ericblade / quagga2-reader-qr

Quagga2 sample external reader for QR codes
32 stars 10 forks source link

[Snyk] Upgrade react-scripts from 4.0.0 to 4.0.1 #79

Closed snyk-bot closed 3 years ago

snyk-bot commented 3 years ago

Snyk has created this PR to upgrade react-scripts from 4.0.0 to 4.0.1.

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Prototype Pollution
SNYK-JS-Y18N-1021887
472/1000
Why? Proof of Concept exploit, CVSS 7.3
Proof of Concept
Command Injection
SNYK-JS-NODENOTIFIER-1035794
472/1000
Why? Proof of Concept exploit, CVSS 7.3
No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: react-scripts from react-scripts GitHub release notes
Commit messages
Package name: react-scripts
  • de8b2b3 Publish
  • 98a886d Prepare 4.0.1 release
  • 90a0898 Prepare 4.0.1 release
  • 8bf050a replace inquirer with prompts (#10083)
  • 8f03b91 Create FUNDING.yml
  • 5867170 Increase Workbox's maximumFileSizeToCacheInBytes (#10048)
  • aafe8af docs: add React Testing Library as a library requiring jsdom (#10052)
  • 4e97dc7 Remove trailing space in reportWebVitals.ts (#10040)
  • aec42e2 Add logo license to README
  • 3a98ed1 Fix noFallthroughCasesInSwitch/jsx object is not extensible (#9921)
  • 545d460 Fix react-jsx error (#9869)
  • 027b03b fix: `React is not defined` compilation error after ejected (#9885)
  • 7e48117 fix: page doesn't get refreshed when FAST_REFRESH=false (#9884)
  • b5fdadd [ImgBot] Optimize images (#9516)
  • c06f16c chore: Update .prettierrc (#9860)
  • ceeb654 fix: slow recompile time (#9911)
Compare

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

๐Ÿง View latest project report

๐Ÿ›  Adjust upgrade PR settings

๐Ÿ”• Ignore this dependency or unsubscribe from future upgrade PRs

rollingversions[bot] commented 3 years ago

There is no change log for this pull request yet.

Create a changelog