cblanc / sws_gathers

NSL Gathers App
http://gathers.ensl.org
8 stars 9 forks source link

[Snyk] Fix for 2 vulnerabilities #184

Open snyk-bot opened 4 years ago

snyk-bot commented 4 years ago

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

Changes included in this PR

Vulnerabilities that will be fixed

With an upgrade:
Severity Issue Breaking Change Exploit Maturity
medium severity Cross-site Scripting (XSS)
SNYK-JS-BOOTSTRAP-73560
No No Known Exploit
medium severity Denial of Service
SNYK-JS-NODEFETCH-674311
No No Known Exploit
Commit messages
Package name: bootstrap The new version differs by 250 commits.
  • 1f46337 Update README.md
  • c4ccfbe Ship v4.1.2
  • a49f5ca Clean up npm scripts a bit more.
  • 6589408 Update scripts.
  • de7bef8 update card columns docs to make copy more accurate
  • 5a11ba5 clarify docs dev and add 4.0 link
  • aedd700 change dist to only affect main since docs css isn't distributed
  • 4518288 Move copy tasks back to css-main and js-compile so docs-github task runs properly
  • 159aebc Update watch scripts to properly copy JS files
  • 01f568d fixes #26637
  • 50ff31b Optimised Google Analytics Loading
  • 01c70b1 new url
  • a0551c7 remove reference to breakpoint-specific gutter widths which are not implemented
  • df24f88 Make navbar download the same as homepage download
  • 1c92bac remove jobs link
  • 0e920ce Reorganize docs for easier deploys
  • 9e126b2 dist
  • 283ab30 fix(modal): fix unit test and resetting style
  • cb82394 fix(modal): removes .navbar-toggler margin
  • abb4868 correct spelling errors (#26837)
  • 8b50a72 Add missing role="button" in .navbar's .dropdown-toggle
  • cfc9c85 Update devDependencies.
  • 907f9a7 Update gems.
  • 09d0c5d Merge pull request #26799 from Kirlovon/v4-dev
See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: 🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic