knopkem / dicomweb-proxy

A proxy to translate between dicomweb and traditional dicom dimse services (PACS communication)
Other
71 stars 20 forks source link

[Snyk] Security upgrade fastify from 4.5.3 to 4.8.1 #103

Closed snyk-bot closed 1 year ago

snyk-bot commented 1 year ago

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

merge advice

Changes included in this PR

Vulnerabilities that will be fixed

With an upgrade:
Severity Priority Score (*) Issue Breaking Change Exploit Maturity
high severity 661/1000
Why? Recently disclosed, Has a fix available, CVSS 7.5
Denial of Service (DoS)
SNYK-JS-FASTIFY-3042394
No No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Commit messages
Package name: fastify The new version differs by 61 commits.
  • 6b2aff6 Bumped v4.8.1
  • fbb07e8 Merge pull request from GHSA-455w-c45v-86rg
  • 5053ad9 Bumped v4.8.0
  • 2df8712 feat: support async constraint (#4323)
  • 6511ef4 Export error codes (#4266)
  • da7471f docs: update onRoute hook docs (#4322)
  • 62d2c94 docs: add test examples with undici and fetch (#4300)
  • a4bb8ad Correct github url for fastify-qs package (#4321)
  • 2394f76 Bumped v4.7.0
  • 3dd23fe build(deps): bump tiny-lru from 8.0.2 to 9.0.2 (#4305)
  • aacd099 fix: Fix typo in docs/Reference/Type-Providers.md (#4312)
  • c5974bd Add fastify-s3-buckets to the ecosystem (#4311)
  • 7ffefaf feat: add routeSchema and routeConfig + switching context handling (#4216)
  • ca1aa69 test: add number coersion related tests (#4297)
  • c849d6c docs(contributing): clarify teams for joiners (#4303)
  • 9afd588 docs(type-providers): replace FastifyLoggerInstance with FastifyBaseLogger (#4304)
  • 450416e chore: fix typo in the comment (#4301)
  • 2c97c4c feat: parse request body for http SEARCH requests (#4298)
  • 8e985b4 fix: custom validator should not mutate headers schema (#4295)
  • 1c49f34 chore: add slow down plugin to comunity plugins (#4292)
  • 2797ccd docs(ecosystem): capitalization fixes (#4294)
  • 7ea423f docs(ecosystem): Add `@ fastify/one-line-logger` (#4293)
  • 21eb6cf chore: Lint eco system error (#4275)
  • d1a3845 docs: onRoute hooks in plugins (#4285)
See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: šŸ§ View latest project report

šŸ›  Adjust project settings

šŸ“š Read more about Snyk's upgrade and patch logic


Learn how to fix vulnerabilities with free interactive lessons:

šŸ¦‰ Learn about vulnerability in an interactive lesson of Snyk Learn.