[Snyk] Fix for 4 vulnerabilities#293
Conversation
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-KOA-15353398 - https://snyk.io/vuln/SNYK-JS-MINIMATCH-15309438 - https://snyk.io/vuln/SNYK-JS-MINIMATCH-15353387 - https://snyk.io/vuln/SNYK-JS-MINIMATCH-15353389
|
This release includes major version upgrades for del: 3.0.0 → 8.0.0 (HIGH RISK) This upgrade spans multiple major versions and introduces several critical breaking changes. Action will be required to migrate.
Recommendation: Due to the switch to ESM and API renaming, you will need to refactor how you import and call the lerna: 8.2.4 → 9.0.4 (HIGH RISK) This major version upgrade introduces breaking changes related to Node.js support and legacy commands.
Recommendation: Before upgrading, ensure your environment is running a supported version of Node.js. If you are using the removed legacy commands, you must migrate to your package manager's workspace commands (e.g., koa: 2.16.3 → 2.16.4 (LOW RISK) This is a patch release that addresses a security vulnerability. No breaking changes are expected.
|
✅ This PR has been automatically closedThe security issues addressed by this pull request are no longer present in the latest project scan. All vulnerabilities this PR was created to fix have been resolved through other means (e.g., dependency updates, direct fixes, or changes in vulnerability data). Resolved Issues
What should I do?No action is required. If you believe this PR was closed in error, you can reopen it and contact Snyk support. This action was performed automatically by Snyk. |
Snyk has created this PR to fix 4 vulnerabilities in the npm dependencies of this project.
Snyk changed the following file(s):
package.jsonVulnerabilities that will be fixed with an upgrade:
SNYK-JS-KOA-15353398
SNYK-JS-MINIMATCH-15309438
SNYK-JS-MINIMATCH-15353387
SNYK-JS-MINIMATCH-15353389
Breaking Change Risk
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Regular Expression Denial of Service (ReDoS)