WebSheets-Listing-Page icon indicating copy to clipboard operation
WebSheets-Listing-Page copied to clipboard

[Snyk] Security upgrade gatsby from 2.24.49 to 2.24.66

Open snyk-bot opened this issue 2 years ago • 0 comments

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

Changes included in this PR

  • Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
    • package.json
    • package-lock.json

Vulnerabilities that will be fixed

With an upgrade:
Severity Priority Score (*) Issue Breaking Change Exploit Maturity
low severity 416/1000
Why? Recently disclosed, Has a fix available, CVSS 2.6
Information Exposure
SNYK-JS-FOLLOWREDIRECTS-2396346
No No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Commit messages
Package name: gatsby The new version differs by 250 commits.
  • e829ab9 chore(release): Publish
  • 61bc30c chore(deps): update minor and patch for gatsby-admin (#27103)
  • 2e2e5c5 chore(gatsby-source-graphql): remove graphql dependency and use gatsby/graphql (#27150)
  • b6cde3b feat(gatsby-dev-cli): install deps if there are no gatsby deps but --forceInstall was used (#27055)
  • cdc6e85 chore(deps): update minor and patch for gatsby-transformer-screenshot (#27115)
  • f11de7d fix(gatsby-starter-blog): Use `ol` for blog post list (#26601)
  • 23fdadb chore(deps): update dependency @ types/babel__code-frame to ^7.0.2 (#27068)
  • 22f69e8 fix(deps): update minor and patch for gatsby-dev-cli (#27117)
  • 245fec3 chore(deps): update dependency @ types/bluebird to ^3.5.32 (#27067)
  • d343ac9 fix(deps): update minor and patch for gatsby-plugin-guess-js (#27121)
  • 817d062 fix(deps): update minor and patch for gatsby-remark-images (#27135)
  • 2cab85a fix(deps): update minor and patch for gatsby-transformer-remark (#27148)
  • 971dfb7 fix(deps): update minor and patch for gatsby-source-mongodb (#27141)
  • 01846ed fix(deps): update minor and patch for gatsby-source-wikipedia (#27144)
  • d41e652 fix(deps): update minor and patch for gatsby-transformer-react-docgen (#27147)
  • e45b9f5 updated https (#27051)
  • d92e8da chore(docs): updated https (#27052)
  • f5124fa chore(docs): fix spelling from `yard` to `yarn` (#27088)
  • a52df81 chore(docs): Add props to MyParagraph (#27124)
  • 587b33a chore(docs): remove extra "you" (typo) (#27125)
  • 8807fea fix(gatsby-remark-autolink-headers): option to disable "position: relative" when icon is not present (#27022)
  • b7e2857 chore(deps): update minor and patch for gatsby-graphiql-explorer (#27107)
  • e6b1a0f chore(deps): update minor and patch for gatsby-plugin-preact (#27110)
  • 7728d7b chore(deps): update dependency typescript to ^3.9.7 (#27089)

See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: 🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic

snyk-bot avatar Feb 09 '22 19:02 snyk-bot