Skip to content

[Snyk] Fix for 1 vulnerabilities #32

New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

snyk-bot
Copy link

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

Changes included in this PR

  • Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
    • package.json
    • package-lock.json

Vulnerabilities that will be fixed

With an upgrade:
Severity Priority Score (*) Issue Breaking Change Exploit Maturity
high severity 768/1000
Why? Proof of Concept exploit, Recently disclosed, Has a fix available, CVSS 7.5
Regular Expression Denial of Service (ReDoS)
SNYK-JS-ANSIREGEX-1583908
Yes Proof of Concept

(*) Note that the real score may have changed since the PR was raised.

Commit messages
Package name: gatsby The new version differs by 250 commits.
  • 0a455df chore(release): Publish
  • 91dc167 fix(gatsby): don't log FAST_DEV message for each worker (#32961) (#32967)
  • f936c93 fix(gatsby): set staticQueryResultHash to new hash on data change (#32949) (#32966)
  • ea161ce feat(gatsby-graphiql-explorer): upgrade to webpack 5 (#30642)
  • 944e381 chore(release): Publish next
  • d6326df fix(gatsby-core-utils): Switch `auth` option from got to username/password (#32665)
  • cf9c066 fix(gatsby): add this typings to actions (#32210)
  • 53aa88e chore: enable test parallelism (#32766)
  • b7deabc fix(deps): update starters and examples - gatsby (#32843)
  • 6025c84 chore(deps): update dependency katex to ^0.13.13 for gatsby-remark-katex (#32567)
  • d87c5cb chore: enable lmdb by default and update node for next major (#32695)
  • 818d6c1 feat(gatsby-plugin-gatsby-cloud): Add `disablePreviewUI` option (#32907)
  • f556a00 chore: update changelogs (#32924)
  • aba5eba feat(gatsby): enable webpack caching in development for everyone (#32922)
  • ac7bd4e feat(gatsby-source-wordpress): allow path to js file for beforeChangeNode option (#32901)
  • 1a87a8a docs(gatsby-source-wordpress): document content sync (#32768)
  • 417df15 chore: re-generate changelogs (#32886)
  • 1810874 fix(gatsby-source-wordpress): draft previews (#32915)
  • 7c72ab8 chore(gatsby): remove unused packages (#32903)
  • afb06d7 chore(docs): Add hint for MDX plugin in remark-plugin-tutorial (#32876)
  • 1303ecb chore(docs): Update wording for "using-web-fonts" (#32902)
  • 9589911 chore(docs): Fix code highlighting in part 6 (#32900)
  • 568d4ce feat(gatsby-source-drupal): Use the collection count from JSON:API extras to enable parallel API requests for cold builds (#32883)
  • 41f5337 fix(deps): update typescript to ^4.29.3 (#32614)

See the full diff

Package name: gatsby-image The new version differs by 128 commits.
  • e6d7dc3 chore(release): Publish
  • 5035d3a Upgrade react testing library (#9360)
  • 6dce54a docs: add circleci badge to readme (#9364)
  • 62cacbb chore: consistent badge style (#9358)
  • c80f793 chore(release): Publish
  • 2da538e chore: clear cache-dir/commonjs directory before building new one (#9326)
  • 5cd1dcc chore(gatsby-transformer-remark): upgrade hast-util-to-html to ^4.0.0 (#9297)
  • 2103e87 feat(gatsby-source-wordpress): create site metadata node (#9329)
  • 4d5c5e0 feat(showcase): add https://www.markets.com (#9345)
  • 6056061 Fixed docs links (#9344)
  • 7cba598 Added 2 sites to the showcase (#9343)
  • 899e6d6 Added https://www.gotmilk.com/ to Showcase (#9335)
  • 7c7c552 Add https://2017.peopleforbikes.org/ to the site showcase (#9336)
  • ea2f7af Update adding-analytics.md (#9327)
  • 8368004 Update unstructured data doc (#9307)
  • 4e8287c chore: upgrade sharp to 0.21.0 (#9318)
  • f335f0c update open graph meta tags attributes from name to property (#9302)
  • a9796aa fix(www): search not initializing after client-side routing (#9230)
  • 09e447c chore(release): Publish
  • a392fb4 chore: revert extra package changes to publish babel-preset-gatsby first (#9322)
  • 69faca0 Add babel-preset-gatsby (#8724)
  • c56b501 www(docs): Change emotion import + minor edits (#9319)
  • 741171f chore(release): Publish
  • 9386d88 Describe why you'd want to use gatsby-plugin-layout at the top of the… (#9316)

See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:
🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic

# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant