Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Snyk] Fix for 1 vulnerabilities #204

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

Omrisnyk
Copy link
Owner

@Omrisnyk Omrisnyk commented Nov 7, 2024

snyk-top-banner

Snyk has created this PR to fix 1 vulnerabilities in the npm dependencies of this project.

Snyk changed the following file(s):

  • large-file/package.json
  • large-file/package-lock.json

Vulnerabilities that will be fixed with an upgrade:

Issue Score
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-CROSSSPAWN-8303230
  170  
Release notes
Package name: cross-spawn from cross-spawn GitHub release notes
Package name: mongodb-js-metrics
  • 6.0.0 - 2021-01-06
  • 5.0.2 - 2020-05-12
  • 5.0.1 - 2020-02-11
  • 5.0.0 - 2020-01-22
from mongodb-js-metrics GitHub release notes
Package name: snyk
  • 1.996.0 - 2022-09-01

    1.996.0 (2022-09-01)

    Bug Fixes

    • bump golang plugin version (8893f81)

    Features

  • 1.995.0 - 2022-08-31

    1.995.0 (2022-08-31)

    Bug Fixes

    • matching configurations error on gradle version catalog (20dcdae)
  • 1.994.0 - 2022-08-31

    1.994.0 (2022-08-31)

    Bug Fixes

    Features

    • add custom severities to iac test config (9d86574)
    • add ignore count in the experimental version of iac test (d390ca2)
    • Added support for depth-detection (8cf1815)
  • 1.993.0 - 2022-08-29

    1.993.0 (2022-08-29)

    Features

  • 1.992.0 - 2022-08-25

    1.992.0 (2022-08-25)

    Bug Fixes

    • --target-name bug (3431f79)
    • Spacing for issue descriptions with custom rules (29b2fdb)
  • 1.991.0 - 2022-08-23

    1.991.0 (2022-08-23)

    Features

    • add report summary (d8e4ea8)
    • pass policy (.snyk) to iac-test via the config file. (6d3ad76)
  • 1.990.0 - 2022-08-22

    1.990.0 (2022-08-22)

    Bug Fixes

    • none custom policies severity issues should be filtered out before sending them to registry (4acacd2)
  • 1.989.0 - 2022-08-19

    1.989.0 (2022-08-19)

    Bug Fixes

    • downgrade snyk-go-plugin to 1.19.0 (4643026)
    • increase buffer size (8079fe3)
    • update golang plugin (a0e30d9)
    • upgrade-docker-registry-v2-client (275afb1)

    Features

    • pass remote-repo-url arg to snyk-iac-test (18e8c87)
  • 1.988.0 - 2022-08-17

    1.988.0 (2022-08-17)

    Bug Fixes

    • return exit code 3 when no resources can be found (9d2e41f)
    • upgrade docker-registry-v2-client lib (374ba55)

    Features

    • pass target-name arg to snyk-iac-test (4352122)
    • stop caching rules (71c866e)
  • 1.987.0 - 2022-08-15

    1.987.0 (2022-08-15)

    Bug Fixes

    • correct broken URLs for license issues (8a46931)
    • Ensured the test spinner stops (5d9d15f)

    Features

    • remove reachability (5500e25)
    • scan maven aggregate projects (019bc45)
    • share cache path with IaC plugin (e254c0c)
    • update snyk-iac-test to 0.18.1 (379fe0c)
  • 1.986.0 - 2022-08-11
  • 1.985.0 - 2022-08-10
  • 1.984.0 - 2022-08-04
  • 1.983.0 - 2022-08-04
  • 1.982.0 - 2022-08-02
  • 1.981.0 - 2022-07-25
  • 1.980.0 - 2022-07-22
  • 1.979.0 - 2022-07-21
  • 1.978.0 - 2022-07-20
  • 1.977.0 - 2022-07-20
  • 1.976.0 - 2022-07-19
  • 1.975.0 - 2022-07-19
  • 1.974.0 - 2022-07-18
  • 1.973.0 - 2022-07-15
  • 1.972.0 - 2022-07-13
  • 1.971.0 - 2022-07-12
  • 1.970.0 - 2022-07-12
  • 1.969.0 - 2022-07-11
  • 1.968.0 - 2022-07-11
  • 1.967.0 - 2022-07-11
  • 1.966.0 - 2022-07-08
  • 1.965.0 - 2022-07-07
  • 1.964.0 - 2022-07-07
  • 1.963.0 - 2022-07-04
  • 1.962.0 - 2022-07-03
  • 1.961.0 - 2022-06-28
  • 1.960.0 - 2022-06-28
  • 1.959.0 - 2022-06-28
  • 1.958.0 - 2022-06-23
  • 1.957.0 - 2022-06-23
  • 1.956.0 - 2022-06-22
  • 1.955.0 - 2022-06-22
  • 1.954.0 - 2022-06-20
  • 1.953.0 - 2022-06-17
  • 1.952.0 - 2022-06-16
  • 1.951.0 - 2022-06-15
  • 1.950.0 - 2022-06-14
  • 1.949.0 - 2022-06-13
  • 1.948.0 - 2022-06-13
  • 1.947.0 - 2022-06-07
  • 1.946.0 - 2022-06-02
  • 1.945.0 - 2022-05-31
  • 1.944.0 - 2022-05-31
  • 1.943.0 - 2022-05-31
  • 1.942.0 - 2022-05-30
  • 1.941.0 - 2022-05-30
  • 1.940.0 - 2022-05-26
  • 1.939.0 - 2022-05-25
  • 1.938.0 - 2022-05-25
  • 1.937.0 - 2022-05-25
  • 1.936.0 - 2022-05-23
  • 1.935.0 - 2022-05-20
  • 1.934.0 - 2022-05-19
  • 1.933.0 - 2022-05-19
  • 1.932.0 - 2022-05-18
  • 1.931.0 - 2022-05-13
  • 1.930.0 - 2022-05-13
  • 1.929.0 - 2022-05-13
  • 1.928.0 - 2022-05-12
  • 1.927.0 - 2022-05-11
  • 1.926.0 - 2022-05-11
  • 1.925.0 - 2022-05-10
  • 1.924.0 - 2022-05-09
  • 1.923.0 - 2022-05-09
  • 1.922.0 - 2022-05-06
  • 1.921.0 - 2022-05-05
  • 1.920.0 - 2022-05-05
  • 1.919.0 - 2022-05-05
  • 1.918.0 - 2022-05-04
  • 1.917.0 - 2022-05-03
  • 1.916.0 - 2022-05-03
  • 1.915.0 - 2022-05-01
  • 1.914.0 - 2022-04-27
  • 1.913.0 - 2022-04-26
  • 1.912.0 - 2022-04-22
  • 1.911.0 - 2022-04-22
  • 1.910.0 - 2022-04-21
  • 1.909.0 - 2022-04-21
  • 1.908.0 - 2022-04-19
  • 1.907.0 - 2022-04-17
  • 1.906.0 - 2022-04-14
  • 1.905.0 - 2022-04-13
  • 1.904.0 - 2022-04-12
  • 1.903.0 - 2022-04-12
  • 1.902.0 - 2022-04-11
  • 1.901.0 - 2022-04-11
  • 1.900.0 - 2022-04-08
  • 1.899.0 - 2022-04-08
  • 1.898.0 - 2022-04-07
  • 1.897.0 - 2022-04-07
  • 1.896.0 - 2022-04-06
  • 1.895.0 - 2022-04-05
  • 1.894.0 - 2022-04-04
  • 1.893.0 - 2022-03-31
  • 1.892.0 - 2022-03-31
  • 1.891.0 - 2022-03-31
  • 1.890.0 - 2022-03-30
  • 1.889.0 - 2022-03-29
  • 1.888.0 - 2022-03-29
  • 1.887.0 - 2022-03-29
  • 1.886.0 - 2022-03-28
  • 1.885.0 - 2022-03-28
  • 1.884.0 - 2022-03-27
  • 1.883.0 - 2022-03-25
  • 1.882.0 - 2022-03-25
  • 1.881.0 - 2022-03-23
  • 1.880.0 - 2022-03-21
  • 1.879.0 - 2022-03-21
  • 1.878.0 - 2022-03-18
  • 1.877.0 - 2022-03-18
  • 1.876.0 - 2022-03-18
  • 1.875.0 - 2022-03-17
  • 1.874.0 - 2022-03-17
  • 1.873.0 - 2022-03-16
  • 1.872.0 - 2022-03-15
  • 1.871.0 - 2022-03-15
  • 1.870.0 - 2022-03-14
  • 1.869.0 - 2022-03-13
  • 1.868.0 - 2022-03-11
  • 1.867.0 - 2022-03-11
  • 1.866.0 - 2022-03-10
  • 1.865.0 - 2022-03-09
  • 1.864.0 - 2022-03-07
  • 1.863.0 - 2022-03-04
  • 1.862.0 - 2022-03-04
  • 1.861.0 - 2022-03-03
  • 1.860.0 - 2022-03-02
  • 1.859.0 - 2022-02-28
  • 1.858.0 - 2022-02-24
  • 1.857.0 - 2022-02-24
  • 1.856.0 - 2022-02-22
  • 1.855.0 - 2022-02-17
  • 1.854.0 - 2022-02-16
  • 1.853.0 - 2022-02-15
  • 1.852.0 - 2022-02-11
  • 1.851.0 - 2022-02-10
  • 1.850.0 - 2022-02-10
  • 1.849.0 - 2022-02-07
  • 1.848.0 - 2022-02-03
  • 1.847.0 - 2022-02-03
  • 1.846.0 - 2022-02-03
  • 1.845.0 - 2022-02-02
  • 1.844.0 - 2022-02-01
  • 1.843.0 - 2022-02-01
  • 1.842.0 - 2022-01-31
  • 1.841.0 - 2022-01-31
  • 1.840.0 - 2022-01-28
  • 1.839.0 - 2022-01-27
  • 1.838.0 - 2022-01-26
  • 1.837.0 - 2022-01-26
  • 1.836.0 - 2022-01-24
  • 1.835.0 - 2022-01-24
  • 1.834.0 - 2022-01-21
  • 1.833.0 - 2022-01-18
  • 1.832.0 - 2022-01-18
  • 1.831.0 - 2022-01-17
  • 1.830.0 - 2022-01-17
  • 1.829.0 - 2022-01-17
  • 1.828.0 - 2022-01-16
  • 1.827.0 - 2022-01-14
  • 1.826.0 - 2022-01-12
  • 1.825.0 - 2022-01-12
  • 1.824.0 - 2022-01-11
  • 1.823.0 - 2022-01-11
  • 1.822.0 - 2022-01-11
  • 1.821.0 - 2022-01-10
  • 1.820.0 - 2022-01-09
  • 1.819.0 - 2022-01-07
  • 1.818.0 - 2022-01-06
  • 1.817.0 - 2022-01-05
  • 1.816.0 - 2022-01-04
  • 1.815.0 - 2022-01-04
  • 1.814.0 - 2022-01-03
  • 1.813.0 - 2021-12-31
  • 1.812.0 - 2021-12-29
  • 1.811.0 - 2021-12-28
  • 1.810.0 - 2021-12-28
  • 1.809.0 - 2021-12-23
  • 1.808.0 - 2021-12-23
  • 1.807.0 - 2021-12-23
  • 1.806.0 - 2021-12-21
  • 1.805.0 - 2021-12-21
  • 1.804.0 - 2021-12-21
  • 1.803.0 - 2021-12-20
  • 1.802.0 - 2021-12-20
  • 1.801.0 - 2021-12-20
  • 1.800.0 - 2021-12-20
  • 1.799.0 - 2021-12-20
  • 1.798.0 - 2021-12-20
  • 1.797.0 - 2021-12-17
  • 1.796.0 - 2021-12-17
  • 1.795.0 - 2021-12-17
  • 1.794.0 - 2021-12-16
  • 1.793.0 - 2021-12-15
  • 1.792.0 - 2021-12-14
  • 1.791.0 - 2021-12-14
  • 1.790.0 - 2021-12-12
  • 1.789.0 - 2021-12-10
  • 1.788.0 - 2021-12-10
  • 1.787.0 - 2021-12-08
  • 1.786.0 - 2021-12-07
  • 1.785.0 - 2021-12-06
  • 1.784.0 - 2021-12-06
  • 1.783.0 - 2021-12-03
  • 1.782.0 - 2021-12-02
  • 1.781.0 - 2021-12-02
  • 1.780.0 - 2021-11-30
  • 1.779.0 - 2021-11-30
  • 1.778.0 - 2021-11-29
  • 1.777.0 - 2021-11-29
  • 1.776.0 - 2021-11-29
  • 1.775.0 - 2021-11-26
  • 1.774.0 - 2021-11-26
  • 1.773.0 - 2021-11-24
  • 1.772.0 - 2021-11-24
  • 1.771.0 - 2021-11-24
  • 1.770.0 - 2021-11-24
  • 1.769.0 - 2021-11-23
  • 1.768.0 - 2021-11-23
  • 1.767.0 - 2021-11-21
  • 1.766.0 - 2021-11-19
  • 1.765.0 - 2021-11-19
  • 1.764.0 - 2021-11-18
  • 1.763.0 - 2021-11-15
  • 1.762.0 - 2021-11-15
  • 1.761.0 - 2021-11-15
  • 1.760.0 - 2021-11-11
  • 1.759.0 - 2021-11-09
  • 1.758.0 - 2021-11-09
  • 1.757.0 - 2021-11-08
  • 1.756.0 - 2021-11-08
  • 1.755.0 - 2021-11-08
  • 1.754.0 - 2021-11-08
  • 1.753.0 - 2021-11-05
  • 1.752.0 - 2021-11-03
  • 1.751.0 - 2021-11-03
  • 1.750.0 - 2021-11-02
  • 1.749.0 - 2021-10-31
  • 1.748.0 - 2021-10-29
  • 1.747.0 - 2021-10-28
  • 1.746.0 - 2021-10-27
  • 1.745.0 - 2021-10-25
  • 1.744.0 - 2021-10-21
  • 1.743.0 - 2021-10-21
  • 1.742.0 - 2021-10-20
  • 1.741.0 - 2021-10-19
  • 1.740.0 - 2021-10-19
  • 1.739.0 - 2021-10-19
  • 1.738.0 - 2021-10-18
  • 1.737.0 - 2021-10-14
  • 1.736.0 - 2021-10-13
  • 1.735.0 - 2021-10-12
  • 1.734.0 - 2021-10-12
  • 1.733.0 - 2021-10-07
  • 1.732.0 - 2021-10-07
  • 1.731.0 - 2021-10-05
  • 1.730.0 - 2021-10-03
  • 1.729.0 - 2021-10-01
  • 1.728.0 - 2021-09-29
  • 1.727.0 - 2021-09-28
  • 1.726.0 - 2021-09-28
  • 1.725.0 - 2021-09-28
  • 1.724.0 - 2021-09-28
  • 1.723.0 - 2021-09-27
  • 1.722.0 - 2021-09-26
  • 1.721.0 - 2021-09-26
  • 1.720.0 - 2021-09-22
  • 1.719.0 - 2021-09-22
  • 1.718.0 - 2021-09-22
  • 1.717.0 - 2021-09-17
  • 1.716.0 - 2021-09-16
  • 1.715.0 - 2021-09-15
  • 1.714.0 - 2021-09-15
  • 1.713.0 - 2021-09-14
  • 1.712.0 - 2021-09-14
  • 1.711.0 - 2021-09-14
  • 1.710.0 - 2021-09-14
  • 1.709.0 - 2021-09-13
  • 1.708.0 - 2021-09-13
  • 1.707.0 - 2021-09-12
  • 1.706.0 - 2021-09-12
  • 1.705.0 - 2021-09-12
  • 1.704.0 - 2021-09-09
  • 1.703.0 - 2021-09-09
  • 1.702.0 - 2021-09-09
  • 1.701.0 - 2021-09-08
  • 1.700.0 - 2021-09-08
  • 1.699.0 - 2021-09-08
  • 1.698.0 - 2021-09-07
  • 1.697.0 - 2021-09-05
  • 1.696.0 - 2021-09-01
  • 1.695.0 - 2021-08-29
  • 1.694.0 - 2021-08-27
  • 1.693.0 - 2021-08-27
  • 1.692.0 - 2021-08-26
  • 1.691.0 - 2021-08-26
  • 1.690.0 - 2021-08-26
  • 1.689.0 - 2021-08-25
  • 1.688.0 - 2021-08-25
  • 1.687.0 - 2021-08-23
  • 1.686.0 - 2021-08-23
  • 1.685.0 - 2021-08-23
  • 1.684.0 - 2021-08-20
  • 1.683.0 - 2021-08-16
  • 1.682.0 - 2021-08-16
  • 1.681.0 - 2021-08-13
  • 1.680.0 - 2021-08-12
  • 1.679.0 - 2021-08-11
  • 1.678.0 - 2021-08-11
  • 1.677.0 - 2021-08-09
  • 1.676.0 - 2021-08-05
  • 1.675.0 - 2021-08-03
  • 1.674.0 - 2021-08-02
  • 1.673.0 - 2021-08-02
  • 1.672.0 - 2021-07-30
  • 1.671.0 - 2021-07-29
  • 1.670.0 - 2021-07-29
  • 1.669.0 - 2021-07-28
  • 1.668.0 - 2021-07-27
  • 1.667.0 - 2021-07-26
  • 1.666.0 - 2021-07-22
  • 1.665.0 - 2021-07-22
  • 1.664.0 - 2021-07-20
  • 1.663.0 - 2021-07-18
  • 1.662.0 - 2021-07-15
  • 1.661.0 - 2021-07-14
  • 1.660.0 - 2021-07-13
  • 1.659.0 - 2021-07-13
  • 1.658.0 - 2021-07-09
  • 1.657.0 - 2021-07-07
  • 1.656.0 - 2021-07-07
  • 1.655.0 - 2021-07-06
  • 1.654.0 - 2021-07-06
  • 1.653.0 - 2021-07-02
  • 1.652.0 - 2021-06-30
  • 1.651.0 - 2021-06-30
  • 1.650.0 - 2021-06-28
  • 1.649.0 - 2021-06-28
  • 1.648.0 - 2021-06-28
  • 1.647.0 - 2021-06-28
  • 1.646.0 - 2021-06-25
  • 1.645.0 - 2021-06-24
  • 1.644.0 - 2021-06-24
  • 1.643.0 - 2021-06-23
  • 1.642.0 - 2021-06-23
  • 1.641.0 - 2021-06-22
  • 1.640.0 - 2021-06-22
  • 1.639.0 - 2021-06-17
  • 1.638.0 - 2021-06-17
  • 1.637.0 - 2021-06-17
  • 1.636.0 - 2021-06-17
  • 1.635.0 - 2021-06-17
  • 1.634.0 - 2021-06-16
  • 1.633.0 - 2021-06-16
  • 1.632.0 - 2021-06-16
  • 1.631.0 - 2021-06-15
  • 1.630.0 - 2021-06-11
  • 1.629.0 - 2021-06-11
  • 1.628.0 - 2021-06-10
  • 1.627.0 - 2021-06-10
  • 1.626.0 - 2021-06-10
  • 1.625.0 - 2021-06-10
  • 1.624.0 - 2021-06-09
  • 1.623.0 - 2021-06-08
  • 1.622.0 - 2021-06-04
  • 1.621.0 - 2021-06-02
  • 1.620.0 - 2021-06-01
  • 1.619.0 - 2021-06-01
  • 1.618.0 - 2021-05-28
  • 1.617.0 - 2021-05-28
  • 1.616.0 - 2021-05-27
  • 1.615.0 - 2021-05-27
  • 1.614.0 - 2021-05-27
  • 1.613.0 - 2021-05-26
  • 1.612.0 - 2021-05-26
  • 1.611.0 - 2021-05-26
  • 1.610.0 - 2021-05-26
  • 1.609.0 - 2021-05-26
  • 1.608.0 - 2021-05-25
  • 1.607.0 - 2021-05-25
  • 1.606.0 - 2021-05-23
  • 1.605.0 - 2021-05-20
  • 1.604.0 - 2021-05-19
  • 1.603.0 - 2021-05-19
  • 1.602.0 - 2021-05-18
  • 1.601.0 - 2021-05-18
  • 1.600.0 - 2021-05-18
  • 1.599.0 - 2021-05-18
  • 1.598.0 - 2021-05-18
  • 1.597.0 - 2021-05-18
  • 1.596.0 - 2021-05-17
  • 1.595.0 - 2021-05-13
  • 1.594.0 - 2021-05-12
  • 1.593.0 - 2021-05-12
  • 1.592.0 - 2021-05-11
  • 1.591.0 - 2021-05-11
  • 1.590.0 - 2021-05-10
  • 1.589.0 - 2021-05-10
  • 1.588.0 - 2021-05-10
  • 1.587.0 - 2021-05-09
  • 1.586.0 - 2021-05-07
  • 1.585.0 - 2021-05-07
  • 1.584.0 - 2021-05-06
  • 1.583.0 - 2021-05-05
  • 1.582.0 - 2021-05-04
  • 1.581.0 - 2021-05-04
  • 1.580.0 - 2021-05-04
  • 1.579.0 - 2021-05-04
  • 1.578.0 - 2021-05-04
  • 1.577.0 - 2021-05-04
  • 1.576.0 - 2021-05-03
  • 1.575.0 - 2021-05-02
  • 1.574.0 - 2021-04-30
  • 1.573.0 - 2021-04-29
  • 1.572.0 - 2021-04-29
  • 1.571.0 - 2021-04-28
  • 1.570.0 - 2021-04-27
  • 1.569.0 - 2021-04-27
  • 1.568.0 - 2021-04-27
  • 1.567.0 - 2021-04-27
  • 1.566.0 - 2021-04-26
  • 1.565.0 - 2021-04-26
  • 1.564.0 - 2021-04-25
  • 1.563.0 - 2021-04-20
  • 1.562.0 - 2021-04-20
  • 1.561.0 - 2021-04-20
  • 1.560.0 - 2021-04-20
  • 1.559.0 - 2021-04-20
  • 1.558.0 - 2021-04-20
  • 1.557.0 - 2021-04-19
  • 1.556.0 - 2021-04-19
  • 1.555.0 - 2021-04-19
  • 1.554.0 - 2021-04-19
  • 1.553.0 - 2021-04-19
  • 1.552.0 - 2021-04-19
  • 1.551.0 - 2021-04-18
  • 1.550.0 - 2021-04-16
  • 1.549.0 - 2021-04-16
  • 1.548.0 - 2021-04-16
  • 1.547.0 - 2021-04-16
  • 1.546.0 - 2021-04-16
  • 1.545.0 - 2021-04-16
  • 1.544.0 - 2021-04-16
  • 1.543.0 - 2021-04-15
  • 1.542.0 - 2021-04-15
  • 1.541.0 - 2021-04-14
  • 1.540.0 - 2021-04-14
  • 1.539.0 - 2021-04-14
  • 1.538.0 - 2021-04-13
  • 1.537.0 - 2021-04-13
  • 1.536.0 - 2021-04-13
  • 1.535.0 - 2021-04-13
  • 1.534.0 - 2021-04-13
  • 1.533.0 - 2021-04-13
  • 1.532.0 - 2021-04-12
  • 1.531.0 - 2021-04-12
  • 1.530.0 - 2021-04-09
  • 1.529.0 - 2021-04-08
  • 1.528.0 - 2021-04-07
  • 1.527.0 - 2021-04-07
  • 1.526.0 - 2021-04-06
  • 1.525.0 - 2021-04-06
  • 1.524.0 - 2021-04-06
  • 1.523.0 - 2021-04-06
  • 1.522.0 - 2021-04-04
  • 1.521.0 - 2021-04-01
  • 1.520.0 - 2021-03-31
  • 1.519.0 - 2021-03-31
  • 1.518.0 - 2021-03-30
  • 1.517.0 - 2021-03-30
  • 1.516.0 - 2021-03-30
  • 1.515.0 - 2021-03-30
  • 1.514.0 - 2021-03-29
  • 1.513.0 - 2021-03-29
  • 1.512.0 - 2021-03-29
  • 1.511.0 - 2021-03-26
  • 1.510.0 - 2021-03-26
  • 1.509.0 - 2021-03-23
  • 1.508.0 - 2021-03-23
  • 1.507.0 - 2021-03-23
  • 1.506.0 - 2021-03-23
  • 1.505.0 - 2021-03-22
  • 1.504.0 - 2021-03-22
  • 1.503.0 - 2021-03-21
  • 1.502.0 - 2021-03-19
  • 1.501.0 - 2021-03-19
  • 1.500.0 - 2021-03-18
  • 1.499.0 - 2021-03-18
  • 1.498.0 - 2021-03-18
  • 1.497.0 - 2021-03-18
  • 1.496.0 - 2021-03-18
  • 1.495.0 - 2021-03-17
  • 1.494.0 - 2021-03-17
  • 1.493.0 - 2021-03-17
  • 1.492.0 - 2021-03-17
  • 1.491.0 - 2021-03-16
  • 1.490.0 - 2021-03-16
  • 1.489.0 - 2021-03-15
  • 1.488.0 - 2021-03-15
  • 1.487.0 - 2021-03-15
  • 1.486.0 - 2021-03-14
  • 1.485.0 - 2021-03-12
  • 1.484.0 - 2021-03-12
  • 1.483.0 - 2021-03-10
  • 1.482.0 - 2021-03-10
  • 1.481.0 - 2021-03-10
  • 1.480.0 - 2021-03-10
  • 1.479.0 - 2021-03-10
  • 1.478.0 - 2021-03-09
  • 1.477.0 - 2021-03-09
  • 1.476.0 - 2021-03-08
  • 1.475.0 - 2021-03-08
  • 1.474.0 - 2021-03-07
  • 1.473.0 - 2021-03-05
  • 1.472.0 - 2021-03-05
  • 1.471.0 - 2021-03-04
  • 1.470.0 - 2021-03-04
  • 1.469.0 - 2021-03-04
  • 1.468.0 - 2021-03-04
  • 1.467.0 - 2021-03-02
  • 1.466.0 - 2021-03-02
  • 1.465.0 - 2021-03-02
  • 1.464.0 - 2021-03-01
  • 1.463.0 - 2021-03-01
  • 1.462.0 - 2021-02-28
  • 1.461.0 - 2021-02-26
  • 1.460.0 - 2021-02-24
  • 1.459.0 - 2021-02-22
  • 1.458.0 - 2021-02-19
  • 1.457.0 - 2021-02-18
  • 1.456.0 - 2021-02-17
  • 1.455.0 - 2021-02-15
  • 1.454.0 - 2021-02-12
  • 1.453.0 - 2021-02-12
  • 1.452.0 - 2021-02-11
  • 1.451.0 - 2021-02-11
  • 1.450.0 - 2021-02-10
  • 1.449.0 - 2021-02-10
  • 1.448.0 - 2021-02-09
  • 1.447.0 - 2021-02-08
  • 1.446.0 - 2021-02-05
  • 1.445.0 - 2021-02-04
  • 1.444.0 - 2021-02-04
  • 1.443.0 - 2021-02-04
  • 1.442.0 - 2021-02-04
  • 1.441.0 - 2021-02-04
  • 1.440.5 - 2021-02-03
  • 1.440.4 - 2021-02-01
  • 1.440.3 - 2021-02-01
  • 1.440.2 - 2021-02-01
  • 1.440.1 - 2021-01-28
