likecoin / puttyimages-web

Website for images adopted Like protocol.
https://dev.puttyimages.com/
GNU General Public License v3.0
18 stars 10 forks source link

[Snyk] Fix for 4 vulnerabilities #239

Open snyk-bot opened 4 years ago

snyk-bot commented 4 years ago

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

Changes included in this PR

Vulnerabilities that will be fixed

With an upgrade:
Severity Issue Breaking Change Exploit Maturity
medium severity Cross-site Scripting (XSS)
SNYK-JS-VUETIFY-474604
Yes No Known Exploit
medium severity Prototype Pollution
SNYK-JS-YARGSPARSER-560381
Yes Proof of Concept
medium severity Prototype Pollution
npm:hoek:20180212
No No Known Exploit
medium severity Denial of Service (DoS)
npm:mem:20180117
Yes No Known Exploit
Commit messages
Package name: node-sass The new version differs by 21 commits.
  • 240e8da 4.9.1
  • cc6ff42 Restore old node to CI
  • ef713a7 Bump request@2.87.0
  • 62fd84a chore: Add info for "Pinned" label
  • d3aebe7 Create CODE_OF_CONDUCT.md
  • 18d198e typo: node-sas -> node-sass
  • 64fdacf chore: Add link to 2355 on PR template
  • 8040cb7 docs: add more 404 binding install info
  • a3ac021 Clean out duplicate ISSUE template
  • e0a92f6 docs: Cleanup issue templates
  • 94ce852 Be even more explicit that Node 10 needs 4.9
  • 91973ed chore: Add compile issue details to bug template
  • e23531d Update issue templates using builder
  • 8878118 docs: Add Feature request issue template
  • 043e2bc docs: Move and update Installation template
  • fece9af docs: Add issue template for compilation results
  • 8268296 doc: New ISSUE Template for Request Security issues
  • 6fef242 Updates README.md with AppVeyor svg badge (#2376)
  • e3ab6e1 Clarify docs for --source-map. Closes #1026.
  • 8c4808a Updated links to absolute path instead of relative (#2371)
  • 26a2032 Add PR Template for Request bumps
See the full diff
Package name: vuetify The new version differs by 250 commits.
  • c0a0d9c chore(release): publish v2.1.9
  • c0a81f1 fix(VMessages): apply escapeHTML to provided values
  • b07efe7 chore(release): publish v2.1.8
  • fb18074 test(VMessages): expand coverage
  • 1279c52 fix(SelectionControls): fix dense styles (#9505)
  • 886c8a3 fix(Typescript): update declaration file (#9320)
  • 2db8cc9 chore(helpers): export lighten/darken functions (#9483)
  • 8e0144c docs: update links for why-vuetify page
  • 1ae752e fix(VIcon): dense font-size selector (#9494)
  • f528f75 docs(scroll): fix usage imports
  • 75696e6 docs(scroll): fix programmatic scrolling
  • c24a824 chore: updated lang files (#9525)
  • 3cb8383 docs: fix broken links, show more logos on home page
  • 6da63a8 docs: add new sponsor
  • d873669 docs: add vueconf to banner
  • baa9ac5 docs: fix github link
  • 7a1c01e chore: only show errors-warnings in build output
  • 4bef588 docs: remove knife
  • 3dc84f0 docs: add probe
  • 66e1855 docs: stabbing in the dark
  • 37e1e32 docs: change process for generating pages
  • c7e9b02 docs: update source navigation for layouts
  • c563c7d docs(DocMarkup): improve dark variant background color
  • acd85fa docs: add dark variant for sponsor
See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: 🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic