client
client copied to clipboard
[Snyk] Fix for 42 vulnerabilities
Snyk has created this PR to fix 42 vulnerabilities in the npm dependencies of this project.
Snyk changed the following file(s):
package.json
Vulnerabilities that will be fixed with an upgrade:
| Issue | Score | |
|---|---|---|
| Improper Verification of Cryptographic Signature SNYK-JS-ELLIPTIC-7577916 |
776 | |
| Improper Verification of Cryptographic Signature SNYK-JS-ELLIPTIC-7577917 |
776 | |
| Improper Verification of Cryptographic Signature SNYK-JS-ELLIPTIC-7577918 |
776 | |
| Regular Expression Denial of Service (ReDoS) SNYK-JS-CROSSSPAWN-8303230 |
756 | |
| Improper Verification of Cryptographic Signature SNYK-JS-ELLIPTIC-8187303 |
756 | |
| Server-side Request Forgery (SSRF) SNYK-JS-IP-6240864 |
751 | |
| Remote Memory Exposure SNYK-JS-BL-608877 |
706 | |
| Regular Expression Denial of Service (ReDoS) SNYK-JS-ANSIREGEX-1583908 |
696 | |
| Uncontrolled resource consumption SNYK-JS-BRACES-6838727 |
696 | |
| Regular Expression Denial of Service (ReDoS) SNYK-JS-PARSELINKHEADER-1582783 |
696 | |
| Regular Expression Denial of Service (ReDoS) SNYK-JS-SEMVER-3247795 |
696 | |
| Improper Handling of Extra Parameters SNYK-JS-FOLLOWREDIRECTS-6141137 |
686 | |
| Prototype Pollution SNYK-JS-INI-1048974 |
686 | |
| Prototype Pollution SNYK-JS-Y18N-1021887 |
686 | |
| Code Injection SNYK-JS-LODASH-1040724 |
681 | |
| Regular Expression Denial of Service (ReDoS) SNYK-JS-PATHTOREGEXP-7925106 |
666 | |
| Information Exposure SNYK-JS-FOLLOWREDIRECTS-6444610 |
646 | |
| Uncontrolled Resource Consumption ('Resource Exhaustion') SNYK-JS-TAR-6476909 |
646 | |
| Arbitrary File Write SNYK-JS-TAR-1579147 |
639 | |
| Arbitrary File Write SNYK-JS-TAR-1579152 |
639 | |
| Arbitrary File Write SNYK-JS-TAR-1579155 |
639 | |
| Improper Verification of Cryptographic Signature SNYK-JS-ELLIPTIC-8172694 |
629 | |
| Arbitrary File Overwrite SNYK-JS-TAR-1536528 |
624 | |
| Arbitrary File Overwrite SNYK-JS-TAR-1536531 |
624 | |
| Arbitrary Code Injection SNYK-JS-UNDERSCORE-1080984 |
596 | |
| Inefficient Regular Expression Complexity SNYK-JS-MICROMATCH-6838728 |
589 | |
| Regular Expression Denial of Service (ReDoS) SNYK-JS-NORMALIZEURL-1296539 |
589 | |
| Information Exposure SNYK-JS-FOLLOWREDIRECTS-2332181 |
586 | |
| Regular Expression Denial of Service (ReDoS) SNYK-JS-GLOBPARENT-1016905 |
586 | |
| Regular Expression Denial of Service (ReDoS) SNYK-JS-HOSTEDGITINFO-1088355 |
586 | |
| Regular Expression Denial of Service (ReDoS) SNYK-JS-HTTPCACHESEMANTICS-3248783 |
586 | |
| Denial of Service (DoS) SNYK-JS-JSZIP-1251497 |
586 | |
| Regular Expression Denial of Service (ReDoS) SNYK-JS-LODASH-1018905 |
586 | |
| Cryptographic Issues SNYK-JS-ELLIPTIC-1064899 |
554 | |
| Arbitrary File Write via Archive Extraction (Zip Slip) SNYK-JS-JSZIP-3188562 |
529 | |
| Prototype Pollution SNYK-JS-MINIMIST-2429795 |
506 | |
| Regular Expression Denial of Service (ReDoS) SNYK-JS-WORDWRAP-3149973 |
506 | |
| Regular Expression Denial of Service (ReDoS) npm:debug:20170905 |
506 | |
| Open Redirect SNYK-JS-GOT-2932019 |
484 | |
| Regular Expression Denial of Service (ReDoS) SNYK-JS-MINIMATCH-3050818 |
479 | |
| Regular Expression Denial of Service (ReDoS) SNYK-JS-TAR-1536758 |
410 | |
| Information Exposure SNYK-JS-FOLLOWREDIRECTS-2396346 |
344 |
[!IMPORTANT]
- Check the changes in this PR to ensure they won't cause issues with your project.
- Max score is 1000. Note that the real score may have changed since the PR was raised.
- This PR was automatically created by Snyk using the credentials of a real user.
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Regular Expression Denial of Service (ReDoS) 🦉 Cryptographic Issues 🦉 Open Redirect 🦉 More lessons are available in Snyk Learn