  • 1.440.0 - 2021-01-28
  • 1.439.4 - 2021-01-28
  • 1.439.3 - 2021-01-27
  • 1.439.2 - 2021-01-27
  • 1.439.1 - 2021-01-25
  • 1.439.0 - 2021-01-21
  • 1.438.0 - 2021-01-20
  • 1.437.4 - 2021-01-13
  • 1.437.3 - 2020-12-22
  • 1.437.2 - 2020-12-16
  • 1.437.1 - 2020-12-15
  • 1.437.0 - 2020-12-14
  • 1.436.0 - 2020-12-10
  • 1.435.1 - 2020-12-10
  • 1.435.0 - 2020-12-10
  • 1.434.4 - 2020-12-09
  • 1.434.3 - 2020-12-08
  • 1.434.2 - 2020-12-04
  • 1.434.1 - 2020-12-04
  • 1.434.0 - 2020-12-03
  • 1.433.0 - 2020-12-01
  • 1.432.1 - 2020-12-01
  • 1.432.0 - 2020-12-01
  • 1.431.4 - 2020-11-30
  • 1.431.3 - 2020-11-30
  • 1.431.2 - 2020-11-27
  • 1.431.1 - 2020-11-24
  • 1.431.0 - 2020-11-24
  • 1.430.2 - 2020-11-23
  • 1.430.1 - 2020-11-23
  • 1.430.0 - 2020-11-20
  • 1.429.0 - 2020-11-20
  • 1.428.2 - 2020-11-19
  • 1.428.1 - 2020-11-19
  • 1.428.0 - 2020-11-18
  • 1.427.2 - 2020-11-17
  • 1.427.1 - 2020-11-17
  • 1.427.0 - 2020-11-15
  • 1.426.0 - 2020-11-13
  • 1.425.4 - 2020-11-13
  • 1.425.3 - 2020-11-11
  • 1.425.2 - 2020-11-10
  • 1.425.1 - 2020-11-09
  • 1.425.0 - 2020-11-09
  • 1.424.4 - 2020-11-05
  • 1.424.3 - 2020-11-05
  • 1.424.2 - 2020-11-04
  • 1.424.1 - 2020-11-04
  • 1.424.0 - 2020-11-03
  • 1.423.0 - 2020-11-03
  • 1.422.1 - 2020-11-03
  • 1.422.0 - 2020-11-02
  • 1.421.1 - 2020-10-29
  • 1.421.0 - 2020-10-28
  • 1.420.2 - 2020-10-28
  • 1.420.1 - 2020-10-25
  • 1.420.0 - 2020-10-23
  • 1.419.1 - 2020-10-21
  • 1.419.0 - 2020-10-20
  • 1.418.0 - 2020-10-20
  • 1.417.0 - 2020-10-20
  • 1.416.0 - 2020-10-19
  • 1.415.0 - 2020-10-18
  • 1.414.1 - 2020-10-16
  • 1.414.0 - 2020-10-15
  • 1.413.5 - 2020-10-15
  • 1.413.4 - 2020-10-15
  • 1.413.3 - 2020-10-13
  • 1.413.2 - 2020-10-09
  • 1.413.1 - 2020-10-09
  • 1.413.0 - 2020-10-09
  • 1.412.0 - 2020-10-09
  • 1.411.0 - 2020-10-09
  • 1.410.4 - 2020-10-08
  • 1.410.3 - 2020-10-07
  • 1.410.2 - 2020-10-06
  • 1.410.1 - 2020-10-06
  • 1.410.0 - 2020-10-06
  • 1.409.1 - 2020-10-05
  • 1.409.0 - 2020-10-05
  • 1.408.0 - 2020-10-05
  • 1.407.0 - 2020-10-05
  • 1.406.0 - 2020-10-01
  • 1.405.1 - 2020-09-30
  • 1.405.0 - 2020-09-30
  • 1.404.0 - 2020-09-29
  • 1.403.0 - 2020-09-29
  • 1.402.0 - 2020-09-28
  • 1.401.0 - 2020-09-25
  • 1.400.0 - 2020-09-24
  • 1.399.1 - 2020-09-22
  • 1.399.0 - 2020-09-21
  • 1.398.1 - 2020-09-16
  • 1.398.0 - 2020-09-15
  • 1.397.1 - 2020-09-15
  • 1.397.0 - 2020-09-15
  • 1.396.0 - 2020-09-15
  • 1.395.0 - 2020-09-14
  • 1.394.0 - 2020-09-14
  • 1.393.1 - 2020-09-14
  • 1.393.0 - 2020-09-10
  • 1.392.1 - 2020-09-08
  • 1.392.0 - 2020-09-08
  • 1.391.1 - 2020-09-07
  • 1.391.0 - 2020-09-07
  • 1.390.0 - 2020-09-07
  • 1.389.0 - 2020-09-04
from snyk GitHub release notes
Package name: webpack-cli
  • 4.0.0 - 2020-10-10
  • 4.0.0-rc.1 - 2020-10-06
  • 4.0.0-rc.0 - 2020-09-22
  • 4.0.0-beta.9 - 2020-09-19
  • 4.0.0-beta.8 - 2020-03-02
  • 4.0.0-beta.7 - 2020-02-29
  • 4.0.0-beta.6 - 2020-02-23
  • 4.0.0-beta.3 - 2020-02-11
  • 4.0.0-beta.2 - 2020-02-11
  • 4.0.0-beta.1 - 2019-11-15
  • 4.0.0-beta.0 - 2019-11-15
  • 4.0.0-alpha-5 - 2019-07-08
  • 4.0.0-alpha-4 - 2018-12-25
  • 4.0.0-alpha-3 - 2018-12-25
  • 4.0.0-alpha-2 - 2018-12-25
  • 4.0.0-alpha-1 - 2018-12-25
  • 4.0.0-alpha - 2018-12-25
  • 3.3.12 - 2020-06-18
  • 3.3.11 - 2020-02-11
  • 3.3.10 - 2019-10-31
  • 3.3.9 - 2019-09-17
  • 3.3.8 - 2019-09-05
  • 3.3.7 - 2019-08-18
  • 3.3.6 - 2019-07-14
  • 3.3.5 - 2019-06-23
from webpack-cli GitHub release notes
Package name: yargs
  • 13.3.0 - 2019-06-10

    Bug Fixes

    • deps: yargs-parser update addressing several parsing bugs (#1357) (e230d5b)

    Features

    • i18n: swap out os-locale dependency for simple inline implementation (#1356) (4dfa19b)
    • support defaultDescription for positional arguments (812048c)
  • 13.2.4 - 2019-05-13

    chore(release): 13.2.4

  • 13.2.2 - 2019-03-06

    chore(release): 13.2.2

  • 13.2.1 - 2019-02-18

    chore(release): 13.2.1

  • 13.2.0 - 2019-02-15

    chore(release): 13.2.0

  • 13.1.0 - 2019-02-12

    chore(release): 13.1.0

from yargs GitHub release notes
Package name: yeoman-generator
  • 5.0.0 - 2021-02-20

    Breaking changes

    • Requires node 12.
    • Requires [email protected] (unreleased yo@4).
    • Conflicter moved to the Environment.
    • Install action is deprecated and is not included by default.
      • Replaced by package.json manipulation
        • addDependencies({dependency: 'version'})
        • addDevDependencies({dependency: 'version'})
        • this.packageJson storage. Eg: this.packageJson.merge({scripts: {test: 'mocha'}});
      • Install task will be executed later by the Environment when package.json changes.
      • To load it:
    const Generator = require('yeoman-generator');
    -_.extend(Generator.prototype, require('yeoman-generator/lib/actions/install'));
    
    • Singleton Generators support passing unique: 'namespace' or unique: 'argument'.
      constructor(args, options = {}) {
        super(args, {...options, unique: 'namespace'}
      }
    
    • Misc
      • this.(spawnCommand/spawnCommandSync) switched to execa and now defaults cwd to this.destinationRoot().
      • Dropped support for kebab case options.
      • composeWith() isn't chainable anymore and delegates the running to the Environment for singleton checks.
      • Replaced registerTransformStream with queueTransformStream.
        New api executes transformations before the commit operation, and is executed for every generator.
      • Dependencies update.

