[Snyk] Security upgrade @babel/traverse from 7.1.4 to 7.14.5#45
[Snyk] Security upgrade @babel/traverse from 7.1.4 to 7.14.5#45PinkDiamond1 wants to merge 1 commit intomasterfrom
Conversation
…/clusterfuzz/js_fuzzer/package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-LODASH-567746 - https://snyk.io/vuln/SNYK-JS-LODASH-6139239 - https://snyk.io/vuln/SNYK-JS-LODASH-450202 - https://snyk.io/vuln/SNYK-JS-LODASH-608086 - https://snyk.io/vuln/SNYK-JS-LODASH-1040724 - https://snyk.io/vuln/SNYK-JS-LODASH-1018905 - https://snyk.io/vuln/npm:debug:20170905
|
New and removed dependencies detected. Learn more about Socket for GitHub ↗︎
🚮 Removed packages: npm/mkdirp-infer-owner@2.0.0), npm/mkdirp@1.0.4), npm/ms@2.1.3), npm/node-gyp@7.1.2), npm/nopt@5.0.0), npm/npm-audit-report@2.1.5), npm/npm-install-checks@4.0.0), npm/npm-package-arg@8.1.5), npm/npm-pick-manifest@6.1.1), npm/npm-profile@5.0.4), npm/npm-registry-fetch@11.0.0), npm/npm-user-validate@1.0.1), npm/npmlog@5.0.1), npm/opener@1.5.2), npm/pacote@11.3.5), npm/parse-conflict-json@1.1.1), npm/read-package-json-fast@2.0.3), npm/read-package-json@4.1.2), npm/read@1.0.7), npm/readdir-scoped-modules@1.1.0), npm/rimraf@3.0.2), npm/semver@7.6.3), npm/spawk@1.8.2), npm/ssri@8.0.1), npm/tap@15.2.3), npm/tar@6.2.1), npm/text-table@0.2.0), npm/tiny-relative-date@1.3.0), npm/treeverse@1.0.4), npm/validate-npm-package-name@3.0.0), npm/which@2.0.2), npm/write-file-atomic@3.0.3) |
Snyk has created this PR to fix 7 vulnerabilities in the npm dependencies of this project.
Snyk changed the following file(s):
deps/v8/tools/clusterfuzz/js_fuzzer/package.jsondeps/v8/tools/clusterfuzz/js_fuzzer/package-lock.jsonVulnerabilities that will be fixed with an upgrade:
SNYK-JS-LODASH-567746
SNYK-JS-LODASH-6139239
SNYK-JS-LODASH-450202
SNYK-JS-LODASH-608086
SNYK-JS-LODASH-1040724
SNYK-JS-LODASH-1018905
npm:debug:20170905
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Regular Expression Denial of Service (ReDoS)
🦉 Code Injection
🦉 Prototype Pollution