BestGamersH / Multipurpose-Discord-Bot

The bot that has everything! - Leveling • Music • Memes • Moderation • nsfw • Logging • Tickets • Reaction Roles • Fun • Anime • Applications • Much More
MIT License
104 stars 41 forks source link

[Snyk] Upgrade @discordjs/opus from 0.7.0 to 0.9.0 #39

Closed BestGamersH closed 7 months ago

BestGamersH commented 8 months ago

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade @discordjs/opus from 0.7.0 to 0.9.0.

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
- The recommended version is **2 versions** ahead of your current version. - The recommended version was released **a year ago**, on 2022-10-20. The recommended version fixes: Severity | Issue | PriorityScore (*) | Exploit Maturity | :-------------------------:|:-------------------------|-------------------------|:------------------------- | Denial of Service (DoS)
[SNYK-JS-DISCORDJSOPUS-2403100](https://snyk.io/vuln/SNYK-JS-DISCORDJSOPUS-2403100) | **696/1000**
**Why?** Proof of Concept exploit, Has a fix available, CVSS 7.5 | Proof of Concept (*) Note that the real score may have changed since the PR was raised.
Release notes
Package name: @discordjs/opus from @discordjs/opus GitHub release notes
Commit messages
Package name: @discordjs/opus
  • 814e500 feat: support node 19
  • 478484d feat: support node 18
  • 3befecb ci: remove windows builds
  • 63555ae ci: add more supported os
  • 344f064 ci: proper node 18 prebuilds
  • 5af481d ci: disable fail fast
  • 185c78d chore: deps
  • 9fa0d54 feat(ci): add prebuilt binaries for linux aarch64 (#122)
  • 406249f chore: fix CVE and add more prebuilds (#132)
Compare

**Note:** *You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.* For more information: 🧐 [View latest project report](https://app.snyk.io/org/bestgamershk/project/7c1cf68f-ce95-4118-bfe6-6f3091414aba?utm_source=github&utm_medium=referral&page=upgrade-pr) 🛠 [Adjust upgrade PR settings](https://app.snyk.io/org/bestgamershk/project/7c1cf68f-ce95-4118-bfe6-6f3091414aba/settings/integration?utm_source=github&utm_medium=referral&page=upgrade-pr) 🔕 [Ignore this dependency or unsubscribe from future upgrade PRs](https://app.snyk.io/org/bestgamershk/project/7c1cf68f-ce95-4118-bfe6-6f3091414aba/settings/integration?pkg=@discordjs/opus&utm_source=github&utm_medium=referral&page=upgrade-pr#auto-dep-upgrades)