bmoers / sn-cicd

CICD Server for Service-Now
GNU Lesser General Public License v3.0
44 stars 36 forks source link

[Snyk] Security upgrade puppeteer from 1.17.0 to 3.0.0 #105

Closed snyk-bot closed 1 year ago

snyk-bot commented 3 years ago

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

merge advice

Changes included in this PR

Vulnerabilities that will be fixed

With an upgrade:
Severity Issue Breaking Change Exploit Maturity
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-WS-1296835
Yes No Known Exploit
Commit messages
Package name: puppeteer The new version differs by 199 commits.
  • 6760b92 chore: mark version v3.0.0 (#5642)
  • 3387aab feat(chromium): roll Chromium to r737027 (#5644)
  • c5df490 docs(readme): update cross-browser FAQ (#5634)
  • 35989a7 fix: set revision based on PUPPETEER_PRODUCT (#5643)
  • d817ae5 fix: update preferred revision after Launcher is created (#5640)
  • df81250 chore: update ws library (#5638)
  • 2529ee6 chore(eslint): add eslint typescript linting (#5635)
  • 88d843d feat(TypeScript): move DeviceDescriptors to TS (#5595)
  • 1ce4fe7 chore(deps): update extract-zip to version 2 (#5610)
  • 0bcc5a7 chore: migrate remaining tests to Mocha (#5616)
  • 17cd870 chore: migrate unit tests to Mocha (#5600)
  • 262da92 chore(test): re-enable Firefox testing on CI (#5608)
  • 83d9d53 chore: update CI to run Travis + Linux + Chromium (#5583)
  • 21c2d31 docs(api): update another emulateMediaType example (#5607)
  • fefa8ca docs(api): update emulateMediaType example (#5606)
  • bbdaf92 docs(README): remove unused badges
  • efe561e chore: fix DocLint method diffing (#5594)
  • 841c2a5 chore: fix emulateMedia tests (#5593)
  • 8fa034b chore: remove flakiness dashboard (#5592)
  • 4ee2c43 chore: fix Page.emulateMedia doclint failure (#5584)
  • a99a3cf chore: skip failing cookie tests in Firefox (#5575)
  • 88446df chore: fix missed `src/` vs `lib/` documentation (#5591)
  • b3b0dc5 docs: replace invalid device descriptors link (#5589)
  • 99ecdba docs: fix simple typo (#5585)
See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: 🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic