Leko / WEB-EGG

WEB EGG
https://blog.leko.jp
MIT License
15 stars 0 forks source link

[Snyk] Fix for 1 vulnerabilities #363

Closed snyk-bot closed 3 years ago

snyk-bot commented 4 years ago

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

Changes included in this PR

Vulnerabilities that will be fixed

With an upgrade:
Severity Issue Breaking Change Exploit Maturity
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-ACORN-559469
Yes No Known Exploit
Commit messages
Package name: eslint The new version differs by 134 commits.
  • a7985a6 6.0.0
  • be74dd9 Build: changelog update for 6.0.0
  • 81aa06b Upgrade: espree@6.0.0 (#11869)
  • 5f022bc Fix: no-else-return autofix produces name collisions (fixes #11069) (#11867)
  • ded9548 Fix: multiline-comment-style incorrect message (#11864)
  • cad074d Docs: Add JSHint W047 compat to no-floating-decimal (#11861)
  • 41f6304 Upgrade: sinon (#11855)
  • 167ce87 Chore: remove unuseable profile command (#11854)
  • c844c6f Fix: max-len properly ignore trailing comments (fixes #11838) (#11841)
  • 1b5661a Fix: no-var should not fix variables named 'let' (fixes #11830) (#11832)
  • 4d75956 Build: CI with Azure Pipelines (#11845)
  • 1db3462 Chore: rm superfluous argument & fix perf-multifiles-targets (#11834)
  • c57a4a4 Upgrade: @babel/polyfill => core-js v3 (#11833)
  • 65faa04 Docs: Clarify prefer-destructuring array/object difference (fixes #9970) (#11851)
  • 81c3823 Fix: require-atomic-updates reports parameters (fixes #11723) (#11774)
  • aef8ea1 Sponsors: Sync README with website
  • 4f48f5a 6.0.0-rc.0
  • 6bad650 Build: changelog update for 6.0.0-rc.0
  • f403b07 Update: introduce minKeys option to sort-keys rule (fixes #11624) (#11625)
  • 87451f4 Fix: no-octal should report NonOctalDecimalIntegerLiteral (fixes #11794) (#11805)
  • e4ab053 Update: support "bigint" in valid-typeof rule (#11802)
  • e0fafc8 Chore: removes unnecessary assignment in loop (#11780)
  • 20908a3 Docs: removed '>' prefix from from docs/working-with-rules (#11818)
  • 1c43eef Sponsors: Sync README with website
See the full diff
Package name: gatsby The new version differs by 250 commits.
  • f859947 chore(release): Publish
  • 6de032d chore(docs): Update useStaticQuery example code (#18681)
  • a5ec39f chore(docs): Updated pronouns as per style guide (#18680)
  • 16e7802 chore(docs): Fix tutorial part 8 react helmet step 4 (#18687)
  • a775081 Add link to Minimal Reproduction docs (#18653)
  • aedd569 fix(gatsby-theme-blog-core): Normalize trailing slashes (#17871)
  • 3d38af2 fix(gatsby): create page dependencies from contextual node model methods even if no path is passed (#18650)
  • 6841250 chore(starters): add gatsby-contentful-starter (#18658)
  • ccdc128 chore(docs): clarify local setup instructions (#18406)
  • 17f0cdd Update @typescript-eslint packages (#18573)
  • 66a7be7 chore(docs): Update tutorial part 8 (#18512)
  • f45dec6 chore(docs): check titles, headlines & text (#18668)
  • f641b55 chore(docs): Changed few "we" to "you" in gatsby-link.md (#18660)
  • 8da19c4 chore(issue-templates): add comma after otherwise (#18666)
  • 2b193aa chore(docs): Updated environment-variables to adhere to Gatsby… (#18670)
  • d76a62a chore(docs): Update eslint to adhere to Gatsby style guide (#18671)
  • 98350f3 chore(showcase): Add MarceloNM.com to showcase (#18673)
  • 6e7b186 chore(docs): check titles, headlines & text + change some NOTE… (#18654)
  • fef8e7e Add quotes to title (#18683)
  • 29fdf39 chore(showcase): add opensourcegalaxy.com to showcases (#18662)
  • 21e5274 Add enbonnet.me to showcase (#18646)
  • 4fd307a chore(showcase): Add IBM Design, Edenspiekermann (#18637)
  • 302aa26 fix(gatsby): Extend fields when merging types (#18500)
  • ee70f9d [docs] improving Themes completeness (#18602)
See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:

🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic

codecov-io commented 4 years ago

Codecov Report

:exclamation: No coverage uploaded for pull request base (master@62eea36). Click here to learn what that means. The diff coverage is n/a.

Impacted file tree graph

@@            Coverage Diff            @@
##             master     #363   +/-   ##
=========================================
  Coverage          ?   50.29%           
=========================================
  Files             ?        2           
  Lines             ?      167           
  Branches          ?       36           
=========================================
  Hits              ?       84           
  Misses            ?       72           
  Partials          ?       11

Continue to review full report at Codecov.

Legend - Click here to learn more Δ = absolute <relative> (impact), ø = not affected, ? = missing data Powered by Codecov. Last update 62eea36...8ca9396. Read the comment docs.

netlify[bot] commented 4 years ago

Deploy preview for webegg ready!

Built with commit 8ca9396f0bc1e45e867f38e0ddf930ffae4f72d1

https://deploy-preview-363--webegg.netlify.com