topcoder-platform / mfe-core

1 stars 12 forks source link

[Snyk] Upgrade nodemon from 2.0.6 to 2.0.15 #73

Closed jswheeler closed 2 years ago

jswheeler commented 2 years ago

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade nodemon from 2.0.6 to 2.0.15.

![merge advice](https://app.snyk.io/badges/merge-advice/?package_manager=npm&package_name=nodemon&from_version=2.0.6&to_version=2.0.15&pr_id=c4aea7a8-19aa-43e6-afd2-54298af7b5fc&visibility=true&has_feature_flag=false) :information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
- The recommended version is **19 versions** ahead of your current version. - The recommended version was released **6 months ago**, on 2021-11-09. The recommended version fixes: Severity | Issue | PriorityScore (*) | Exploit Maturity | :-------------------------:|:-------------------------|-------------------------|:------------------------- | Regular Expression Denial of Service (ReDoS)
[SNYK-JS-ANSIREGEX-1583908](https://snyk.io/vuln/SNYK-JS-ANSIREGEX-1583908) | **482/1000**
**Why?** Proof of Concept exploit, CVSS 7.5 | Proof of Concept | Regular Expression Denial of Service (ReDoS)
[SNYK-JS-ANSIREGEX-1583908](https://snyk.io/vuln/SNYK-JS-ANSIREGEX-1583908) | **482/1000**
**Why?** Proof of Concept exploit, CVSS 7.5 | Proof of Concept (*) Note that the real score may have changed since the PR was raised.
Release notes
Package name: nodemon
  • 2.0.15 - 2021-11-09

    2.0.15 (2021-11-09)

    Bug Fixes

  • 2.0.14 - 2021-10-19

    2.0.14 (2021-10-19)

    Bug Fixes

  • 2.0.14-alpha.1 - 2021-10-18
  • 2.0.13 - 2021-09-23

    2.0.13 (2021-09-23)

    Bug Fixes

  • 2.0.13-alpha.1 - 2021-07-27
  • 2.0.12 - 2021-07-10

    2.0.12 (2021-07-10)

    Bug Fixes

    • windows: properly handle quoted args in event (0823f18), closes #1823
  • 2.0.12-alpha.3 - 2021-07-10
  • 2.0.12-alpha.2 - 2021-07-10
  • 2.0.12-alpha.1 - 2021-07-10
  • 2.0.11 - 2021-07-09

    2.0.11 (2021-07-09)

    Bug Fixes

    • ensure numerical OS version check (f523d0e)
  • 2.0.11-alpha.1 - 2021-07-09
  • 2.0.10 - 2021-07-08

    2.0.10 (2021-07-08)

    Bug Fixes

    • windows 8 doesn't support windows-kill (6c6cb65), closes #1876
  • 2.0.10-alpha.2 - 2021-07-07
  • 2.0.10-alpha.1 - 2021-07-02
  • 2.0.9 - 2021-06-30

    2.0.9 (2021-06-30)

    Bug Fixes

  • 2.0.8 - 2021-06-29

    2.0.8 (2021-06-29)

    Bug Fixes

  • 2.0.8-alpha.a - 2021-05-05
  • 2.0.8-alpha.1 - 2021-06-30
  • 2.0.7 - 2021-01-06

    2.0.7 (2021-01-06)

    Bug Fixes

      </li>
      <li>
        <b>2.0.6</b> - <a href="https://snyk.io/redirect/github/remy/nodemon/releases/tag/v2.0.6">2020-10-19</a></br><p><a name="user-content-2.0.6"></a></p>

    2.0.6 (2020-10-19)

    Bug Fixes

      </li>
    </ul>
    from <a href="https://snyk.io/redirect/github/remy/nodemon/releases">nodemon GitHub release notes</a>

Commit messages
Package name: nodemon
  • 54784ab fix: bump prod dep versions
  • 26db983 chore: update supporters
  • 61e7abd fix: add windows signals SIGUSR2 & SIGUSR1 to terminate the process (#1938)
  • b449171 docs: Fix typo in faq.md
  • 0a3175f chore: update supporters
  • 18516d8 chore: add supporter
  • b91a61d chore: add releaserc
  • d8c285f chore: set release workflow node version
  • 99e3b32 chore: fix workflow branch
  • 9f82a48 fix: release process on main
  • 90e7a3e fix: bump update-notifier
  • 842c2db chore: supporters
  • a264404 chore: new supporter
  • 793e4ff Merge branch 'main' of github.com:remy/nodemon
  • bb8e0a5 chore: new supporter
  • f32e6ec docs(installation): Minor Improvements
  • a8acae2 chore: add supporter
  • 7393b5a chore: new supporter
  • ea62c2f chore: clean a logo
  • 53da0e2 chore: new supporter
  • 4a3f3cc chore: tweak supporter message
  • 0823f18 fix(windows): properly handle quoted args in event
  • b52fc89 Merge branch 'master' of github.com:remy/nodemon
  • f523d0e fix: ensure numerical OS version check
Compare

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs