remy / inliner

Node utility to inline images, CSS and JavaScript for a web page - useful for mobile sites
MIT License
1.1k stars 165 forks source link

[Snyk] Security upgrade update-notifier from 0.5.0 to 2.0.0 #208

Open snyk-bot opened 4 years ago

snyk-bot commented 4 years ago

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

Changes included in this PR

Vulnerabilities that will be fixed

With an upgrade:
Severity Issue Breaking Change Exploit Maturity
medium severity Prototype Pollution
SNYK-JS-MINIMIST-559764
Yes Proof of Concept
Commit messages
Package name: update-notifier The new version differs by 39 commits.
  • d295cf3 2.0.0
  • fda96b6 ES2015ify
  • ac47d69 Improve readme
  • f1de1bf Update dependencies
  • 01fcd25 Bump minimum supported `node` version to `node@4`. (#102)
  • e36671d 1.0.3
  • d66245c Exit process on SIGINT (#98)
  • 384e846 get tests passing on Travis CI with latest xo, etc (#97)
  • b72bf7f 1.0.2
  • c2a9565 Lazy load dependencies (#82)
  • 38aa83a 1.0.1
  • 32b5197 fix opts.defer check (#90)
  • 58ed26e fix XO lint issues
  • bc3ba72 docs: h3 -> h4 for options.boxenOpts (#87)
  • aff41f7 docs: add align: 'center' to default boxenOpts (#86)
  • b7bc767 1.0.0
  • 98aa7bf Add options to customize the notification message (#83)
  • d61bd9b feat: center-align message via boxen@0.6.0 (#84)
  • ff17da4 0.7.0
  • 3cf4614 show message on sigint as well as exit (#75)
  • b1f7dde feat: handle configstore error gracefully (#79)
  • e9d4cab meta tweaks
  • 4896088 0.6.3
  • 8d1d37f remove package.json junk introduced in #73
See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:

🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic