cmv / cmv-app

CMV - The Configurable Map Viewer - A community supported open source mapping framework built with the Esri JavaScript API and the Dojo Toolkit
https://demo.cmv.io/
MIT License
323 stars 278 forks source link

[Snyk] Upgrade eslint from 7.9.0 to 7.10.0 #970

Closed snyk-bot closed 3 years ago

snyk-bot commented 3 years ago

Snyk has created this PR to upgrade eslint from 7.9.0 to 7.10.0.

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Prototype Pollution
SNYK-JS-OBJECTPATH-1017036
472/1000
Why? Proof of Concept exploit, CVSS 7.3
Proof of Concept

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: eslint
  • 7.10.0 - 2020-09-26
    • 6919fbb Docs: Clarify that ignorePattern should be a string (refs #13029) (#13718) (Brandon Mills)
    • 07d9bea Update: Add ignorePattern to no-inline-comments (#13029) (Edie Lemoine)
    • d79bbe9 Docs: fix typo (#13717) (Alexander Liu)
    • 9b8490e Docs: grammatical error (#13687) (rajdeep)
    • cb44e93 Fix: prefer-destructuring invalid autofix with computed property access (#13704) (Milos Djermanovic)
    • 46c73b1 Upgrade: eslint-scope@5.1.1 (#13716) (Milos Djermanovic)
    • b7b12ba Chore: Move comment to make tests more organized (#13707) (Yusuke Tanaka)
    • 51674a4 Docs: Add missing quotes (#13714) (Lucio Paiva)
    • 7c34a98 Chore: remove mistakenly added file (#13710) (Milos Djermanovic)
    • 30b76c9 Docs: Clarify package.json requirement in Getting Started (refs #13549) (#13696) (Nicholas C. Zakas)
    • 044560d Sponsors: Sync README with website (ESLint Jenkins)
    • 54000d1 Sponsors: Sync README with website (ESLint Jenkins)
  • 7.9.0 - 2020-09-12
    • 3ca2700 Fix: Corrected notice for invalid (:) plugin names (#13473) (Josh Goldberg)
    • fc5783d Docs: Fix leaky anchors in v4 migration page (#13635) (Timo Tijhof)
    • f1d07f1 Docs: Provide install commands for Yarn (#13661) (Nikita Baksalyar)
    • 29d1cdc Fix: prefer-destructuring removes comments (refs #13678) (#13682) (Milos Djermanovic)
    • b4da0a7 Docs: fix typo in working with plugins docs (#13683) (啸生)
    • 6f87db7 Update: fix id-length false negatives on Object.prototype property names (#13670) (Milos Djermanovic)
    • 361ac4d Fix: NonOctalDecimalIntegerLiteral is decimal integer (fixes #13588) (#13664) (Milos Djermanovic)
    • f260716 Docs: update outdated link (#13677) (klkhan)
    • 5138c91 Docs: add missing eslint directive comments in no-await-in-loop (#13673) (Milos Djermanovic)
    • 17b58b5 Docs: clarify correct example in no-return-await (fixes #13656) (#13657) (Milos Djermanovic)
    • 9171f0a Chore: fix typo (#13660) (Nitin Kumar)
    • 6d9f8fb Sponsors: Sync README with website (ESLint Jenkins)
    • 97b0dd9 Sponsors: Sync README with website (ESLint Jenkins)
    • deab125 Sponsors: Sync README with website (ESLint Jenkins)
    • bf2e367 Sponsors: Sync README with website (ESLint Jenkins)
    • 8929208 Sponsors: Sync README with website (ESLint Jenkins)
from eslint GitHub release notes
Commit messages
Package name: eslint
  • 1df7fa6 7.10.0
  • 291142f Build: changelog update for 7.10.0
  • 6919fbb Docs: Clarify that ignorePattern should be a string (refs #13029) (#13718)
  • 07d9bea Update: Add ignorePattern to no-inline-comments (#13029)
  • d79bbe9 Docs: fix typo (#13717)
  • 9b8490e Docs: grammatical error (#13687)
  • cb44e93 Fix: prefer-destructuring invalid autofix with computed property access (#13704)
  • 46c73b1 Upgrade: eslint-scope@5.1.1 (#13716)
  • b7b12ba Chore: Move comment to make tests more organized (#13707)
  • 51674a4 Docs: Add missing quotes (#13714)
  • 7c34a98 Chore: remove mistakenly added file (#13710)
  • 30b76c9 Docs: Clarify package.json requirement in Getting Started (refs #13549) (#13696)
  • 044560d Sponsors: Sync README with website
  • 54000d1 Sponsors: Sync README with website
Compare

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs