mendix / hybrid-app-base

This repository contains the core files needed to build a Phonegap package for your Mendix application
9 stars 13 forks source link

[Snyk] Upgrade copy-webpack-plugin from 4.3.1 to 4.6.0 #90

Closed snyk-bot closed 2 years ago

snyk-bot commented 2 years ago

Snyk has created this PR to upgrade copy-webpack-plugin from 4.3.1 to 4.6.0.

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Time of Check Time of Use (TOCTOU)
npm:chownr:20180731
220/1000
Why? CVSS 4.4
No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: copy-webpack-plugin from copy-webpack-plugin GitHub release notes
Commit messages
Package name: copy-webpack-plugin
  • 5cf125e chore(release): 4.6.0
  • 78c5d12 fix: handle undefined and null as stats value (#302)
  • 7fe0c06 feat: add support for target path transform (#284)
  • dc7aa5d chore(release): 4.5.4
  • 5670926 fix(processPattern): don't add `'glob'` as directory when it is a file (`contextDependencies`) (#296)
  • 48bc708 chore(release): 4.5.3
  • 5fa69db fix(processPattern): add `glob` directory context to `contextDependencies` (#290)
  • 5474889 docs: context option is a string, not array (#269)
  • 1f92729 chore(release): 4.5.2
  • 3ef5b6c fix: allow square brackets in path (#264)
  • c779a30 docs: clarify `webpack-dev-server` and `write-file-webpack-plugin` (#259)
  • 6205f51 docs: fixed missing commas in code examples (#254)
  • 66813ad docs: update link to `file-loader` (#251)
  • 65314cd docs(README): clarify async usage (`pattern.transform`) (#242)
  • 2a1124d docs(README): correct anchor link (`patterns.toType`) (#241)
  • 63dc9f9 chore(release): 4.5.1
  • 0b288f9 fix(package): update `cacache` v10.0.1...10.0.4 (`dependencies`) (#238)
  • 2be8191 perf(index): switch to `md4` for content hashing (#239)
  • c097601 chore(release): 4.5.0
  • 1861730 feat(processPattern): add support for `{RegExp)` matches (`pattern.test`) (#235)
  • 832f139 chore(release): 4.4.3
  • 522c2b5 chore(package): update `loader-utils` v0.2.15...1.1.0 (#152)
  • 445d548 fix(index): `tapable` deprecation warnings (`webpack >= v4.0.0`) (#234)
  • ee78c06 chore(release): 4.4.2
Compare

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs