JuanPablo2655 / cobalt-network-rewrite

2 stars 0 forks source link

[Snyk] Security upgrade mongoose from 6.4.0 to 6.4.6 #226

Closed JuanPablo2655 closed 2 years ago

JuanPablo2655 commented 2 years ago

Snyk has created this PR to fix one or more vulnerable packages in the `yarn` dependencies of this project.

merge advice

:sparkles: Snyk has automatically assigned this pull request, set who gets assigned.

As this is a private repository, Snyk-bot does not have access. Therefore, this PR has been created automatically, but appears to have been created by a real user.

Changes included in this PR

Vulnerabilities that will be fixed

With an upgrade:
Severity Priority Score (*) Issue Breaking Change Exploit Maturity
high severity 743/1000
Why? Proof of Concept exploit, Recently disclosed, Has a fix available, CVSS 7
Prototype Pollution
SNYK-JS-MONGOOSE-2961688
No Proof of Concept

(*) Note that the real score may have changed since the PR was raised.

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: 🧐 View latest project report

πŸ‘©β€πŸ’» Set who automatically gets assigned

πŸ›  Adjust project settings

πŸ“š Read more about Snyk's upgrade and patch logic


Learn how to fix vulnerabilities with free interactive lessons:

πŸ¦‰ Prototype Pollution

codecov[bot] commented 2 years ago

Codecov Report

Merging #226 (959dea6) into master (d90863f) will not change coverage. The diff coverage is n/a.

@@           Coverage Diff           @@
##           master     #226   +/-   ##
=======================================
  Coverage   98.09%   98.09%           
=======================================
  Files          19       19           
  Lines        1315     1315           
  Branches       56       56           
=======================================
  Hits         1290     1290           
  Misses         25       25           

Help us with your feedback. Take ten seconds to tell us how you rate us.