rest-service-boilerplate icon indicating copy to clipboard operation
rest-service-boilerplate copied to clipboard

[Snyk Update] New fixes for 3 vulnerable dependency paths

Open snyk-bot opened this issue 7 years ago • 1 comments

This project has vulnerabilities that could not be fixed, or were patched when no upgrade was available. Good news, new upgrades or patches have now been published! This pull request fixes vulnerable dependencies you couldn’t previously address.

The PR includes:

  • Changes to package.json to upgrade the vulnerable dependencies to a fixed version.
  • package.json scripts and a Snyk policy (.snyk) file, which patch the vulnerabilities that can't be upgraded away and ignore vulnerabilities with no fixes.

Vulnerabilities that will be fixed

With an upgrade:
With a Snyk patch:

You can read more about Snyk's upgrade and patch logic in Snyk's documentation.

Note that this pull request only addresses vulnerabilities that previously had no fixes. See the Snyk test report to review and remediate the full list of vulnerable dependencies.

Check the changes in this PR to ensure they won't cause issues with your project.

Stay secure, The Snyk team

snyk-bot avatar May 28 '17 07:05 snyk-bot

Coverage Status

Coverage remained the same at 74.167% when pulling b9a9ed73126ca259fc5347da28513abc6d210840 on snyk-fix-87c4ba46 into a75c68dc50597e2438de82fed18ae4cf2702720d on master.

coveralls avatar May 28 '17 07:05 coveralls