typescript-api
typescript-api copied to clipboard
[Snyk] Security upgrade ts-node from 1.7.3 to 8.0.0
trafficstars
Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.
Changes included in this PR
- Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
- package.json
Vulnerabilities that will be fixed
With an upgrade:
| Severity | Issue | Breaking Change | Exploit Maturity |
|---|---|---|---|
| Prototype Pollution SNYK-JS-MINIMIST-559764 |
Yes | Proof of Concept |
Commit messages
Package name: ts-node
The new version differs by 160 commits.- e6d50ef 8.0.0
- ea9bad7 Skip loading files at configuration level
- b39b38d Preserve `execArgv` with `ts-node` arguments (#760)
- 157bb4c Fix compiler issue with node 6 + latest TypeScript (#761)
- d9f310e Replace `minimist` with type-safe `arg` (#759)
- f148008 Add `compiler` option back and use `require.resolve` (#758)
- abcb13b Remove unused code (#751)
- d58488b Create `tsconfig.json` for old TypeScript versions (#723)
- 5ee273e Comments, trailing comma to tests `tsconfig.json`
- 132e569 Use prettier screenshot (#710)
- ebe239a Drop old node.js support without `Buffer.from` (#702)
- b61c745 Remove support for `ts-node` cache output (#701)
- df1ac1d Disable loading `files` from configuration (#700)
- 9d15a72 Remove support for custom `compiler` option (#699)
- 77eff53 Clarify global declarations in README (#698)
- 3ff4a69 Add missing word to README (#680)
- ad6183a 7.0.1
- 6df09a9 Remove `composite` option from configuration (#657)
- 2017b3a Ignore TypeScript error 2355 in REPL (#645)
- 743e80f Add documentation for fixing missing types (#627)
- 55741b6 Note defaults, ignoring `node_modules`, types tip
- ff8ed42 Use `argv` defaults consistently
- c692f94 Test custom `typeRoots` support in `tsconfig.json`
- 6ce7c97 7.0.0
Check the changes in this PR to ensure they won't cause issues with your project.
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information: