Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Snyk] Upgrade rollup-plugin-typescript2 from 0.20.1 to 0.29.0 #7

Merged
merged 2 commits into from
Jan 12, 2021

Conversation

snyk-bot
Copy link

Snyk has created this PR to upgrade rollup-plugin-typescript2 from 0.20.1 to 0.29.0.

:sparkles: Snyk has automatically assigned this pull request, [set who gets assigned](https://app.snyk.io/org/ryan-ally/project/e3759297-9acd-4702-8b55-3db27c9ac2d0/settings/integration?utm_source=github&utm_medium=upgrade-pr/settings/integration).

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 19 versions ahead of your current version.
  • The recommended version was released 2 months ago, on 2020-10-30.

The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Prototype Pollution
SNYK-JS-CACHEBASE-1054631
691/1000
Why? Recently disclosed, Has a fix available, CVSS 8.1
No Known Exploit
Validation Bypass
SNYK-JS-KINDOF-537849
691/1000
Why? Recently disclosed, Has a fix available, CVSS 8.1
Proof of Concept

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: rollup-plugin-typescript2
  • 0.29.0 - 2020-10-30

    #249 use compilerOptions.rootDir to filter files

  • 0.28.0 - 2020-10-16

    #221

  • 0.27.3 - 2020-09-25

    PR #243

    Updating dependencies

  • 0.27.2 - 2020-08-07

    Dependency updates

  • 0.27.1 - 2020-05-12
    • package version
  • 0.27.0 - 2020-03-27
    • updated dependencies and some type changes
  • 0.26.0 - 2020-02-12

    #203 Updating object-hash to 2.0.2 with async support.

    Updating other dependencies.

  • 0.25.3 - 2019-12-03

    cwd option

  • 0.25.2 - 2019-11-05

    Merge branch 'marijnh-restore-emit-file'

  • 0.24.3 - 2019-09-26
  • 0.24.2 - 2019-09-12
  • 0.24.1 - 2019-09-09
  • 0.24.0 - 2019-08-28
  • 0.23.0 - 2019-08-23
  • 0.22.1 - 2019-07-26
  • 0.22.0 - 2019-07-11
  • 0.21.2 - 2019-06-17
  • 0.21.1 - 2019-05-17
  • 0.21.0 - 2019-04-23
  • 0.20.1 - 2019-03-13
from rollup-plugin-typescript2 GitHub release notes
Commit messages
Package name: rollup-plugin-typescript2

Compare


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

👩‍💻 Set who automatically gets assigned

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

@ryan-ally ryan-ally merged commit 8aaab36 into master Jan 12, 2021
@ryan-ally ryan-ally deleted the snyk-upgrade-b6772f8f1735a14dc1009582a1efee60 branch January 12, 2021 21:34
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants