Skip to content

[Snyk] Upgrade react-scripts from 2.0.5 to 2.1.8 #6

New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

snyk-bot
Copy link

@snyk-bot snyk-bot commented Oct 1, 2019

Snyk has created this PR to upgrade react-scripts from 2.0.5 to 2.1.8.

  • The recommended version is 12 versions ahead of your current version.
  • The recommended version was released 7 months ago, on 2019-03-07.

The recommended version fixes:

Severity Title Issue ID
Arbitrary Code Execution SNYK-JS-ESLINTUTILS-460220
Prototype Pollution SNYK-JS-HANDLEBARS-173692
Prototype Pollution SNYK-JS-HANDLEBARS-174183
Prototype Pollution SNYK-JS-HANDLEBARS-469063
Arbitrary Code Execution SNYK-JS-JSYAML-174129
Prototype Pollution SNYK-JS-MIXINDEEP-450212
Prototype Pollution SNYK-JS-SETVALUE-450213
Prototype Pollution SNYK-JS-SETVALUE-450213
Information Exposure SNYK-JS-WEBPACKDEVSERVER-72405
Denial of Service (DoS) SNYK-JS-JSYAML-173999
Release notes

from react-scripts GitHub Release Notes


🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant