[Snyk] Upgrade: cookie-parser, exceljs, express, express-validator, node-fetch, https-localhost, nodemailer, hypersign-auth-js-sdk, mongoose, url-parse, web3 #1979
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Snyk has created this PR to upgrade multiple dependencies.
👯 The following dependencies are linked and will therefore be updated together.ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
cookie-parser
from 1.4.5 to 1.4.6 | 1 version ahead of your current version | 3 years ago
on 2021-11-16
exceljs
from 4.2.1 to 4.4.0 | 2 versions ahead of your current version | a year ago
on 2023-10-19
express
from 4.17.1 to 4.19.2 | 9 versions ahead of your current version | 5 months ago
on 2024-03-25
express-validator
from 6.12.0 to 6.15.0 | 8 versions ahead of your current version | 2 years ago
on 2023-02-16
node-fetch
from 2.6.1 to 2.7.0 | 13 versions ahead of your current version | a year ago
on 2023-08-23
https-localhost
from 4.6.5 to 4.7.1 | 2 versions ahead of your current version | 3 years ago
on 2022-02-16
nodemailer
from 6.6.2 to 6.9.14 | 28 versions ahead of your current version | 3 months ago
on 2024-06-19
hypersign-auth-js-sdk
from 2.0.4 to 2.0.8 | 4 versions ahead of your current version | 3 years ago
on 2021-10-10
mongoose
from 5.12.14 to 5.13.22 | 24 versions ahead of your current version | 8 months ago
on 2024-01-02
url-parse
from 1.5.1 to 1.5.10 | 9 versions ahead of your current version | 3 years ago
on 2022-02-22
web3
from 1.3.6 to 1.10.4 | 50 versions ahead of your current version | 7 months ago
on 2024-02-05
Issues fixed by the recommended upgrade:
SNYK-JS-MONGOOSE-2961688
SNYK-JS-MONGOOSE-5777721
SNYK-JS-TAR-1579147
SNYK-JS-TAR-1579152
SNYK-JS-TAR-1579155
SNYK-JS-DECODEURICOMPONENT-3149970
SNYK-JS-URLPARSE-2407770
SNYK-JS-SIMPLEGET-2361683
SNYK-JS-TAR-1536528
SNYK-JS-TAR-1536531
SNYK-JS-BROWSERIFYSIGN-6037026
SNYK-JS-JSZIP-1251497
SNYK-JS-JSZIP-3188562
SNYK-JS-MPATH-1577289
SNYK-JS-NODEFETCH-2342118
SNYK-JS-UGLIFYJS-1727251
SNYK-JS-URLPARSE-1533425
SNYK-JS-URLPARSE-2401205
SNYK-JS-URLPARSE-2407759
SNYK-JS-GOT-2932019
SNYK-JS-GOT-2932019
SNYK-JS-MONGODB-5871303
SNYK-JS-NODEMAILER-6219989
SNYK-JS-URLPARSE-2412697
SNYK-JS-VALIDATOR-1090600
SNYK-JS-EXPRESS-6474509
SNYK-JS-COOKIEJAR-3149984
SNYK-JS-TAR-1536758
Release notes
Package name: cookie-parser
Package name: exceljs
Dear ExcelJS Enthusiasts,
Your commitment and insights have paved the way for this remarkable release. A deep thank you to every contributor and user! Let's keep the momentum going: join our thriving Discord community and be a part of shaping ExcelJS's next chapter.
Dive in, experiment with the new features, and share your experiences. Your feedback drives us forward.
Together, we innovate. 🚀
Changelog Highlights:
New Contributors
Full Changelog: v4.3.0...v4.4.0
#2351
4.3.0
4.2.1
Package name: express
What's Changed
Full Changelog: 4.19.0...4.19.1
What's Changed
New Contributors
Full Changelog: 4.18.3...4.19.0
Main Changes
Other Changes