topcoderinc / dsp-frontend

React fronted to drone series
8 stars 23 forks source link

[Snyk] Fix for 1 vulnerabilities #54

Open snyk-bot opened 2 years ago

snyk-bot commented 2 years ago

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

Changes included in this PR

Vulnerabilities that will be fixed

With an upgrade:
Severity Priority Score (*) Issue Breaking Change Exploit Maturity
medium severity 611/1000
Why? Recently disclosed, Has a fix available, CVSS 6.5
Information Exposure
SNYK-JS-NODEFETCH-2342118
Yes No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Commit messages
Package name: react-redux-toastr The new version differs by 24 commits.
  • 2a14a2f add toastr options, position and attention
  • 962ee6a refactor toastr with to fit small devices
  • 827314b refactor binding function
  • b55f920 add active style on the confirm buttons
  • b885e45 change toastr space
  • ca399a8 refactor unused styles
  • 8bb9cb1 remove the fbjs as dependence
  • 1bab669 Merge pull request #114 from jalkoby/fix-confirm-box-with-global-confirm-options
  • d52aef5 fix confirm dialog close when global confirm options provided
  • 33965eb update development and packages
  • 2f0a3d0 Merge pull request #113 from claydiffrient/master
  • 6436bfa Merge pull request #112 from anewcomer/master
  • dcfccf7 Add aria-live and role to toastr container
  • eb91010 Export unwrapped ReduxToastr
  • 193991c update build
  • 0ac650e update image path
  • 7800f3e remove old code
  • e79ef61 update demo site
  • fee74cb add info on the readme
  • b108776 add custom id
  • 90bb4e4 Merge pull request #110 from Mordred/feature/remove-on-hover-time
  • 50ab601 Merge pull request #111 from Mordred/feature/remove-toast
  • 040f6d6 feat(id): Allow to pass own toast ID
  • 5746765 feat(removeOnHover): Allow to change removeOnHover interval
See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: 🧐 View latest project report

πŸ›  Adjust project settings

πŸ“š Read more about Snyk's upgrade and patch logic