newrelic / nr1-account-maturity

NR1 Account Maturity is a quick view to understand if you're using key features of your New Relic account across multiple accounts and multiple applications.
Apache License 2.0
4 stars 12 forks source link

[Snyk] Upgrade snyk from 1.425.4 to 1.445.0 #38

Closed devfreddy closed 3 years ago

devfreddy commented 3 years ago

Snyk has created this PR to upgrade snyk from 1.425.4 to 1.445.0.

merge advice As this is a private repository, Snyk-bot does not have access. Therefore, this PR has been created automatically, but appears to have been created by a real user.
:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Prototype Pollution
SNYK-JS-INI-1048974
472/1000
Why? Proof of Concept exploit, CVSS 7.3
Proof of Concept

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: snyk
  • 1.445.0 - 2021-02-04
  • 1.444.0 - 2021-02-04
  • 1.443.0 - 2021-02-04
  • 1.442.0 - 2021-02-04
  • 1.441.0 - 2021-02-04
  • 1.440.5 - 2021-02-03
  • 1.440.4 - 2021-02-01
  • 1.440.3 - 2021-02-01
  • 1.440.2 - 2021-02-01
  • 1.440.1 - 2021-01-28
  • 1.440.0 - 2021-01-28
  • 1.439.4 - 2021-01-28
  • 1.439.3 - 2021-01-27
  • 1.439.2 - 2021-01-27
  • 1.439.1 - 2021-01-25
  • 1.439.0 - 2021-01-21
  • 1.438.0 - 2021-01-20
  • 1.437.4 - 2021-01-13
  • 1.437.3 - 2020-12-22
  • 1.437.2 - 2020-12-16
  • 1.437.1 - 2020-12-15
  • 1.437.0 - 2020-12-14
  • 1.436.0 - 2020-12-10
  • 1.435.1 - 2020-12-10
  • 1.435.0 - 2020-12-10
  • 1.434.4 - 2020-12-09
  • 1.434.3 - 2020-12-08
  • 1.434.2 - 2020-12-04
  • 1.434.1 - 2020-12-04
  • 1.434.0 - 2020-12-03
  • 1.433.0 - 2020-12-01
  • 1.432.1 - 2020-12-01
  • 1.432.0 - 2020-12-01
  • 1.431.4 - 2020-11-30
  • 1.431.3 - 2020-11-30
  • 1.431.2 - 2020-11-27
  • 1.431.1 - 2020-11-24
  • 1.431.0 - 2020-11-24
  • 1.430.2 - 2020-11-23
  • 1.430.1 - 2020-11-23
  • 1.430.0 - 2020-11-20
  • 1.429.0 - 2020-11-20
  • 1.428.2 - 2020-11-19
  • 1.428.1 - 2020-11-19
  • 1.428.0 - 2020-11-18
  • 1.427.2 - 2020-11-17
  • 1.427.1 - 2020-11-17
  • 1.427.0 - 2020-11-15
  • 1.426.0 - 2020-11-13
  • 1.425.4 - 2020-11-13
from snyk GitHub release notes
Commit messages
Package name: snyk
  • e4c5066 Merge pull request #1617 from snyk/fix/create-shasum-under-binary-releases
  • 706764a fix: generate sha256 correctly
  • acdfbb6 Merge pull request #1616 from snyk/feat/CAP-111-auto-detected-user-instructions
  • 1606fbd Merge pull request #1615 from snyk/revert/fix-git-less-install
  • 79a326b chore: remove prerelease flag for Lerna
  • 3df91ac fix: remove dependency that was using git URL and failing installs
  • 2bdd4f6 Merge pull request #1564 from snyk/feat/mod-cli-init
  • f6b2faf feat: Auto detect user instructions from image
  • abd2b9e chore: add dev-release job to pipeline
  • 6340ee7 feat: experimental standalone protect package
  • 9c7b3df feat: initial modular cli
  • b2500d6 Merge pull request #1612 from snyk/fix/gradle-graceful-resolvable-configs
  • ef81907 fix: gradle graceful resolvable configs
  • 40e7136 Merge pull request #1601 from snyk/feat/iac-experimental-local-exec
  • f8bd3f3 feat: iac experimental single k8s file
  • 7775c04 Merge pull request #1595 from snyk/fix/iac-add-file-path
  • 5d6a548 Merge pull request #1606 from snyk/smoke/debug-docker-bundle-install
  • 9922197 test: cat snyk_latest API call to debug docker bundle install
  • 86f4609 Merge pull request #1600 from snyk/fix/flakey-fn-and-test
  • 2b211b9 fix: use sync fs method to avoid race condition
  • d00c437 Merge pull request #1603 from snyk/fix/more-than-one-line-with-jsondeps
  • a8dea5e fix: more than one line with jsondeps
  • c94a0a4 Merge pull request #1602 from snyk/fix/scanning-lock-due-of-unresolved-dependencies
  • 746251e fix: scanning lock due of unresolved deps
Compare

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs