Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

[Snyk] Upgrade nodemon from 2.0.4 to 2.0.22 #13

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

Brayan-724
Copy link
Owner

snyk-top-banner

Snyk has created this PR to upgrade nodemon from 2.0.4 to 2.0.22.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 28 versions ahead of your current version.

  • The recommended version was released on 2 years ago.

Issues fixed by the recommended upgrade:

Issue Score Exploit Maturity
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-ANSIREGEX-1583908
696 Proof of Concept
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-ANSIREGEX-1583908
696 Proof of Concept
high severity Uncontrolled resource consumption
SNYK-JS-BRACES-6838727
696 Proof of Concept
high severity Prototype Pollution
SNYK-JS-INI-1048974
696 Proof of Concept
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-NORMALIZEURL-1296539
696 No Known Exploit
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-GLOBPARENT-1016905
696 Proof of Concept
medium severity Open Redirect
SNYK-JS-GOT-2932019
696 No Known Exploit
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-HTTPCACHESEMANTICS-3248783
696 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-MINIMATCH-3050818
696 No Known Exploit
low severity Prototype Pollution
SNYK-JS-MINIMIST-2429795
696 Proof of Concept
Release notes
Package name: nodemon
  • 2.0.22 - 2023-03-22

    2.0.22 (2023-03-22)

    Bug Fixes

    • remove ts mapping if loader present (f7816e4), closes #2083
  • 2.0.21 - 2023-03-02

    2.0.21 (2023-03-02)

    Bug Fixes

    • remove ts mapping if loader present (1468397), closes #2083
  • 2.0.20 - 2022-09-16

    2.0.20 (2022-09-16)

    Bug Fixes

    • remove postinstall script (e099e91)
  • 2.0.19 - 2022-07-05

    2.0.19 (2022-07-05)

    Bug Fixes

  • 2.0.18 - 2022-06-23

    2.0.18 (2022-06-23)

    Bug Fixes

    • revert update-notifier forcing esm (1b3bc8c)
  • 2.0.17 - 2022-06-23

    2.0.17 (2022-06-23)

    Bug Fixes

  • 2.0.16 - 2022-04-29

    2.0.16 (2022-04-29)

    Bug Fixes

    • support windows by using path.delimiter (e26aaa9)
  • 2.0.15 - 2021-11-09

    2.0.15 (2021-11-09)

    Bug Fixes

  • 2.0.14 - 2021-10-19

    2.0.14 (2021-10-19)

    Bug Fixes

  • 2.0.14-alpha.1 - 2021-10-18
  • 2.0.13 - 2021-09-23

    2.0.13 (2021-09-23)

    Bug Fixes

  • 2.0.13-alpha.1 - 2021-07-27
  • 2.0.12 - 2021-07-10
  • 2.0.12-alpha.3 - 2021-07-10
  • 2.0.12-alpha.2 - 2021-07-10
  • 2.0.12-alpha.1 - 2021-07-10
  • 2.0.11 - 2021-07-09
  • 2.0.11-alpha.1 - 2021-07-09
  • 2.0.10 - 2021-07-08
  • 2.0.10-alpha.2 - 2021-07-07
  • 2.0.10-alpha.1 - 2021-07-02
  • 2.0.9 - 2021-06-30
  • 2.0.8 - 2021-06-29
  • 2.0.8-alpha.a - 2021-05-05
  • 2.0.8-alpha.1 - 2021-06-30
  • 2.0.7 - 2021-01-06
  • 2.0.6 - 2020-10-19
  • 2.0.5 - 2020-10-13
  • 2.0.4 - 2020-05-14
from nodemon GitHub release notes

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

Snyk has created this PR to upgrade nodemon from 2.0.4 to 2.0.22.

See this package in npm:
nodemon

See this project in Snyk:
https://app.snyk.io/org/brayan-724/project/446e4a8c-54d7-427d-82da-104d1d05f383?utm_source=github&utm_medium=referral&page=upgrade-pr
# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
2 participants