iotaledger / node-dashboard

Apache License 2.0
44 stars 6 forks source link

[Snyk] Security upgrade eslint from 8.23.1 to 8.26.0 #312

Open rajivshah3 opened 6 months ago

rajivshah3 commented 6 months ago

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

#### Changes included in this PR - Changes to the following files to upgrade the vulnerable dependencies to a fixed version: - package.json - package-lock.json #### Vulnerabilities that will be fixed ##### With an upgrade: Severity | Priority Score (*) | Issue | Breaking Change | Exploit Maturity :-------------------------:|-------------------------|:-------------------------|:-------------------------|:------------------------- ![high severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/h.png "high severity") | **661/1000**
**Why?** Recently disclosed, Has a fix available, CVSS 7.5 | Uncontrolled resource consumption
[SNYK-JS-BRACES-6838727](https://snyk.io/vuln/SNYK-JS-BRACES-6838727) | No | No Known Exploit ![high severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/h.png "high severity") | **661/1000**
**Why?** Recently disclosed, Has a fix available, CVSS 7.5 | Inefficient Regular Expression Complexity
[SNYK-JS-MICROMATCH-6838728](https://snyk.io/vuln/SNYK-JS-MICROMATCH-6838728) | No | No Known Exploit (*) Note that the real score may have changed since the PR was raised.
Commit messages
Package name: eslint The new version differs by 51 commits.
  • 823b018 8.26.0
  • dce6a71 Build: changelog update for 8.26.0
  • 6c2be51 Revert "docs: update header (#16403)" (#16451)
  • df77409 fix: use `baseConfig` constructor option in FlatESLint (#16432)
  • 33668ee fix: Ensure that glob patterns are matched correctly. (#16449)
  • 651649b docs: Core concepts page (#16399)
  • 4715787 feat: check `Object.create()` in getter-return (#16420)
  • e917a9a ci: add node v19 (#16443)
  • 740b208 fix: ignore messages without a `ruleId` in `getRulesMetaForResults` (#16409)
  • 8f9759e fix: `--ignore-pattern` in flat config mode should be relative to `cwd` (#16425)
  • 325ad37 fix: make `getRulesMetaForResults` return a plain object in trivial case (#16438)
  • a2810bc fix: Ensure that directories can be unignored. (#16436)
  • 631cf72 docs: note --ignore-path not supported with flat config (#16434)
  • 1692840 docs: fix syntax in examples for new config files (#16427)
  • 28d1902 feat: `no-implicit-globals` supports `exported` block comment (#16343)
  • 35916ad fix: Ensure unignore and reignore work correctly in flat config. (#16422)
  • 24950b3 docs: update header (#16403)
  • 4b70b91 chore: Add VS Code issues link (#16423)
  • e940be7 feat: Use ESLINT_USE_FLAT_CONFIG environment variable for flat config (#16356)
  • d336cfc docs: Document extending plugin with new config (#16394)
  • dd0c58f feat: Swap out Globby for custom globbing solution. (#16369)
  • 232d291 chore: suppress a Node.js deprecation warning (#16398)
  • 94ba68d 8.25.0
  • c705f22 Build: changelog update for 8.25.0
See the full diff
Check the changes in this PR to ensure they won't cause issues with your project. ------------ **Note:** *You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.* For more information: 🧐 [View latest project report](https://app.snyk.io/org/iota-foundation/project/6a18d27b-9a85-4c75-9dda-e24ebdbf4111?utm_source=github&utm_medium=referral&page=fix-pr) 🛠 [Adjust project settings](https://app.snyk.io/org/iota-foundation/project/6a18d27b-9a85-4c75-9dda-e24ebdbf4111?utm_source=github&utm_medium=referral&page=fix-pr/settings) 📚 [Read more about Snyk's upgrade and patch logic](https://support.snyk.io/hc/en-us/articles/360003891078-Snyk-patches-to-fix-vulnerabilities) [//]: # (snyk:metadata:{"prId":"0e97c1be-b8e6-4178-bbd0-5d496dd6e70c","prPublicId":"0e97c1be-b8e6-4178-bbd0-5d496dd6e70c","dependencies":[{"name":"eslint","from":"8.23.1","to":"8.26.0"}],"packageManager":"npm","projectPublicId":"6a18d27b-9a85-4c75-9dda-e24ebdbf4111","projectUrl":"https://app.snyk.io/org/iota-foundation/project/6a18d27b-9a85-4c75-9dda-e24ebdbf4111?utm_source=github&utm_medium=referral&page=fix-pr","type":"auto","patch":[],"vulns":["SNYK-JS-BRACES-6838727","SNYK-JS-MICROMATCH-6838728"],"upgrade":["SNYK-JS-BRACES-6838727","SNYK-JS-MICROMATCH-6838728"],"isBreakingChange":false,"env":"prod","prType":"fix","templateVariants":["updated-fix-title","priorityScore"],"priorityScoreList":[661,661],"remediationStrategy":"vuln"}) --- **Learn how to fix vulnerabilities with free interactive lessons:** 🦉 [Uncontrolled resource consumption](https://learn.snyk.io/lesson/redos/?loc=fix-pr)