Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

[Snyk] Upgrade request-promise-native from 1.0.5 to 1.0.7 #31

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

snyk-bot
Copy link

Snyk has created this PR to upgrade request-promise-native from 1.0.5 to 1.0.7.

  • The recommended version is 2 versions ahead of your current version.
  • The recommended version was released 8 months ago, on 2019-02-15.

The recommended version fixes:

Severity Title Issue ID
Prototype Pollution SNYK-JS-LODASH-450202
Prototype Pollution SNYK-JS-LODASH-73638
Regular Expression Denial of Service (ReDoS) SNYK-JS-LODASH-73639
Release notes
  • Package name: request-promise-native
  • from [`request-promise-native` GitHub Release Notes](https://github.com/request/request-promise-native/releases)
------------

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant