dwp / dwp-patterns

DWP pattern library
MIT License
4 stars 3 forks source link

[Snyk] Security upgrade xo from 0.14.0 to 0.32.1 #45

Open snyk-bot opened 3 years ago

snyk-bot commented 3 years ago

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

merge advice

Changes included in this PR

Vulnerabilities that will be fixed

With an upgrade:
Severity Priority Score (*) Issue Breaking Change Exploit Maturity
high severity 661/1000
Why? Recently disclosed, Has a fix available, CVSS 7.5
Denial of Service (DoS)
SNYK-JS-TRIMNEWLINES-1298042
No No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Commit messages
Package name: xo The new version differs by 250 commits.
  • 084e7a3 0.32.1
  • 7d015ac Update devDependency ava from v1.1.0 to v3.9.0 (#490)
  • 744090a Update meow from v5.0.0 to v7.0.1 (#489)
  • 522d264 Test on Node.js 14 (#488)
  • 245f7d3 0.32.0
  • 0dd4a9d Disable some problematic rules
  • d3abdb6 Add more extensions to `import/extensions` rule
  • aa8508b 0.31.0
  • 32d96c3 Upgrade dependencies
  • 1240dd2 Enable `import/no-anonymous-default-export` and `import/no-named-default` (#472)
  • 6a05691 Add support for scoped shareable configs (#480)
  • ca21492 Add some eslint-plugin-node rules
  • bdc13e2 Fix Travis
  • c7d64de 0.30.0
  • ca31f1c Upgrade dependencies
  • 07e2762 Prevent extraneous newline from `--stdin --fix` (#460)
  • a592d3d 0.29.1
  • 4783f26 Add `tap-snapshots/*.cjs` to default ignore list (#461)
  • 967927d Temporarily disable the `unicorn/string-content` rule (#462)
  • 87e3615 0.29.0
  • f59ec7b Update dependencies
  • e05efc3 Upgrade to Prettier 2.0.4 (#458)
  • f20f6d2 Allow `nodeVersion` in XO config to override `engines.node` (#457)
  • ec87ef3 0.28.3
See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: 🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic