8BitJonny / BeatMix

BeatMix let's you select a list of your favourite artists from which all tracks are put into one new playlist for you to hear all day long.
https://beatmix.app
GNU General Public License v3.0
7 stars 1 forks source link

[Snyk] Upgrade nuxt from 2.14.7 to 2.14.8 #27

Closed snyk-bot closed 3 years ago

snyk-bot commented 3 years ago

Snyk has created this PR to upgrade nuxt from 2.14.7 to 2.14.8.

:sparkles: Snyk has automatically assigned this pull request, [set who gets assigned](https://app.snyk.io/org/8bitjonny/project/b5407784-4062-4919-b4f7-c8675a0a19df/settings/integration?utm_source=github&utm_medium=upgrade-pr/settings/integration).

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Prototype Pollution
SNYK-JS-Y18N-1021887
472/1000
Why? Proof of Concept exploit, CVSS 7.3
Proof of Concept
Prototype Pollution
SNYK-JS-INI-1048974
472/1000
Why? Proof of Concept exploit, CVSS 7.3
Proof of Concept

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: nuxt
  • 2.14.8 - 2020-12-01

    🐛 Bug Fixes

    • webpack
      • #8205 Allow transpiling packages in nested node_modules
    • general
      • #8325 Handle route encodings and update vue-router
    • vue-router
      • #8394 Force chidren to be required if default child is present (resolves #7823)
    • cli
      • #8398 Respect router.trailingSlash when serving static files (resolves #8350)
      • #8337 Handle generate.cache.ignore as a function in ensureBuild
    • generator
      • #8237 Nested route missing trailingSlash (resolves #8165)
      • #8344 Respect publicPath for static assets (resolves #7923, #7815)
    • csp
      • #8352 Apply right csp header when status code is 304 (resolves #8353)
    • vue-app
      • #8314 Handle missing payloads on full static (resolves #7717)
      • #8348 Warn if promises and functions are in fetch state (resolves #8338)
      • #8225 TriggerScroll when transitions is disabled
      • #8289 Use nuxt globalName correctly in nuxt-link and fetch mixin (resolves #8118)
      • #8280 Prevent redirection loop with URI-encoded path (resolves #8116)
    • types
      • #8362 Correct vue.config types
      • #8349 Add missing isFetching and nbFetching to NuxtApp interface
      • #8319 NuxtOptionsHead can be a function
      • #8302 Add missing ssrContext and next typings to Context (resolves #8296)
    • server
      • #8313 Redirect if router.base specified in development

    💅 Refactors

    • general
      • #8210 Use nuxt everywhere
    • cli

    👓 Tests

    • general
      • #8282 Fix redirect tests

    💖 Thanks to

  • 2.14.7 - 2020-10-15

    🐛 Bug Fixes

    • babel-preset-app
      • #8203 Always transpile optional chaining and nullish-coalescing for server
    • cli
      • #8200 Rebuild if process.env changes in nuxt.config
      • #8194 Avoid error about nuxt-edge if installed in parent node_modules
      • #8134 Mode deprecation with explicit spa or universal flag
    • vue-app
      • #8170 Use getter to provide this.$nuxt
      • #8055 ScrollRestoration hasn't set
    • types
      • #8182 Add type for serverMiddleware object format
      • #8169 Make NuxtConfig an interface
    • generator
      • #8166 Handle when no routes.json defined
    • general
      • #8206 Add better logs for DX with target option

    💖 Thanks to

from nuxt GitHub release notes

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

👩‍💻 Set who automatically gets assigned

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs