fp-rap-build / hap

hap-git-main-familypromiseofspokane.vercel.app
4 stars 5 forks source link

[Snyk] Upgrade smartystreets-javascript-sdk from 1.10.8 to 1.13.3 #518

Closed jfuginay closed 2 years ago

jfuginay commented 2 years ago

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade smartystreets-javascript-sdk from 1.10.8 to 1.13.3.

![merge advice](https://app.snyk.io/badges/merge-advice/?package_manager=npm&package_name=smartystreets-javascript-sdk&from_version=1.10.8&to_version=1.13.3&pr_id=28062d5c-bc1f-4776-ba27-0cf9de82bf3d&visibility=true&has_feature_flag=false) :information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
- The recommended version is **18 versions** ahead of your current version. - The recommended version was released **a month ago**, on 2022-04-25. The recommended version fixes: Severity | Issue | PriorityScore (*) | Exploit Maturity | :-------------------------:|:-------------------------|-------------------------|:------------------------- | Information Exposure
[SNYK-JS-FOLLOWREDIRECTS-2332181](https://snyk.io/vuln/SNYK-JS-FOLLOWREDIRECTS-2332181) | **372/1000**
**Why?** Proof of Concept exploit, CVSS 5.3 | Proof of Concept | Information Exposure
[SNYK-JS-FOLLOWREDIRECTS-2396346](https://snyk.io/vuln/SNYK-JS-FOLLOWREDIRECTS-2396346) | **372/1000**
**Why?** Proof of Concept exploit, CVSS 5.3 | No Known Exploit (*) Note that the real score may have changed since the PR was raised.
Release notes
Package name: smartystreets-javascript-sdk
  • 1.13.3 - 2022-04-25
    No content.
  • 1.13.2 - 2022-04-11
    No content.
  • 1.13.1 - 2022-04-08
    No content.
  • 1.13.0 - 2022-04-07
    No content.
  • 1.12.0 - 2022-03-31
    No content.
  • 1.11.11 - 2022-02-21
    No content.
  • 1.11.10 - 2022-01-18
    No content.
  • 1.11.9 - 2022-01-18
    No content.
  • 1.11.8 - 2022-01-12
    No content.
  • 1.11.7 - 2021-12-20
    No content.
  • 1.11.6 - 2021-12-01
  • 1.11.5 - 2021-12-01
  • 1.11.4 - 2021-11-18
  • 1.11.3 - 2021-10-20
  • 1.11.3-beta.0 - 2021-10-20
  • 1.11.2 - 2021-10-19
  • 1.11.1 - 2021-10-07
  • 1.11.0 - 2021-09-23
  • 1.10.8 - 2021-09-07
from smartystreets-javascript-sdk GitHub release notes
Commit messages
Package name: smartystreets-javascript-sdk
  • 0ce4587 Merge pull request #56 from smarty/cami/unused-dependencies
  • 207ba03 Removes unnecessary make command. dist is no longer generated
  • ae5cf18 Removes chai-as-promised, no longer used. Use different syntax for testing instead
  • e69bd53 Removes promise, no longer used. Use vanilla promise instead
  • 350c853 Removes babel and tinyify, no longer used
  • 473fc16 Removes s3-upload-stream, no longer used
  • 1cad506 Removes browserify, no longer used
  • bb69f08 Removes aws-sdk, no longer used
  • b74b8c1 Removes zlib, no longer used
  • 5b849f8 Merge pull request #55 from smarty/remove-s3
  • 4e87899 removed s3 code
  • 25c805a Merge pull request #54 from smarty/dependabot/npm_and_yarn/minimist-1.2.6
  • e764a0c Bump minimist from 1.2.5 to 1.2.6
  • afd3b91 Merge pull request #53 from smarty/cami/axios-proxy-fix-replacement
  • 1b316de Adds typescript definition for protocol
  • d5cb0b8 Adds ability to specify protocol (http or https)
  • 86e034d Installs axios to replace axios-proxy-fix
  • 3c0decb Merge pull request #52 from smarty/cami/international-autocomplete-max-results
  • b0dda11 Test passes with max_results
  • b4117c6 Adds max_results to the international autocomplete Client
  • 1f90ac9 Adds max_results as param in international autocomplete Lookup
  • edb5a7f Merge pull request #51 from smarty/cami/dependencies
  • 3cc1ee5 Updates mocha, removes audit vulnerabilities
  • b7ddf01 Merge pull request #50 from smarty/dependabot/npm_and_yarn/follow-redirects-1.14.8
Compare

**Note:** *You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.* For more information: 🧐 [View latest project report](https://app.snyk.io/org/iesous-kurios/project/435429d7-a084-4483-8870-765f74f61c88?utm_source=github&utm_medium=referral&page=upgrade-pr) 🛠 [Adjust upgrade PR settings](https://app.snyk.io/org/iesous-kurios/project/435429d7-a084-4483-8870-765f74f61c88/settings/integration?utm_source=github&utm_medium=referral&page=upgrade-pr) 🔕 [Ignore this dependency or unsubscribe from future upgrade PRs](https://app.snyk.io/org/iesous-kurios/project/435429d7-a084-4483-8870-765f74f61c88/settings/integration?pkg=smartystreets-javascript-sdk&utm_source=github&utm_medium=referral&page=upgrade-pr#auto-dep-upgrades)
vercel[bot] commented 2 years ago

The latest updates on your projects. Learn more about Vercel for Git ↗︎

Name Status Preview Updated
hap ✅ Ready (Inspect) Visit Preview Jun 3, 2022 at 8:22PM (UTC)
hapdev ✅ Ready (Inspect) Visit Preview Jun 3, 2022 at 8:22PM (UTC)