commonality / generator-community

ไทค Generate README, CODE_OF_CONDUCT, CONTRIBUTING, LICENSE, ISSUE_TEMPLATE, and PULL_REQUEST_TEMPLATE repository docs to encourage consumption and invite contributions.
MIT License
9 stars 7 forks source link

[Snyk] Fix for 1 vulnerabilities #30

Open snyk-bot opened 3 years ago

snyk-bot commented 3 years ago

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

Changes included in this PR

Vulnerabilities that will be fixed

With an upgrade:
Severity Priority Score (*) Issue Breaking Change Exploit Maturity
high severity 768/1000
Why? Proof of Concept exploit, Recently disclosed, Has a fix available, CVSS 7.5
Regular Expression Denial of Service (ReDoS)
SNYK-JS-ANSIREGEX-1583908
No Proof of Concept

(*) Note that the real score may have changed since the PR was raised.

Commit messages
Package name: generator-license The new version differs by 9 commits.
  • 353820c 5.2.0
  • 61bee83 Update to yeoman-generator 2.0 + latest generator scaffolding (prettier & cie)
  • ca1494b Update jest to version 19.0.1 ๐Ÿš€ (#67)
  • 83679de chore(package): update yeoman-assert to version 3.0.0 (#63)
  • dd9ce93 add a link to Creative Commons generator (self-plug ;) (#62)
  • d1ef27b add GNU LGPL-3.0 License (#61)
  • 38bc9eb Eslint and nsp (#58)
  • 8de2d27 Update Travis test matrix
  • e2473fb Run test with jest and send coverage results to coveralls
See the full diff
Package name: generator-node The new version differs by 13 commits.
  • ddd83c8 v2.4.0
  • d6ad8eb Update Yarn lockfile
  • c7c85e3 Update dependencies (#278)
  • 129c233 Add support for scoped package (Fix #272) (#275)
  • fd50d93 Setup coverage output in the terminal
  • 4fec892 Replace deprecated prepublish by prepublishOnly (#271)
  • 32f1c96 Correct opencollective badge
  • 80e7e9c Update README.md (#270)
  • e1260dc Bump dependencies
  • a791156 Update the generator/git to ES6 Class (#269)
  • ad88f00 Bump dependencies
  • ad67e66 2.3.0
  • 5c4e722 [Feature] Adding Pre-commit hook and Prettier (#267)
See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: ๐Ÿง View latest project report

๐Ÿ›  Adjust project settings

๐Ÿ“š Read more about Snyk's upgrade and patch logic