Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

[Snyk] Upgrade @vscode/vsce from 2.19.0 to 2.31.1 #45

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

X-oss-byte
Copy link
Owner

snyk-top-banner

Snyk has created this PR to upgrade @vscode/vsce from 2.19.0 to 2.31.1.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 56 versions ahead of your current version.

  • The recommended version was released on a month ago.

Issues fixed by the recommended upgrade:

Issue Score Exploit Maturity
medium severity Missing Release of Resource after Effective Lifetime
SNYK-JS-INFLIGHT-6095116
631 Proof of Concept
Release notes
Package name: @vscode/vsce
  • 2.31.1 - 2024-07-19

    Changes:

    • #1027: Update deprecated dependencies
    • #1025: Don't package default readme if a path is provided and default is ignored
    • #1024: add executes code property

    This list of changes was auto generated.

  • 2.31.1-2 - 2024-07-19

    Changes:

    • #1027: Update deprecated dependencies

    This list of changes was auto generated.

  • 2.31.1-1 - 2024-07-18

    Changes:

    • #1025: Don't package default readme if a path is provided and default is ignored

    This list of changes was auto generated.

  • 2.31.1-0 - 2024-07-18

    Changes:

    • #1024: add executes code property

    This list of changes was auto generated.

  • 2.31.0 - 2024-07-17

    Changes:

    • #1022: Throw error if provided readmePath or provided changelogPath could not be found
    • #1020: Throw when unused files pattern in package.json
    • #1015: Support "ls --tree"

    This list of changes was auto generated.

  • 2.30.1-3 - 2024-07-17

    Changes:

    • #1022: Throw error if provided readmePath or provided changelogPath could not be found

    This list of changes was auto generated.

  • 2.30.1-2 - 2024-07-17

    Changes:

    • #1021: Refactor file inclusion logic

    This list of changes was auto generated.

  • 2.30.1-1 - 2024-07-17

    Changes:

    • #1020: Throw when unused files pattern in package.json

    This list of changes was auto generated.

  • 2.30.1-0 - 2024-07-16

    Changes:

    • #1015: Support "ls --tree"

    This list of changes was auto generated.

  • 2.30.0 - 2024-07-11

    Changes:

    Feature Requests:

    • #1009: Azure - create a custom chained token credential to place the AzureCLICredential prior to the ManagedIdentityCredential

    Others:

    • #1011: Validate publisher on package
    • #1013: Print packaged files/folders

    This list of changes was auto generated.

  • 2.29.1-2 - 2024-07-10
  • 2.29.1-1 - 2024-07-10
  • 2.29.1-0 - 2024-07-03
  • 2.29.0 - 2024-06-20
  • 2.28.1-0 - 2024-06-19
  • 2.28.0 - 2024-06-19
  • 2.27.1-4 - 2024-06-14
  • 2.27.1-3 - 2024-06-14
  • 2.27.1-2 - 2024-06-12
  • 2.27.1-1 - 2024-06-12
  • 2.27.1-0 - 2024-06-07
  • 2.27.0 - 2024-06-04
  • 2.26.2-5 - 2024-06-04
  • 2.26.2-4 - 2024-06-04
  • 2.26.2-3 - 2024-06-03
  • 2.26.2-2 - 2024-06-03
  • 2.26.2-1 - 2024-06-03
  • 2.26.2-0 - 2024-05-22
  • 2.26.1 - 2024-05-03
  • 2.26.1-1 - 2024-05-03
  • 2.26.1-0 - 2024-05-03
  • 2.26.0 - 2024-04-19
  • 2.25.1-5 - 2024-04-19
  • 2.25.1-4 - 2024-04-18
  • 2.25.1-3 - 2024-04-18
  • 2.25.1-2 - 2024-04-18
  • 2.25.1-1 - 2024-04-17
  • 2.25.1-0 - 2024-04-15
  • 2.25.0 - 2024-04-12
  • 2.24.1-5 - 2024-04-12
  • 2.24.1-4 - 2024-04-12
  • 2.24.1-3 - 2024-04-12
  • 2.24.1-2 - 2024-04-11
  • 2.24.1-1 - 2024-04-11
  • 2.24.1-0 - 2024-04-04
  • 2.24.0 - 2024-02-23
  • 2.23.1-0 - 2024-02-23
  • 2.23.0 - 2024-01-26
  • 2.22.1-2 - 2024-01-03
  • 2.22.1-1 - 2023-12-18
  • 2.22.1-0 - 2023-12-18
  • 2.22.0 - 2023-10-28
  • 2.21.1 - 2023-09-29
  • 2.21.0 - 2023-08-30
  • 2.20.1 - 2023-08-04
  • 2.20.0 - 2023-07-27
  • 2.19.0 - 2023-04-12
from @vscode/vsce GitHub release notes

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

Snyk has created this PR to upgrade @vscode/vsce from 2.19.0 to 2.31.1.

See this package in npm:
@vscode/vsce

See this project in Snyk:
https://app.snyk.io/org/sammytezzy/project/7480d9ab-a91b-458d-a9d3-95990d0c10ab?utm_source=github&utm_medium=referral&page=upgrade-pr
Copy link

stackblitz bot commented Aug 23, 2024

Review PR in StackBlitz Codeflow Run & review this pull request in StackBlitz Codeflow.

Copy link

changeset-bot bot commented Aug 23, 2024

⚠️ No Changeset found

Latest commit: 3070694

Merging this PR will not cause a version bump for any packages. If these changes should not result in a new version, you're good to go. If these changes should result in a version bump, you need to add a changeset.

Click here to learn what changesets are, and how to add one.

Click here if you're a maintainer who wants to add a changeset to this PR

Copy link

@sourcery-ai sourcery-ai bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

We have skipped reviewing this pull request. Here's why:

  • It seems to have been created by a bot ('[Snyk]' found in title). We assume it knows what it's doing!
  • We don't review packaging changes - Let us know if you'd like us to change this.

# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants