Skip to content
This repository has been archived by the owner on Jan 25, 2024. It is now read-only.

[Snyk] Security upgrade react-cosmos from 4.6.4 to 6.0.0 #74

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

mkucharz
Copy link
Member

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

Changes included in this PR

  • Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
    • package.json
    • package-lock.json

Vulnerabilities that will be fixed

With an upgrade:
Severity Priority Score (*) Issue Breaking Change Exploit Maturity
high severity 696/1000
Why? Proof of Concept exploit, Has a fix available, CVSS 7.5
Denial of Service (DoS)
SNYK-JS-ENGINEIO-1056749
Yes Proof of Concept
medium severity 631/1000
Why? Proof of Concept exploit, Has a fix available, CVSS 6.2
Missing Release of Resource after Effective Lifetime
SNYK-JS-INFLIGHT-6095116
Yes Proof of Concept

(*) Note that the real score may have changed since the PR was raised.

Commit messages
Package name: react-cosmos The new version differs by 250 commits.
  • db4fd8f [release] v6.0.0
  • a687430 Mark getFixtures API as experimental (#1603)
  • f61f2b6 Upgrade dependencies and remove pkg-up (#1602)
  • da8b95e Improve Community Standards (#1601)
  • 0a0d308 [release] v6.0.0-beta.13
  • 86b9647 Fix commit prefix
  • 4cc7c46 [skip ci] v6.0.0-beta.12
  • 3cfdcfd Publish website on release commits (#1600)
  • 53cb725 [skip ci] v6.0.0-beta.11
  • f128af2 Simplify keyboard shortcuts (#1599)
  • 561b52a Update app favicon and docs links (#1598)
  • 50fdd73 Remove old website (#1597)
  • 55752ef Add OpenGraph tags to website (#1596)
  • 11ad824 Add .ico favicon and update logo (#1595)
  • 10c9ae9 Add link to UI features on homepage (#1594)
  • c86a8ee Add benefits to homepage (#1593)
  • d60c866 Improve docs readability (#1592)
  • c00ca07 Ignore ts-node warnings (#1591)
  • 01bd836 Add features to home page (#1590)
  • 17b8ccb Add architecture docs (#1589)
  • c9d42ed Add table with config options to docs (#1588)
  • 6e8136d [skip ci] v6.0.0-beta.10
  • f94afb4 Prevent auto opening Cosmos renderer in browser (#1587)
  • 595c147 Add instructions for installing Vite (#1586)

See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:
🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic


Learn how to fix vulnerabilities with free interactive lessons:

🦉 Denial of Service (DoS)

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants