Skip to content

[Snyk] Fix for 9 vulnerabilities - #48

Open
s403o wants to merge 1 commit into
mainfrom
snyk-fix-3bce70c11fa116d2238ae54440ba8b29
Open

[Snyk] Fix for 9 vulnerabilities#48
s403o wants to merge 1 commit into
mainfrom
snyk-fix-3bce70c11fa116d2238ae54440ba8b29

Conversation

@s403o

@s403os403o commented Sep 6, 2024

Copy link
Copy Markdown
Member

snyk-top-banner

Snyk has created this PR to fix 9 vulnerabilities in the npm dependencies of this project.

Snyk changed the following file(s):

  • package.json
  • package-lock.json

Vulnerabilities that will be fixed with an upgrade:

IssueScore
high severityServer-side Request Forgery (SSRF)
SNYK-JS-IP-6240864
751
high severityRegular Expression Denial of Service (ReDoS)
SNYK-JS-SEMVER-3247795
696
high severityImproper Input Validation
SNYK-JS-FOLLOWREDIRECTS-6141137
686
high severityCode Injection
SNYK-JS-LODASH-1040724
681
medium severityInformation Exposure
SNYK-JS-FOLLOWREDIRECTS-6444610
646
medium severityServer-Side Request Forgery (SSRF)
SNYK-JS-IP-7148531
646
medium severityRegular Expression Denial of Service (ReDoS)
SNYK-JS-HTTPCACHESEMANTICS-3248783
586
medium severityRegular Expression Denial of Service (ReDoS)
SNYK-JS-LODASH-1018905
586
medium severityRegular Expression Denial of Service (ReDoS)
SNYK-JS-SIDEWAYFORMULA-3317169
489

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.
  • This PR was automatically created by Snyk using the credentials of a real user.
  • Snyk has automatically assigned this pull request, set who gets assigned.

Note:You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:
🧐 View latest project report
👩‍💻 Set who automatically gets assigned
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic


Learn how to fix vulnerabilities with free interactive lessons:

🦉 Improper Input Validation
🦉 Regular Expression Denial of Service (ReDoS)
🦉 Server-side Request Forgery (SSRF)
🦉 More lessons are available in Snyk Learn

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants

@s403o@islamghany@snyk-bot