lattice
lattice copied to clipboard
[Snyk] Security upgrade systeminformation from 3.54.0 to 5.6.4
Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.
Changes included in this PR
- Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
- examples/apollo-real-time-chart/package.json
Vulnerabilities that will be fixed
With an upgrade:
Severity | Priority Score (*) | Issue | Breaking Change | Exploit Maturity |
---|---|---|---|---|
![]() |
566/1000 Why? Recently disclosed, Has a fix available, CVSS 5.6 |
Arbitrary Command Injection SNYK-JS-SYSTEMINFORMATION-1243748 |
Yes | No Known Exploit |
(*) Note that the real score may have changed since the PR was raised.
Commit messages
Package name: systeminformation
The new version differs by 250 commits.- 244186e 5.6.4
- 01ef56c sanitizeShellString() and other security improvements
- 0be6fcd sanitizeShellString() and other security improvements
- 7922366 sanitizeShellString() and other security improvements
- b106e41 5.6.3
- d84fea9 updated docs
- af9b8a5 sanitizeShellString() improvement
- 41b3059 5.6.2
- ef880e8 networkInterfaces(), cpu() improvement (win)
- d49c332 networkInterfaces(), cpu() improvements windows
- 8ef639e 5.6.1
- 80e20a8 get() fixed issue boolean parameters
- 9ca44bb 5.6.0
- bb82868 cpuTemperature() added socket and chipset temp (linux)
- d40b85c updated docs
- b88b1c5 5.5.0
- 305d264 dockerVolumes() added
- ef6d0a7 5.4.0
- ac7f840 dockerImages() added
- 0df76f0 updated docs
- 9718cb4 5.3.5
- 79f1511 dockerContainerStats() fixed parameter *
- 0dedf36 5.3.4
- 3b20fd7 sanitizeShellString() optimized strict sanitation
Check the changes in this PR to ensure they won't cause issues with your project.
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report