blacklight / platypush

A versatile and extensible platform for automation with hundreds of supported integrations
https://platypush.tech
MIT License
284 stars 20 forks source link

[Snyk] Upgrade core-js from 3.36.0 to 3.36.1 #419

Closed blacklight closed 3 months ago

blacklight commented 3 months ago

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade core-js from 3.36.0 to 3.36.1.

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
- The recommended version is **1 version** ahead of your current version. - The recommended version was released **2 months ago**, on 2024-03-19. The recommended version fixes: Severity | Issue | PriorityScore (*) | Exploit Maturity | :-------------------------:|:-------------------------|-------------------------|:------------------------- | Information Exposure
[SNYK-JS-FOLLOWREDIRECTS-6444610](https://snyk.io/vuln/SNYK-JS-FOLLOWREDIRECTS-6444610) | **432/1000**
**Why?** Proof of Concept exploit, CVSS 6.5 | Proof of Concept (*) Note that the real score may have changed since the PR was raised.
Release notes
Package name: core-js from core-js GitHub release notes
Commit messages
Package name: core-js
  • 454d98c 3.36.1
  • 87f7a5b move to `eslint-plugin-import-x`
  • dbb7ed8 update dependencies
  • 28a7a1b update dependencies
  • cdc614d add a fix of Bun `SuppressedError` extra arguments support and arity
  • f696edb update dependencies
  • bc37bc2 `URLSearchParams#size` is non-configurable (-> non-fixable) in Bun 1.0.33
  • 2fd79a2 Merge pull request #1335 from szepeviktor/typo
  • 5311099 Fix a typos in file name
  • c3fc79f mark `value` argument of `URLSearchParams.prototype.{ has, delete }` as supported from Bun 1.0.31
  • b581928 fix a typo
  • f334ef2 update dependencies
  • 50fad42 add a fix of Bun `URL.canParse` arity
  • 181e0e7 add Deno 1.41.3 compat data mapping
  • 04461be add Samsung Internet 25 compat data mapping
  • 74e8dcb update Opera Android 81 compat data mapping
  • f3a3911 update dependencies, unpin `updates`
  • 26fb10a pin `updates`
  • aaf3810 update `queueMicrotask` compat test
  • 7532b42 fix a typo
  • 8cd3541 update dependencies
  • 79ace5c add a fix for Bun `queueMicrotask` arity
  • 59a342d update dependencies
  • a2d9b20 update dependencies
Compare

**Note:** *You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.* For more information: 🧐 [View latest project report](https://app.snyk.io/org/blacklight/project/96bfd125-5816-4d9e-83c6-94d1569ab0f1?utm_source=github&utm_medium=referral&page=upgrade-pr) 🛠 [Adjust upgrade PR settings](https://app.snyk.io/org/blacklight/project/96bfd125-5816-4d9e-83c6-94d1569ab0f1/settings/integration?utm_source=github&utm_medium=referral&page=upgrade-pr) 🔕 [Ignore this dependency or unsubscribe from future upgrade PRs](https://app.snyk.io/org/blacklight/project/96bfd125-5816-4d9e-83c6-94d1569ab0f1/settings/integration?pkg=core-js&utm_source=github&utm_medium=referral&page=upgrade-pr#auto-dep-upgrades)