YuriGor / deepdash.io

Site for deepdash
https://deepdash.io/
0 stars 0 forks source link

[Snyk] Fix for 1 vulnerabilities #20

Closed snyk-bot closed 4 years ago

snyk-bot commented 4 years ago

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

Changes included in this PR

Vulnerabilities that will be fixed

With an upgrade:
Severity Issue Breaking Change Exploit Maturity
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-ACORN-559469
Yes No Known Exploit
Commit messages
Package name: jsdom The new version differs by 75 commits.
  • b4bb1c5 Version 15.2.0
  • 0b7dba8 Update dev dependencies
  • a4bcb12 Add inheritance for getComputedStyle() and visibility
  • 974ee53 Add test for querySelector with *= and i
  • e3744f5 Update Travis setup
  • f4706fc Update dependencies
  • 0a759f1 Roll Web Platform Tests
  • 0fd21bb Fix DOMException type for attachShadow
  • 2c53a87 Poll for WebSockets server in WPTs
  • f298acd Update <input> logic to use allowed value step
  • bcb520b Create stub for form.requestSubmit
  • 6b89146 Fix default value for tabIndex IDL attribute
  • 0f09068 Implement DocumentOrShadowRoot
  • abe6a89 Fire readystatechange on the document
  • 699ed6b Fix <select>'s value getter when selectedIndex is -1
  • 2bd84ee Fix some issues with FormData construction from forms
  • 90ffbc4 Update dependencies
  • 6c4cb77 Add Tidelift link to README (#2643)
  • ecb22a2 Include the URL of the XML document in error messages
  • 529b9f3 Add canvas as an optional peer dependency
  • 0371215 Version 15.1.1
  • dd6c5a0 Do not reserialize XHR content-types unnecessarily
  • 7cd5329 Do not merge XHR preflight and response headers
  • 9f6b190 Keep track of style and event attribute changes in SVGElement
See the full diff
Package name: next The new version differs by 250 commits.
  • e4f96e6 v8.0.0
  • b31819f Remove build directory
  • a2bb542 Allow publishing the master branch using Lerna
  • 7d6eb38 Merge branch 'canary'
  • 8ddf9c7 v8.0.0-canary.23
  • c9f4a95 Update yarn.lock
  • 163830c Merge branch 'canary'
  • 100b733 v8.0.0-canary.22
  • 315a374 Add new circleci config
  • f8a80f1 [with-typescript] remove unnecessary `passHref` in `Link` components (#6233)
  • ac0976a Update styled-jsx (#6236)
  • b05df70 Fix first render of with-react-helmet example (#6235)
  • 63c25a9 update preset.ts to use isProduction variable (#6234)
  • bfd2d08 v8.0.0-canary.21
  • 377e43b Update yarn.lock
  • 2ecb248 v8.0.0-canary.20
  • 45f5663 Bring in terser-webpack-plugin (#6231)
  • 693ab43 Fix typo (#6230)
  • c0701e9 v8.0.0-canary.19
  • 6f162b9 Add Error when using publicRuntimeConfig with target serverless and add buildVars (#6212)
  • 28b61a8 Remove Unneeded _error import (#6224)
  • cc0b3ef Remove extraneous benchmark dependency (#6222)
  • 98cf0a8 [examples] Update react jss example (#6198)
  • 815f2e9 Only compile /_error when /_error is needed (#6192)
See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:

🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic

vercel[bot] commented 4 years ago

This pull request is being automatically deployed with ZEIT Now (learn more). To see the status of your deployment, click below or on the icon next to each commit.

🔍 Inspect: https://zeit.co/yurigor/deepdashio/44t6p07d2 ✅ Preview: https://deepdashio-git-snyk-fix-9ca6feb778bdd4dd63346a97d8194163.yurigor.now.sh