version
  • 912be87 [expo-clipboard] Remove unimodule.json
  • c6c6a72 [expo-font] Remove Expo.AppLoading reference (#11204)
  • 29c5705 [ios] Update client version
  • 108dd60 Publish expo-clipboard
  • 14734a6 feat: add expo-clipboard library (#11227)

See the full diff

Package name: expo-splash-screen The new version differs by 250 commits.
  • 5b57d1f [expo-clipboard] Revert CHANGELOG upate
  • eb28513 [expo-clipboard] Revert version bump
  • 20fd5d7 Publish packages
  • 6084877 [tools] Stop prebuilding expo-face-detector and expo-updates for now
  • 72297db Publish packages
  • 96b9c55 [jest-expo] Update mocks
  • 7f92feb [ReactAndroid] Commit desirable changes from "et update-react-native"
  • 51620fb [guides] Update branch in universe
  • 215f48c Update CHANGELOG
  • 4c39342 [bare-expo][yarn] Update lockfiles
  • 88c9a9c [ios][android] Update @ react-native-community/datetimepicker (#12171)
  • 5c57f78 [ios][android] Update react-native-safe-area-context (#12170)
  • 57e6889 [ios][android] Update @ react-native-community/viewpager and add react-native-pager-view to bundledNativeModules.json (#12169)
  • 59c8df8 [Expo Go] Set iOS dev menu above LogBox (#12154)
  • a347f72 [auth-session] Use sync random method (#10298)
  • 0f652e3 [docs] Copy Font docs changes to unversioned
  • abd1549 [docs] fontDisplay -> display (#11857)
  • 77a3158 [docs] Improve wording (#11800)
  • 4b31d70 [docs] Fix typo (#11834)
  • 829a522 [docs] Update expo-speech documentation for Android (#11965)
  • b062557 [docs] Icons: fix iconStyle default, fix links (#12155)
  • e2652bf [ios][android] Update FBAudienceNetwork in expo-ads-facebook (#12133)
  • ad8b588 [docs] ensure that <code> in links is also colored (#12158)
  • aacdc29 [expo-dev-menu] Add auth & profile screen (#11915)

See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: 🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic


Learn how to fix vulnerabilities with free interactive lessons:

🦉 Learn about vulnerability in an interactive lesson of Snyk Learn.

kathawala avatar Nov 30 '23 15:11 kathawala