mongodb / docs-realm

Realm Database SDK documentation
https://www.mongodb.com/docs/realm/
44 stars 88 forks source link

[Snyk] Upgrade firebase from 10.12.0 to 10.12.1 #3295

Closed admin-token-bot closed 3 months ago

admin-token-bot commented 3 months ago

snyk-top-banner

Snyk has created this PR to upgrade firebase from 10.12.0 to 10.12.1.

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


Issues fixed by the recommended upgrade:

Issue Score Exploit Maturity
high severity Uncontrolled resource consumption
SNYK-JS-BRACES-6838727
425 Proof of Concept
high severity Inefficient Regular Expression Complexity
SNYK-JS-MICROMATCH-6838728
425 No Known Exploit
high severity Path Traversal
SNYK-JS-WEBPACKDEVMIDDLEWARE-6476555
425 Proof of Concept
medium severity Improper Control of Dynamically-Managed Code Resources
SNYK-JS-EJS-6689533
425 No Known Exploit
medium severity Open Redirect
SNYK-JS-EXPRESS-6474509
425 No Known Exploit
medium severity Information Exposure
SNYK-JS-FOLLOWREDIRECTS-6444610
425 Proof of Concept
Release notes
Package name: firebase
  • 10.12.1 - 2024-05-20

    For more detailed release notes, see Firebase JavaScript SDK Release Notes.

    What's Changed

    @ firebase/analytics@0.10.4

    Patch Changes

    • f66769cca #8243 (fixes #8210) - Analytics - fixed an issue where setConsent was clobbering the consentSettings before passing them to the gtag implementation.

    @ firebase/analytics-compat@0.2.10

    Patch Changes

    • Updated dependencies [f66769cca]:
    • @ firebase/analytics@0.10.4

    @ firebase/app@0.10.4

    Patch Changes

    • Update SDK_VERSION.

    @ firebase/app-compat@0.2.34

    Patch Changes

    • Updated dependencies []:
    • @ firebase/app@0.10.4

    firebase@10.12.1

    Patch Changes

    • 2ce95696f #8247 - Fix multi-tab persistence raising empty snapshot issue

    • Updated dependencies [f66769cca, 2ce95696f]:

    • @ firebase/app@0.10.4

    • @ firebase/analytics@0.10.4

    • @ firebase/firestore@4.6.3

    • @ firebase/app-compat@0.2.34

    • @ firebase/analytics-compat@0.2.10

    • @ firebase/firestore-compat@0.3.32

    @ firebase/firestore@4.6.3

    Patch Changes

    • 2ce95696f #8247 - Fix multi-tab persistence raising empty snapshot issue

    @ firebase/firestore-compat@0.3.32

    Patch Changes

    • Updated dependencies [2ce95696f]:
    • @ firebase/firestore@4.6.3
  • 10.12.1-canary.aa060a7f6 - 2024-05-22
  • 10.12.1-canary.7381f21a3 - 2024-05-20
  • 10.12.1-canary.52d626655 - 2024-05-23
  • 10.12.1-canary.4f157b486 - 2024-05-23
  • 10.12.1-canary.3883133c3 - 2024-05-21
  • 10.12.1-canary.370b6c8b7 - 2024-05-23
  • 10.12.1-canary.0af23e02e - 2024-05-23
  • 10.12.1-20240520195236 - 2024-05-20
  • 10.12.0 - 2024-05-13
from firebase GitHub release notes

[!IMPORTANT]

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

docs-builder-bot commented 3 months ago

✨ Staging URL: https://docs-atlas-staging.mongodb.com/realm/docsworker-xlarge/snyk-upgrade-1a71ad0f06d42dd5eaa721ec6e820906/

🪵 Logs