Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore(deps): lock file maintenance #885

Open
wants to merge 1 commit into
base: next
Choose a base branch
from

chore(deps): lock file maintenance

e1b64d3
Select commit
Loading
Failed to load commit list.
Open

chore(deps): lock file maintenance #885

chore(deps): lock file maintenance
e1b64d3
Select commit
Loading
Failed to load commit list.
Codacy Production / Codacy Static Code Analysis required action Aug 13, 2024 in 0s

8 new security issues (0 max.).

Codacy Here is an overview of what got changed by this pull request:

Issues
======
+ Solved 13
- Added 8
           

See the complete overview on Codacy

Annotations

Check failure on line 1755 in yarn.lock

See this annotation in the file changed.

@codacy-production codacy-production / Codacy Static Code Analysis

yarn.lock#L1755

Insecure dependency @babel/traverse@7.20.1 (CVE-2023-45133: babel: arbitrary code execution) (update to 7.23.2)

Check failure on line 7479 in yarn.lock

See this annotation in the file changed.

@codacy-production codacy-production / Codacy Static Code Analysis

yarn.lock#L7479

Insecure dependency braces@3.0.2 (CVE-2024-4068: braces: fails to limit the number of characters it can handle) (update to 3.0.3)

Check failure on line 12978 in yarn.lock

See this annotation in the file changed.

@codacy-production codacy-production / Codacy Static Code Analysis

yarn.lock#L12978

Insecure dependency ip@1.1.5 (CVE-2023-42282: nodejs-ip: arbitrary code execution via the isPublic() function) (update to 1.1.9)

Check failure on line 12983 in yarn.lock

See this annotation in the file changed.

@codacy-production codacy-production / Codacy Static Code Analysis

yarn.lock#L12983

Insecure dependency ip@1.1.8 (CVE-2023-42282: nodejs-ip: arbitrary code execution via the isPublic() function) (update to 1.1.9)

Check failure on line 12988 in yarn.lock

See this annotation in the file changed.

@codacy-production codacy-production / Codacy Static Code Analysis

yarn.lock#L12988

Insecure dependency ip@2.0.0 (CVE-2023-42282: nodejs-ip: arbitrary code execution via the isPublic() function) (update to 2.0.1)

Check failure on line 14316 in yarn.lock

See this annotation in the file changed.

@codacy-production codacy-production / Codacy Static Code Analysis

yarn.lock#L14316

Insecure dependency json5@2.2.1 (CVE-2022-46175: json5: Prototype Pollution in JSON5 via Parse Method) (update to 2.2.2)

Check failure on line 15399 in yarn.lock

See this annotation in the file changed.

@codacy-production codacy-production / Codacy Static Code Analysis

yarn.lock#L15399

Insecure dependency minimatch@3.0.4 (CVE-2022-3517: nodejs-minimatch: ReDoS via the braceExpand function) (update to 3.0.5)

Check failure on line 17784 in yarn.lock

See this annotation in the file changed.

@codacy-production codacy-production / Codacy Static Code Analysis

yarn.lock#L17784

Insecure dependency postcss@8.4.6 (CVE-2023-44270: An issue was discovered in PostCSS before 8.4.31. The vulnerability af ...) (update to 8.4.31)