lwojcik / eleventy-template-bliss

Single-column blog template for Eleventy focused on simplicity without sacrificing functionality
https://eleventy-bliss.lkmt.us/
MIT License
84 stars 19 forks source link

[Snyk] Upgrade sharp from 0.32.5 to 0.33.2 #105

Closed lwojcik closed 6 months ago

lwojcik commented 6 months ago

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade sharp from 0.32.5 to 0.33.2.

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
- The recommended version is **18 versions** ahead of your current version. - The recommended version was released **2 months ago**, on 2024-01-12. The recommended version fixes: Severity | Issue | PriorityScore (*) | Exploit Maturity | :-------------------------:|:-------------------------|-------------------------|:------------------------- | Heap-based Buffer Overflow
[SNYK-JS-SHARP-5922108](https://snyk.io/vuln/SNYK-JS-SHARP-5922108) | **909/1000**
**Why?** Mature exploit, Has a fix available, CVSS 9.6 | Mature (*) Note that the real score may have changed since the PR was raised.
Release notes
Package name: sharp
  • 0.33.2 - 2024-01-12
    No content.
  • 0.33.2-rc.1 - 2024-01-12
    No content.
  • 0.33.2-rc.0 - 2024-01-11
    No content.
  • 0.33.1 - 2023-12-17
    No content.
  • 0.33.1-rc.3 - 2023-12-17
    No content.
  • 0.33.1-rc.2 - 2023-12-17
    No content.
  • 0.33.1-rc.0 - 2023-12-12
    No content.
  • 0.33.0 - 2023-11-29
    No content.
  • 0.33.0-rc.2 - 2023-11-22
    No content.
  • 0.33.0-alpha.11 - 2023-11-10
  • 0.33.0-alpha.10 - 2023-11-04
  • 0.33.0-alpha.9 - 2023-10-13
  • 0.33.0-alpha.8 - 2023-10-10
  • 0.33.0-alpha.7 - 2023-10-10
  • 0.33.0-alpha.6 - 2023-10-09
  • 0.33.0-alpha.4 - 2023-10-06
  • 0.33.0-alpha.3 - 2023-10-06
  • 0.32.6 - 2023-09-18
  • 0.32.5 - 2023-08-15
from sharp GitHub release notes
Commit messages
Package name: sharp
  • bcb22af Release v0.33.2
  • d04dc62 Prerelease v0.33.2-rc.1
  • c30d355 CI: Fix npm smoke test expectation
  • 49cb148 Prerelease v0.33.2-rc.0
  • 3bc31a8 CI: Verify emscripten versions match
  • c28523e CI: Update Emscripten Docker image to 3.1.51 (#3907)
  • 278f393 Upgrade to libvips v8.15.1
  • cbf68c1 Improve error for unsupported multi-page rotation #3940
  • 45e8071 Add runtime check for outdated Node.js version
  • b96389d Docs: refresh index
  • a77ac6a Docs: correct semver for supported Node.js versions (#3937)
  • 9bcf399 Ensure extend op stays sequential when copying px #3928
  • 4aacee8 Docs: include img-scoped packages in electron asarUnpack
  • 0b18aef CI: Remove use of nodesource repos
  • bed1c2a Bump deps
  • 8cd8326 Docs: add electron to bundlers section
  • 0499f59 Docs: add minimum dep versions to build from source
  • 1fa59bf Remove any suggestion to --force install
  • db40ee6 Docs: add note about Lambda lacking symlink support
  • 02b98b8 Issue template: ask for complete error message
  • 31fef21 Docs: changelog entry for #3914
  • 77ab5d7 TypeScript: add definition for keepMetadata (#3914)
  • cd5cf7c Docs: direct cross-platform Lambda users to relevant section
  • 39cb9d9 Issue template: yarn pnp is now supported
Compare

**Note:** *You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.* For more information: 🧐 [View latest project report](https://app.snyk.io/org/lukemnet/project/fa248137-3edf-48f6-b4fe-8ed0d13341e3?utm_source=github&utm_medium=referral&page=upgrade-pr) πŸ›  [Adjust upgrade PR settings](https://app.snyk.io/org/lukemnet/project/fa248137-3edf-48f6-b4fe-8ed0d13341e3/settings/integration?utm_source=github&utm_medium=referral&page=upgrade-pr) πŸ”• [Ignore this dependency or unsubscribe from future upgrade PRs](https://app.snyk.io/org/lukemnet/project/fa248137-3edf-48f6-b4fe-8ed0d13341e3/settings/integration?pkg=sharp&utm_source=github&utm_medium=referral&page=upgrade-pr#auto-dep-upgrades)
vercel[bot] commented 6 months ago

The latest updates on your projects. Learn more about Vercel for Git β†—οΈŽ

Name Status Preview Updated (UTC)
eleventy-bliss ❌ Failed (Inspect) Mar 3, 2024 1:17am