mocha-sidebar
mocha-sidebar copied to clipboard
[Snyk] Security upgrade mocha from 6.0.2 to 6.1.2
This PR was automatically created by Snyk using the credentials of a real user.
Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.
Changes included in this PR
- Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
- test/workspace/package.json
- test/workspace/package-lock.json
Vulnerabilities that will be fixed
With an upgrade:
| Severity | Priority Score (*) | Issue | Breaking Change | Exploit Maturity |
|---|---|---|---|---|
| 696/1000 Why? Proof of Concept exploit, Has a fix available, CVSS 7.5 |
Denial of Service (DoS) SNYK-JS-DECODEURICOMPONENT-3149970 |
No | Proof of Concept |
(*) Note that the real score may have changed since the PR was raised.
Commit messages
Package name: mocha
The new version differs by 33 commits.- 86cd699 Release v6.1.2
- 2e8f31f update CHANGELOG for v6.1.2
- 9b516bf Release v6.1.1
- 9e138b1 update CHANGELOG for v6.1.1 [ci skip]
- d7de948 Set eol for publishing
- f4fc95a Release v6.1.0
- bd29dbd update CHANGELOG for v6.1.0 [ci skip]
- aaf2b72 Use cwd-relative pathname to load config file (#3829)
- b079d24 upgrade deps as per npm audit fix; closes #3854
- e87c689 Deprecate this.skip() for "after all" hooks (#3719)
- 81cfa90 Copy Suite property "root" when cloning; closes #3847 (#3848)
- 8aa2fc4 Fix issue 3714, hide pound icon showing on hover header on docs page (#3850)
- 586bf78 Update JS-YAML to address security issue (#3845)
- d1024a3 Update doc examples "tests.html" (#3811)
- 1d570e0 Delete "/docs/example/chai.js"
- ade8b90 runner.js: "self.test" undefined in Browser (#3835)
- 0098147 Replace findup-sync with find-up for faster startup (#3830)
- d5ba121 Remove "package" flag from sample config file because it can only be passes as CLI arg (#3793)
- a3089ad update package-lock
- 75430ec Upgrade yargs-parser dependency to avoid loading 2 copies of yargs
- ca9eba6 guard against undefined timeout option in constructor; closes #3813
- 735161f MarkdownMagic script updates (#3815)
- e654253 update yargs; closes #3742
- b27bc60 Add autoprefixer to documentation page CSS
Check the changes in this PR to ensure they won't cause issues with your project.
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
π§ View latest project report
π Read more about Snyk's upgrade and patch logic
Learn how to fix vulnerabilities with free interactive lessons: