This PR was automatically created by Snyk using the credentials of a real user.
Snyk has created this PR to upgrade multiple dependencies.
👯♂ The following dependencies are linked and will therefore be updated together.
:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
Name | Versions | Released on
:-------------|:-------------|:-------------
**@babel/core**from 7.4.5 to 7.19.3 | **83 versions** ahead of your current version | **a month ago**on 2022-09-27
**@babel/preset-env**from 7.4.5 to 7.19.4 | **75 versions** ahead of your current version | **21 days ago**on 2022-10-10
**@babel/preset-react**from 7.0.0 to 7.18.6 | **23 versions** ahead of your current version | **4 months ago**on 2022-06-27
The recommended version fixes:
Severity | Issue | PriorityScore (*) | Exploit Maturity |
:-------------------------:|:-------------------------|-------------------------|:-------------------------
| Regular Expression Denial of Service (ReDoS) [SNYK-JS-PATHPARSE-1077067](https://snyk.io/vuln/SNYK-JS-PATHPARSE-1077067) | **372/1000** **Why?** Proof of Concept exploit, CVSS 5.3 | Proof of Concept
| Regular Expression Denial of Service (ReDoS) [SNYK-JS-BROWSERSLIST-1090194](https://snyk.io/vuln/SNYK-JS-BROWSERSLIST-1090194) | **372/1000** **Why?** Proof of Concept exploit, CVSS 5.3 | Proof of Concept
(*) Note that the real score may have changed since the PR was raised.
Release notes Package name: @babel/core
from @babel/preset-react GitHub release notes
**Note:** *You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.*
For more information:
🧐 [View latest project report](https://app.snyk.io/org/jeremy-donson/project/e282be0b-eaae-4798-8b0a-6e0d719bee92?utm_source=github&utm_medium=referral&page=upgrade-pr)
🛠 [Adjust upgrade PR settings](https://app.snyk.io/org/jeremy-donson/project/e282be0b-eaae-4798-8b0a-6e0d719bee92/settings/integration?utm_source=github&utm_medium=referral&page=upgrade-pr)
🔕 [Ignore this dependency or unsubscribe from future upgrade PRs](https://app.snyk.io/org/jeremy-donson/project/e282be0b-eaae-4798-8b0a-6e0d719bee92/settings/integration?pkg=@babel/core&pkg=@babel/preset-env&pkg=@babel/preset-react&utm_source=github&utm_medium=referral&page=upgrade-pr#auto-dep-upgrades)
This PR was automatically created by Snyk using the credentials of a real user.
Snyk has created this PR to upgrade multiple dependencies.
👯♂ The following dependencies are linked and will therefore be updated together. :information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project. Name | Versions | Released on :-------------|:-------------|:------------- **@babel/core**from 7.4.5 to 7.19.3 | **83 versions** ahead of your current version | **a month ago**on 2022-09-27 **@babel/preset-env**from 7.4.5 to 7.19.4 | **75 versions** ahead of your current version | **21 days ago**on 2022-10-10 **@babel/preset-react**from 7.0.0 to 7.18.6 | **23 versions** ahead of your current version | **4 months ago**on 2022-06-27 The recommended version fixes: Severity | Issue | PriorityScore (*) | Exploit Maturity | :-------------------------:|:-------------------------|-------------------------|:------------------------- | Regular Expression Denial of Service (ReDoS)[SNYK-JS-PATHPARSE-1077067](https://snyk.io/vuln/SNYK-JS-PATHPARSE-1077067) | **372/1000**
**Why?** Proof of Concept exploit, CVSS 5.3 | Proof of Concept | Regular Expression Denial of Service (ReDoS)
[SNYK-JS-BROWSERSLIST-1090194](https://snyk.io/vuln/SNYK-JS-BROWSERSLIST-1090194) | **372/1000**
**Why?** Proof of Concept exploit, CVSS 5.3 | Proof of Concept (*) Note that the real score may have changed since the PR was raised.
Release notes
Package name: @babel/core
v7.19.3 (2022-09-27)
babel-plugin-proposal-decorators
babel-parser
JSXText
followingJSXSpreadChild
(@ liuxingbaoyu)declare module
s (@ liuxingbaoyu)import =
andvar
(@ liuxingbaoyu)babel-generator
babel-cli
@ babel/cli
source maps based on configuration files (@ liuxingbaoyu)babel-plugin-transform-typescript
declare
(@ liuxingbaoyu)babel-core
babel-helper-compilation-targets
,babel-helper-transform-fixture-test-runner
,babel-parser
,babel-preset-env
,babel-traverse
c8
for coverage testing (@ liuxingbaoyu)babel-plugin-transform-typescript
declare namespace
(@ liuxingbaoyu)Committers: 4
v7.19.1 (2022-09-14)
Thanks @ hegemonic for your first PR!
babel-core
babel-traverse
babel-parser
babel-plugin-transform-typescript
Committers: 5
v7.19.0 (2022-09-05)
Blog post: https://babeljs.io/blog/2022/09/05/7.19.0
Thanks @ SukkaW for your first PR!
babel-parser
babel-helpers
,babel-plugin-proposal-async-generator-functions
,babel-preset-env
,babel-runtime-corejs2
,babel-runtime-corejs3
,babel-runtime
babel-generator
,babel-helpers
,babel-parser
,babel-plugin-proposal-decorators
,babel-plugin-syntax-decorators
,babel-runtime-corejs2
,babel-runtime-corejs3
,babel-runtime
babel-parser
decoratorsBeforeExport
default tofalse
(@ nicolo-ribaudo)babel-generator
,babel-parser
babel-standalone
babel-helper-create-regexp-features-plugin
,babel-helpers
,babel-plugin-proposal-duplicate-named-capturing-groups-regex
,babel-plugin-transform-named-capturing-groups-regex
,babel-standalone
babel-helper-function-name
,babel-helper-wrap-function
,babel-plugin-transform-classes
babel-plugin-transform-typescript
#privateField!
(@ liuxingbaoyu)babel-parser
a<b>>>c
asa<(b>>>c)
(@ JLHwung)babel-helper-builder-react-jsx
babel-core
@ babel/core
functions in config errors (@ nicolo-ribaudo)babel-standalone
babel-core
,babel-parser
,babel-traverse
Committers: 6
v7.18.13 (2022-08-22)
Thanks @ djpohly for your first PR!
babel-generator
retainLines
(@ liuxingbaoyu)babel-core
@ babel/core
(@ JLHwung)babel-plugin-transform-destructuring
for
expressions (@ liuxingbaoyu)babel-traverse
path.remove()
removeIfStatement.alternate
(@ djpohly)Committers: 5
Package name: @babel/preset-env
v7.19.3 (2022-09-27)
babel-plugin-proposal-decorators
babel-parser
JSXText
followingJSXSpreadChild
(@ liuxingbaoyu)declare module
s (@ liuxingbaoyu)import =
andvar
(@ liuxingbaoyu)babel-generator
babel-cli
@ babel/cli
source maps based on configuration files (@ liuxingbaoyu)babel-plugin-transform-typescript
declare
(@ liuxingbaoyu)babel-core
babel-helper-compilation-targets
,babel-helper-transform-fixture-test-runner
,babel-parser
,babel-preset-env
,babel-traverse
c8
for coverage testing (@ liuxingbaoyu)babel-plugin-transform-typescript
declare namespace
(@ liuxingbaoyu)Committers: 4
Package name: @babel/preset-react
**Note:** *You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.* For more information: 🧐 [View latest project report](https://app.snyk.io/org/jeremy-donson/project/e282be0b-eaae-4798-8b0a-6e0d719bee92?utm_source=github&utm_medium=referral&page=upgrade-pr) 🛠 [Adjust upgrade PR settings](https://app.snyk.io/org/jeremy-donson/project/e282be0b-eaae-4798-8b0a-6e0d719bee92/settings/integration?utm_source=github&utm_medium=referral&page=upgrade-pr) 🔕 [Ignore this dependency or unsubscribe from future upgrade PRs](https://app.snyk.io/org/jeremy-donson/project/e282be0b-eaae-4798-8b0a-6e0d719bee92/settings/integration?pkg=@babel/core&pkg=@babel/preset-env&pkg=@babel/preset-react&utm_source=github&utm_medium=referral&page=upgrade-pr#auto-dep-upgrades)