antonbabenko / modules.tf-lambda

Infrastructure as code generator - from visual diagrams created with Cloudcraft.co to Terraform
https://www.cloudcraft.co/
MIT License
351 stars 56 forks source link

[Snyk] Security upgrade serverless from 1.65.0 to 2.1.0 #55

Closed snyk-bot closed 3 years ago

snyk-bot commented 3 years ago

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

Changes included in this PR

Vulnerabilities that will be fixed

With an upgrade:
Severity Priority Score (*) Issue Breaking Change Exploit Maturity
medium severity 501/1000
Why? Recently disclosed, Has a fix available, CVSS 4.3
Regular Expression Denial of Service (ReDoS)
SNYK-JS-SEMVERREGEX-1047770
Yes No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Commit messages
Package name: serverless The new version differs by 250 commits.
  • 1bdcaa6 chore: Remove mistakenly committed configuration
  • 50d2317 chore: Remove mistakenly registered dependency
  • 13210e3 chore: Release v2.1.0
  • 584f9e5 chore: Upgrade "standard-version" to v9
  • afdf6b2 chore: Upgrade "@ commitlint/cli" to v11
  • 7778109 chore: Bump dependencies
  • 738c52f fix: Workaround config schema error on project initialization
  • d070986 docs: Ensure to reference v2 in `frameworkVersion`
  • ce51c8f chore: Upgrade "yargs-parser" to v20
  • 822adbd chore: Remove "mocha-lcov-reporter" as it's no longer needed
  • 08cb86a chore: Remove "cli-progress-footer" as it's no longer used
  • 4f6e354 chore: Remove "rc" dependency as it's no longer used
  • f38c7c5 chore: Remove "jwt-decode" as it's not used
  • c375120 chore: Remove not used "write-file-atomic" dependency
  • 264b9b2 chore: Upgrade "semver-regex" to v3
  • 4c46663 chore: Register "semver-regex" as dev dependency
  • 282b9be chore: Upgrade "untildify" to v4
  • c6c3804 chore: Upgrade "semver" to v7
  • e028f5e refactor(Config Schema): List properties in alphabetical order
  • d5833f8 refactor: Ensure constient returns
  • 370c097 chore: Upgrade "fs-extra" to v9
  • 0cd9cca refactor: Switch to "fastest-levenshtein"
  • 7e32994 style: Whitespace
  • e136d8b chore: Upgrade "p-limit" to v3
See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: 🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic