[Snyk] Security upgrade electron-updater from 6.1.7 to 6.3.0 #23
DryRunSecurity / Sensitive Files Analyzer
succeeded
Sep 3, 2024 in 4s
DryRun Security
Details
Sensitive Files Analyzer Findings: 2 detected
⚠️ Potential Sensitive File desktop/package-lock.json (click for details)
Type | Potential Sensitive File |
Description | Node.js/ExpressJS/Next.js applications manage their dependencies through package.json and package-lock.json files. A change in these files may indicate an addition of a library/dependency which could introduce additional risk to the application either through vulnerable code, expansion of the application's attack surface via additional routes, or malicious code. |
Filename | desktop/package-lock.json |
CodeLink | Lines 10 to 16 in 1c3d5fc |
⚠️ Potential Sensitive File desktop/package.json (click for details)
Type | Potential Sensitive File |
Description | Node.js/ExpressJS/Next.js applications manage their dependencies through package.json and package-lock.json files. A change in these files may indicate an addition of a library/dependency which could introduce additional risk to the application either through vulnerable code, expansion of the application's attack surface via additional routes, or malicious code. |
Filename | desktop/package.json |
CodeLink | Lines 7 to 13 in 1c3d5fc |
Loading