newrelic / nr1-account-maturity

NR1 Account Maturity is a quick view to understand if you're using key features of your New Relic account across multiple accounts and multiple applications.
Apache License 2.0
4 stars 12 forks source link

[Snyk] Security upgrade snyk from 1.465.0 to 1.654.0 #57

Closed nr-security-github closed 1 year ago

nr-security-github commented 2 years ago

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

merge advice

Changes included in this PR

Vulnerabilities that will be fixed

With an upgrade:
Severity Priority Score (*) Issue Breaking Change Exploit Maturity
medium severity 556/1000
Why? Recently disclosed, Has a fix available, CVSS 5.4
Open Redirect
SNYK-JS-GOT-2932019
No No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Commit messages
Package name: snyk The new version differs by 250 commits.
  • 9ef2a0b Merge pull request #2072 from snyk/fix/upgrade-docker-pull-fix
  • eecaf6e fix: upgrade docker plugin with lib pull bug fix
  • 5150231 Merge pull request #2057 from snyk/test/ignore-warnings
  • cd8a590 Merge pull request #2048 from snyk/chore/update-format-script
  • 4f67fbe Merge pull request #2068 from snyk/fix/update-new-version-snyk-python-plugin
  • 57bc7a8 fix: update of new version of snyk python plugin
  • 3bcd5f6 Merge pull request #2053 from snyk/test/add-github-action-test
  • 0b6ed39 test: validate github action locally for iac
  • 9d27296 Merge pull request #2065 from snyk/feat/snyk-fix-analytics
  • 546ed79 test: ensure analytics called for all snyk fix props
  • 6fa4826 Merge pull request #2019 from snyk/feat/limit-sast-test-usage
  • cc1835c refactor: fix api token import.
  • 9cb1bc1 test: properly check for rejects or hasAssertions
  • 829237d refactor: fix sast api response types
  • 9f562cb feat: track, check and enforce test limit for snyk code in cli
  • 54bcc57 chore: use same linting glob for formatting
  • 5411c8e feat: send `snyk fix` specific analytics
  • d346d89 Merge pull request #2063 from snyk/feat/snyk-fix-meta
  • f857d9a feat: send back meta on fixed, failed & total issues
  • 5e689c9 Merge pull request #2062 from snyk/feat/release-snyk-fix
  • 8768c2e feat: release @ snyk/fix with improved output
  • 659d7e1 Merge pull request #2052 from snyk/fix/iac-github-action
  • bf0738e Merge pull request #2059 from snyk/feat/hide-non-vulnerable
  • 09d5388 fix: absolute path provided
See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: 🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic


Learn how to fix vulnerabilities with free interactive lessons:

🦉 Open Redirect