hellomouse / GNS

GitHub Notification Service For IRC
MIT License
6 stars 3 forks source link

[Snyk] Security upgrade terser-webpack-plugin from 2.3.5 to 2.3.6 #955

Closed snyk-bot closed 3 years ago

snyk-bot commented 4 years ago

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

Changes included in this PR

Vulnerabilities that will be fixed

With an upgrade:
Severity Issue Breaking Change Exploit Maturity
high severity Arbitrary Code Injection
SNYK-JS-SERIALIZEJAVASCRIPT-570062
No Proof of Concept
Commit messages
Package name: terser-webpack-plugin The new version differs by 3 commits.
  • 171819e chore(release): 2.3.6
  • d3f0c81 fix: preserve `@license` comments starting with `//`
  • 7105dc3 ci: migrate on github actions
See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: 🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic