Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Snyk] Upgrade semantic-release from 22.0.6 to 22.0.12 #88

Closed

Conversation

MaxMood96
Copy link
Owner

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade semantic-release from 22.0.6 to 22.0.12.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 6 versions ahead of your current version.
  • The recommended version was released 2 months ago, on 2023-12-12.

The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Regular Expression Denial of Service (ReDoS)
SNYK-JS-SEMVER-3247795
482/1000
Why? Proof of Concept exploit, CVSS 7.5
Proof of Concept
Regular Expression Denial of Service (ReDoS)
SNYK-JS-SEMVER-3247795
482/1000
Why? Proof of Concept exploit, CVSS 7.5
Proof of Concept
Regular Expression Denial of Service (ReDoS)
SNYK-JS-SEMVER-3247795
482/1000
Why? Proof of Concept exploit, CVSS 7.5
Proof of Concept

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: semantic-release from semantic-release GitHub release notes
Commit messages
Package name: semantic-release
  • f6f1bf1 fix: Revert "fix(deps): update dependency cosmiconfig to v9" (#3104)
  • b38cd2e fix(deps): update dependency cosmiconfig to v9
  • 3722204 chore(deps): lock file maintenance (#3101)
  • 1fd1ce8 chore(deps): update dependency prettier to v3.1.1 (#3099)
  • 00e7ca8 docs(getting-started): fix rendering through gitbook
  • 9912d34 docs(cli): stop recommending setup with the cli (#3098)
  • f72e493 ci(action): update github/codeql-action action to v2.22.9 (#3094)
  • e8d3b2e chore(deps): update dependency ava to v6.0.1 (#3092)
  • 88efead fix: revert updating cosmiconfig to v9
  • 3a2acce Revert "fix(deps): update dependency cosmiconfig to v9" (#3090)
  • 8b0dbd2 fix(deps): update dependency cosmiconfig to v9 (#3072)
  • 5aa56da chore(deps): update dependency ava to v6 (#3087)
  • c516d59 chore(deps): lock file maintenance (#3086)
  • 6799548 chore(deps): update dependency got to v14 (#3081)
  • 14a5755 chore(deps): update dependency publint to v0.2.6 (#3083)
  • f6fb0fc chore(deps): update dependency fs-extra to v11.2.0 (#3077)
  • 5ca3d78 chore(deps): update dependency nock to v13.4.0 (#3076)
  • cac1dbb chore(deps): lock file maintenance (#3073)
  • 29aefa4 ci(action): update github/codeql-action action to v2.22.8 (#3071)
  • 3d8c715 docs: fix broken link to 'sentimental versioning' resource (#3067)
  • ea446a4 chore(deps): lock file maintenance (#3068)
  • 0d06f62 fix: support windows absolute extends (#3062)
  • 26df1d2 ci(action): update github/codeql-action action to v2.22.7 (#3061)
  • b3a87bf chore(deps): update dependency ls-engines to v0.9.1 (#3060)

Compare


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

Copy link

stale bot commented Apr 27, 2024

This issue has been automatically marked as stale because it has not had recent activity. It will be closed if no further activity occurs. We try to do our best, but nock is maintained by volunteers and there is only so much we can do at a time. Thank you for your contributions.

@stale stale bot added the stale label Apr 27, 2024
@stale stale bot closed this May 7, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
2 participants