    v4.13.0...v5.0.0

  • 5.0.0-rc.0 - 2021-02-15

    5.0.0-rc.0

  • 5.0.0-beta.1 - 2021-02-13

    5.0.0-beta.1

  • 4.13.0 - 2021-01-30

    v4.12.0...v4.13.0

  • 4.12.0 - 2020-08-31
    • Fixes running --help.
    • Implement registerPriorities.
  • 4.11.0 - 2020-06-26
    • Add Storage caching.
    • Add support to generators with no tasks.
    • Add Storage proxy, it can be used as a plain js object instead of using get/set.
    • Pass the generator as context to ejs (when using built-in shortcuts).
    • Bug fixes.
  • 4.10.1 - 2020-05-11
    • Add skipLocalCache option.
      Cache prompt suggestions only to global yo-rc.
  • 4.10.0 - 2020-05-03
    • Add shortcuts to mem-fs-editor methods
    • Make properties/functions starting with # reserved for composing.
    • Fixes and improvements.
  • 4.9.0 - 2020-04-24
    • Add support to prompts with storage. this.prompt(prompts, this.config); will use the storage to read/write answers.
      • Prompt is ignored if the value is !== undefined (pass --ask-answered to force the prompt to be shown, stored value is the default value)
  • 4.8.3 - 2020-04-22
    • Remove run-queue pause.
      It doesn’t work due to multiple scheduled runs.
  • 4.8.2 - 2020-04-13
  • 4.8.1 - 2020-04-12
  • 4.8.0 - 2020-04-08
  • 4.7.2 - 2020-03-14
  • 4.7.1 - 2020-03-11
  • 4.7.0 - 2020-03-09
  • 4.6.0 - 2020-02-26
  • 4.5.0 - 2020-01-27
  • 4.4.0 - 2019-12-24
  • 4.3.0 - 2019-12-15
  • 4.2.0 - 2019-10-27
  • 4.1.0 - 2019-09-26
  • 4.0.2 - 2019-09-01
  • 4.0.1 - 2019-05-28
  • 4.0.0 - 2019-05-08
  • 3.2.0 - 2018-12-22
  • 3.1.1 - 2018-07-28
  • 3.1.0 - 2018-07-24
  • 3.0.0 - 2018-07-01
  • 2.0.5 - 2018-04-30
from yeoman-generator GitHub release notes

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.
  • This PR was automatically created by Snyk using the credentials of a real user.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic


Learn how to fix vulnerabilities with free interactive lessons:

🦉 Regular Expression Denial of Service (ReDoS)

[//]: # 'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"cross-spawn","from":"5.1.0","to":"7.0.5"},{"name":"mongodb-js-metrics","from":"5.0.0","to":"6.0.0"},{"name":"snyk","from":"1.389.0","to":"1.996.0"},{"name":"webpack-cli","from":"3.3.5","to":"4.0.0"},{"name":"yargs","from":"13.1.0","to":"13.3.0"},{"name":"yeoman-generator","from":"2.0.5","to":"5.0.0"}],"env":"prod","issuesToFix":[{"exploit_maturity":"Proof of Concept","id":"SNYK-JS-CROSSSPAWN-8303230","priority_score":170,"priority_score_factors":[{"name":"confidentiality","value":"none"},{"name":"integrity","value":"none"},{"name":"availability","value":"high"},{"name":"scope","value":"unchanged"},{"name":"exploitCodeMaturity","value":"proofOfConcept"},{"name":"userInteraction","value":"none"},{"name":"privilegesRequired","value":"none"},{"name":"attackComplexity","value":"low"},{"name":"attackVector","value":"network"},{"name":"epss","value":0.01055},{"name":"isTrending","value":false},{"name":"publicationDate","value":"Thu Nov 07 2024 14:07:29 GMT+0000 (Coordinated Universal Time)"},{"name":"isReachable","value":false},{"name":"isTransitive","value":true},{"name":"isMalicious","value":false},{"name":"businessCriticality","value":"high"},{"name":"relativeImportance","value":"high"},{"name":"relativePopularityRank","value":99},{"name":"impact","value":5.99},{"name":"likelihood","value":2.83},{"name":"scoreVersion","value":"V5"}],"severity":"high","title":"Regular Expression Denial of Service (ReDoS)"},{"exploit_maturity":"Proof of Concept","id":"SNYK-JS-CROSSSPAWN-8303230","priority_score":170,"priority_score_factors":[{"name":"confidentiality","value":"none"},{"name":"integrity","value":"none"},{"name":"availability","value":"high"},{"name":"scope","value":"unchanged"},{"name":"exploitCodeMaturity","value":"proofOfConcept"},{"name":"userInteraction","value":"none"},{"name":"privilegesRequired","value":"none"},{"name":"attackComplexity","value":"low"},{"name":"attackVector","value":"network"},{"name":"epss","value":0.01055},{"name":"isTrending","value":false},{"name":"publicationDate","value":"Thu Nov 07 2024 14:07:29 GMT+0000 (Coordinated Universal Time)"},{"name":"isReachable","value":false},{"name":"isTransitive","value":true},{"name":"isMalicious","value":false},{"name":"businessCriticality","value":"high"},{"name":"relativeImportance","value":"high"},{"name":"relativePopularityRank","value":99},{"name":"impact","value":5.99},{"name":"likelihood","value":2.83},{"name":"scoreVersion","value":"V5"}],"severity":"high","title":"Regular Expression Denial of Service (ReDoS)"},{"exploit_maturity":"Proof of Concept","id":"SNYK-JS-CROSSSPAWN-8303230","priority_score":170,"priority_score_factors":[{"name":"confidentiality","value":"none"},{"name":"integrity","value":"none"},{"name":"availability","value":"high"},{"name":"scope","value":"unchanged"},{"name":"exploitCodeMaturity","value":"proofOfConcept"},{"name":"userInteraction","value":"none"},{"name":"privilegesRequired","value":"none"},{"name":"a...

… vulnerabilities

The following vulnerabilities are fixed with an upgrade:
- https://snyk.io/vuln/SNYK-JS-CROSSSPAWN-8303230
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants