JuanPablo2655 / cobalt-network-rewrite

2 stars 0 forks source link

[Snyk] Security upgrade node-fetch from 3.2.6 to 3.2.10 #227

Closed JuanPablo2655 closed 2 years ago

JuanPablo2655 commented 2 years ago

Snyk has created this PR to fix one or more vulnerable packages in the `yarn` dependencies of this project.

merge advice

:sparkles: Snyk has automatically assigned this pull request, set who gets assigned.

As this is a private repository, Snyk-bot does not have access. Therefore, this PR has been created automatically, but appears to have been created by a real user.

Changes included in this PR

Vulnerabilities that will be fixed

With an upgrade:
Severity Priority Score (*) Issue Breaking Change Exploit Maturity
high severity 768/1000
Why? Proof of Concept exploit, Recently disclosed, Has a fix available, CVSS 7.5
Regular Expression Denial of Service (ReDoS)
SNYK-JS-NODEFETCH-2964180
No Proof of Concept

(*) Note that the real score may have changed since the PR was raised.

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: 🧐 View latest project report

👩‍💻 Set who automatically gets assigned

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic


Learn how to fix vulnerabilities with free interactive lessons:

🦉 Learn about vulnerability in an interactive lesson of Snyk Learn.

codecov[bot] commented 2 years ago

Codecov Report

Merging #227 (a034840) into master (d90863f) will not change coverage. The diff coverage is n/a.

@@           Coverage Diff           @@
##           master     #227   +/-   ##
=======================================
  Coverage   98.09%   98.09%           
=======================================
  Files          19       19           
  Lines        1315     1315           
  Branches       56       56           
=======================================
  Hits         1290     1290           
  Misses         25       25           

Help us with your feedback. Take ten seconds to tell us how you rate us.