jsdevtools / apollo-client-jsdevtools

0 stars 0 forks source link

[Snyk] Fix for 1 vulnerabilities #81

Open snyk-bot opened 2 years ago

snyk-bot commented 2 years ago

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

Changes included in this PR

Vulnerabilities that will be fixed

With an upgrade:
Severity Priority Score (*) Issue Breaking Change Exploit Maturity
medium severity 611/1000
Why? Recently disclosed, Has a fix available, CVSS 6.5
Information Exposure
SNYK-JS-NODEFETCH-2342118
No No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Commit messages
Package name: @reach/router The new version differs by 62 commits.
  • 1f26ef0 useRouteMatch => useMatch, add null context warnings (#347)
  • 99576e7 1.3.0
  • 56d4dca Add Hooks APIs (#346)
  • 15298df fix createNamedContext (#305)
  • 95a8aa5 Bump react-dom from 16.4.1 to 16.4.2 (#329)
  • 3832202 Bump mixin-deep from 1.3.1 to 1.3.2 in /website (#330)
  • 2dd1c31 Bump lodash from 4.17.10 to 4.17.15 in /website (#331)
  • 0908a5f Merge pull request #334 from reach/1.3.0-beta.1
  • 31c07a3 update snapshots
  • 6f82408 bump to 1.3 in docs
  • edea55d remove group role from focus wrapper
  • 234523a Fix failing unit tests (#333)
  • 11e9ed6 Fix/active routes push new state to history (#302)
  • 0d38c82 Fix the getProps example (#306)
  • ccfc3c8 Support for named trailing wildcard (#323)
  • 0b4d21b Update accessibility.md (#317)
  • 3154b75 Merge pull request #319 from stof/upgrade_create_react_context
  • ad52cd3 Upgrade create-react-context to 0.3.0
  • 28a79e7 Add `?` to location.search in memory history
  • f045ba8 Failing test for memory history location.search
  • 0a8af93 Don’t copy everything from history.location
  • 77fa233 Add displayName to Link
  • 64a24e8 Add server configuration guide
  • 2cc803d 1.3.0-beta.0
See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: 🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic