Closed lukeswitz closed 3 years ago
:sparkles: Snyk has automatically assigned this pull request, set who gets assigned.
(*) Note that the real score may have changed since the PR was raised.
Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.
:sparkles: Snyk has automatically assigned this pull request, set who gets assigned.
Changes included in this PR
Vulnerabilities that will be fixed
With an upgrade:
Why? Proof of Concept exploit, Recently disclosed, Has a fix available, CVSS 7.5
SNYK-JS-ENGINEIO-1056749
Why? Proof of Concept exploit, Recently disclosed, Has a fix available, CVSS 5.3
SNYK-JS-SOCKETIO-1024859
(*) Note that the real score may have changed since the PR was raised.
Commit messages
Package name: socket.io
The new version differs by 57 commits.Check the changes in this PR to ensure they won't cause issues with your project.