owasp-threat-dragon-desktop
owasp-threat-dragon-desktop copied to clipboard
[Snyk] Security upgrade snyk from 1.295.0 to 1.465.0
Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.
Changes included in this PR
- Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
- package.json
- package-lock.json
Vulnerabilities that will be fixed
With an upgrade:
Severity | Priority Score (*) | Issue | Breaking Change | Exploit Maturity |
---|---|---|---|---|
![]() |
658/1000 Why? Proof of Concept exploit, Recently disclosed, Has a fix available, CVSS 5.3 |
Regular Expression Denial of Service (ReDoS) SNYK-JS-HOSTEDGITINFO-1088355 |
No | Proof of Concept |
(*) Note that the real score may have changed since the PR was raised.
Commit messages
Package name: snyk
The new version differs by 250 commits.- 3f52bdc Merge pull request #1669 from snyk/fix/dont-fail-on-request-big-payload
- 47e106e fix: don't fail on request's big payload
- 1228b55 Merge pull request #1624 from snyk/chore/cli-alert-improvement
- fccd907 Merge pull request #1666 from snyk/chore/bump-cpp-test-timeout
- 6772a3e Merge pull request #1649 from snyk/chore/deps-update
- 89a7767 chore: update dependencies
- eaf4915 test: wrap pagerduty await in try-catch, remove condition
- 0576431 test: add pagerduty, check if test is running before attemmpting rerun
- a08a938 chore: bump flaky cpp test timeout
- ebb8dd7 Merge pull request #1656 from snyk/feat/protect-prime-time
- 69cd590 test: fix flakey json output test
- 3021bb2 Merge pull request #1663 from snyk/fix/upgrade-snyk-gradle-plugin
- a988600 Merge pull request #1654 from snyk/feat/iac-experimental-terraform-support
- b455497 feat: iac experimental tf support
- 4848b7e chore: run tests in packages in CI
- 3e7e99e feat: implement snyk protect
- bb233f1 chore: enable prettier formatting in packages
- fe0183d test: enable jest testing in snyk-protect workspace
- 40ec817 test: test fixture for snyk protect
- 7dfd3ea Merge pull request #1661 from snyk/test/fix-flake-with-dev-count-analysis
- 02c99b8 test: remove tests previously migrated to jest
- e203fd1 test: set timeout in beforeAll
- d42f6d9 fix: update snyk-gradle-plugin to 3.13.2
- 8cd9fbf Merge pull request #1662 from snyk/test/add-longer-timeouts
Check the changes in this PR to ensure they won't cause issues with your project.
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
:warning: We detected security issues in this pull request:
Vulnerable Libraries (18)
- [email protected] no patch available
- [email protected] no patch available
-
[email protected] upgrade to
6.3.1
- [email protected] no patch available
- [email protected] no patch available
-
[email protected] upgrade to
1.16.1
- [email protected] no patch available
-
[email protected] upgrade to
1.16.1
- [email protected] no patch available
- [email protected] no patch available
-
[email protected] upgrade to
1.16.1
-
[email protected] upgrade to
0.4.1
-
[email protected] upgrade to
0.4.1
- [email protected] no patch available
-
[email protected] upgrade to
6.3.1
-
[email protected] upgrade to
0.4.1
-
[email protected] upgrade to
6.3.1
-
[email protected] upgrade to
6.3.1
More info on how to fix Vulnerable Libraries in Javascript.
👉 Go to the dashboard for detailed results.
📥 Happy? Share your feedback with us.