owasp-threat-dragon-desktop
owasp-threat-dragon-desktop copied to clipboard
Bump degenerator and snyk
Removes degenerator. It's no longer used after updating ancestor dependency snyk. These dependencies need to be updated together.
Removes degenerator
Updates snyk
from 1.295.0 to 1.1012.0
Release notes
Sourced from snyk's releases.
v1.1012.0
1.1012.0 (2022-09-23)
Features
- pass snykHttpClient to plugin.inspect (17b1273)
v1.1011.0
1.1011.0 (2022-09-22)
Bug Fixes
- improve cpp-plugin performance on windows (b5f6770)
v1.1010.0
1.1010.0 (2022-09-21)
Bug Fixes
- added check for existing key in loop (04c00bc)
v1.1009.0
1.1009.0 (2022-09-21)
v1.1008.0
1.1008.0 (2022-09-20)
v1.1007.0
1.1007.0 (2022-09-20)
Bug Fixes
- upgrade go-httpauth to support basic auth (875f0e9)
Features
- add unmanaged service test call ff (55b6fbb)
v1.1006.0
1.1006.0 (2022-09-15)
Features
- show Cloud Issues URL when sharing results with snyk iac test (9e1f2d7)
... (truncated)
Commits
b69d4b3
Merge pull request #3863 from snyk/feat/pass-http-client-to-plugins17b1273
feat: pass snykHttpClient to plugin.inspect4fe1808
Merge pull request #3855 from snyk/fix/perf-win-unmanagedb5f6770
fix: improve cpp-plugin performance on windowsbebfec3
Merge pull request #3854 from snyk/fix/unmanaged-severity-threshold04c00bc
fix: added check for existing key in loopd856544
Merge pull request #3838 from snyk/chore/create-iac-e2e-tests-cfg-21068890fb3
chore: Create IaC smoke tests for experimental test60f7a48
Merge pull request #3847 from snyk/chore/release-golang-cli-for-windowsa3f87ba
Merge pull request #3603 from snyk/feat/add-unmanaged-service-test-call-ff- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase
.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
-
@dependabot rebase
will rebase this PR -
@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it -
@dependabot merge
will merge this PR after your CI passes on it -
@dependabot squash and merge
will squash and merge this PR after your CI passes on it -
@dependabot cancel merge
will cancel a previously requested merge and block automerging -
@dependabot reopen
will reopen this PR if it is closed -
@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually -
@dependabot ignore this major version
will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this minor version
will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this dependency
will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) -
@dependabot use these labels
will set the current labels as the default for future PRs for this repo and language -
@dependabot use these reviewers
will set the current reviewers as the default for future PRs for this repo and language -
@dependabot use these assignees
will set the current assignees as the default for future PRs for this repo and language -
@dependabot use this milestone
will set the current milestone as the default for future PRs for this repo and language
You can disable automated security fix PRs for this repo from the Security Alerts page.
:warning: We detected 2 security issues in this pull request:
Vulnerable Libraries (2)
Severity | Details |
---|---|
High | [email protected] (t) upgrade to: >2.4.1 |
High | [email protected] (t) upgrade to: >1.1.0 |
More info on how to fix Vulnerable Libraries in JavaScript.
👉 Go to the dashboard for detailed results.
📥 Happy? Share your feedback with us.