Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

[Snyk] Upgrade tern from 0.20.0 to 0.24.3 #1

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

snyk-bot
Copy link

@snyk-bot snyk-bot commented Oct 8, 2021

Snyk has created this PR to upgrade tern from 0.20.0 to 0.24.3.

merge advice
ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 10 versions ahead of your current version.
  • The recommended version was released 2 years ago, on 2019-12-27.

The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Regular Expression Denial of Service (ReDoS)
npm:minimatch:20160620
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Regular Expression Denial of Service (ReDoS)
SNYK-JS-MINIMATCH-1019388
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Regular Expression Denial of Service (ReDoS)
npm:minimatch:20160620
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit
Regular Expression Denial of Service (ReDoS)
SNYK-JS-MINIMATCH-1019388
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: tern
  • 0.24.3 - 2019-12-27

    Mark version 0.24.3

  • 0.24.2 - 2019-10-13

    Mark version 0.24.2

  • 0.24.1 - 2019-07-10

    Mark version 0.24.1

  • 0.24.0 - 2019-05-31

    Mark version 0.24.0

  • 0.23.0 - 2018-11-10

    Mark version 0.23.0

  • 0.22.3 - 2018-09-27

    Mark version 0.22.3

  • 0.22.2 - 2018-09-13

    Mark version 0.22.2

  • 0.22.1 - 2018-09-12

    Mark version 0.22.1

  • 0.22.0 - 2018-08-28
    • Support async functions and async iteration.
    • Make the base type definitions match the current standards.
    • Make sure dynamic properties don't show up when completing object literal property names.
    • Pre-emptively start analyzing on startup.
    • Fix bug where renaming a variable might rename properties in the code.
  • 0.21.0 - 2017-02-18

    Support JSDoc-style object property docs in doc_comments plugin.

    Various fixes and completions in the type definitions.

    Fix bug where server self-resets left old state on AST.

    Improve and document the webpack plugin.

    Fix issue where file offsets were interpreted wrong when the file contained astral plane characters.

  • 0.20.0 - 2016-08-16
from tern GitHub release notes
Commit messages
Package name: tern

Compare


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant