OHDSI / Atlas

ATLAS is an open source software tool for researchers to conduct scientific analyses on standardized observational data
http://atlas-demo.ohdsi.org/
Apache License 2.0
273 stars 137 forks source link

[Snyk] Upgrade less from 3.8.1 to 3.13.1 #2961

Closed konstjar closed 1 month ago

konstjar commented 1 month ago

snyk-top-banner

Snyk has created this PR to upgrade less from 3.8.1 to 3.13.1.

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


Issues fixed by the recommended upgrade:

Issue Score Exploit Maturity
medium severity Server-side Request Forgery (SSRF)
SNYK-JS-REQUEST-3361831
646 Proof of Concept
medium severity Prototype Pollution
SNYK-JS-TOUGHCOOKIE-5672873
646 Proof of Concept
Release notes
Package name: less
  • 3.13.1 - 2020-12-18
    No content.
  • 3.13.1-next.1 - 2020-12-17
  • 3.13.1-alpha.1 - 2020-09-29
  • 3.13.0 - 2020-12-12
    No content.
  • 3.13.0-alpha.12 - 2020-12-08
  • 3.13.0-alpha.10 - 2020-12-08
  • 3.13.0-alpha.3 - 2020-12-17
  • 3.13.0-alpha.2 - 2020-12-17
  • 3.12.2 - 2020-07-16
    No content.
  • 3.12.1 - 2020-07-16

    v3.12.1

  • 3.12.1-alpha.13 - 2020-12-05
  • 3.12.1-alpha.12 - 2020-12-08
  • 3.12.0 - 2020-07-13

    v3.12.0

  • 3.11.3 - 2020-06-05
    No content.
  • 3.11.2 - 2020-06-01
    No content.
  • 3.11.1 - 2020-02-11
    No content.
  • 3.11.0 - 2020-02-09
    No content.
  • 3.10.3 - 2019-08-23
    No content.
  • 3.10.2 - 2019-08-21
  • 3.10.1 - 2019-08-18
  • 3.10.0 - 2019-08-17
  • 3.10.0-beta.2 - 2019-08-08
  • 3.10.0-beta - 2019-08-03
  • 3.9.0 - 2018-11-29
  • 3.8.1 - 2018-08-08
from less GitHub release notes

[!IMPORTANT]

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information: