[Snyk] Fix for 2 vulnerabilities
Created by: GTVolk
This PR was automatically created by Snyk using the credentials of a real user.
Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.
Changes included in this PR
- Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
- package.json
Vulnerabilities that will be fixed
With an upgrade:
| Severity | Priority Score (*) | Issue | Breaking Change | Exploit Maturity |
|---|---|---|---|---|
|
661/1000 Why? Recently disclosed, Has a fix available, CVSS 7.5 |
Uncontrolled resource consumption SNYK-JS-BRACES-6838727 |
Yes | No Known Exploit | |
|
661/1000 Why? Recently disclosed, Has a fix available, CVSS 7.5 |
Inefficient Regular Expression Complexity SNYK-JS-MICROMATCH-6838728 |
Yes | No Known Exploit |
(*) Note that the real score may have changed since the PR was raised.
Commit messages
Package name: gatsby
The new version differs by 250 commits.- 78f8c7a chore(release): Publish
- 4dcdeb1 chore(gatsby): Add env log for build and remove incorrect log for functions (#36462) (#36466)
- 41de1f0 feat(gatsby): add partial hydration flag (#36436)
- b8c2072 fix(gatsby-source-graphql): add dataLoaderOptions validation to gatsby-source-graphql (#36112)
- b45debc chore(docs): fix incorrect closing tag in tutorial (#36459)
- 222793d chore(docs): Update plugin count in part 3 of the tutorial (#36455)
- 3222684 chore(docs): Fix page link to page 6 of remark tutorial (#36437)
- 0b458e6 chore(docs): Fix some typos (#36431)
- 1bf2358 fix(gatsby): remove resource query from warnings (#36439)
- 0d896ae chore(gatsby-plugin-sharp,gatsby-plugin-utils,gatsby-remark-images,gatsby-transformer-sharp): bump min potrace version (#36443)
- a21510e docs: plugin image / image cdn (#36423)
- 8043d7e feat(docs): add webiny to headless cms list (#36388)
- 240dfac chore: update using-image-processing example (#36421)
- b361081 chore(gatsby): drop eslint-plugin-graphql (#36364)
- 2e67161 chore(docs): Update tutorial to Head API (#36378)
- 77190f4 fix(deps): update starters and examples - gatsby (#36416)
- c92404b chore(changelogs): update changelogs (#36417)
- b7b3577 fix(gatsby-plugin-react-helmet): Typo in `onPreInit` warning (#36419)
- 7b3286c chore(docs): Add note about query name to MDX
- dc283d7 chore: Use GCS for pipeline tests (#36413)
- 3760a0e feat(gatsby): Add option to emit TS types during build (#36405)
- c01806e chore(release): Publish next
- a05201e fix(gatsby): Prevent errors if `Head` has root text node (#36402)
- 9d737b6 fix(gatsby): close parcel cache db before clearing cache and retrying (#36377)
Package name: gatsby-plugin-sharp
The new version differs by 250 commits.- 0a455df chore(release): Publish
- 91dc167 fix(gatsby): don't log FAST_DEV message for each worker (#32961) (#32967)
- f936c93 fix(gatsby): set staticQueryResultHash to new hash on data change (#32949) (#32966)
- ea161ce feat(gatsby-graphiql-explorer): upgrade to webpack 5 (#30642)
- 944e381 chore(release): Publish next
- d6326df fix(gatsby-core-utils): Switch `auth` option from got to username/password (#32665)
- cf9c066 fix(gatsby): add this typings to actions (#32210)
- 53aa88e chore: enable test parallelism (#32766)
- b7deabc fix(deps): update starters and examples - gatsby (#32843)
- 6025c84 chore(deps): update dependency katex to ^0.13.13 for gatsby-remark-katex (#32567)
- d87c5cb chore: enable lmdb by default and update node for next major (#32695)
- 818d6c1 feat(gatsby-plugin-gatsby-cloud): Add `disablePreviewUI` option (#32907)
- f556a00 chore: update changelogs (#32924)
- aba5eba feat(gatsby): enable webpack caching in development for everyone (#32922)
- ac7bd4e feat(gatsby-source-wordpress): allow path to js file for beforeChangeNode option (#32901)
- 1a87a8a docs(gatsby-source-wordpress): document content sync (#32768)
- 417df15 chore: re-generate changelogs (#32886)
- 1810874 fix(gatsby-source-wordpress): draft previews (#32915)
- 7c72ab8 chore(gatsby): remove unused packages (#32903)
- afb06d7 chore(docs): Add hint for MDX plugin in remark-plugin-tutorial (#32876)
- 1303ecb chore(docs): Update wording for "using-web-fonts" (#32902)
- 9589911 chore(docs): Fix code highlighting in part 6 (#32900)
- 568d4ce feat(gatsby-source-drupal): Use the collection count from JSON:API extras to enable parallel API requests for cold builds (#32883)
- 41f5337 fix(deps): update typescript to ^4.29.3 (#32614)
Check the changes in this PR to ensure they won't cause issues with your project.
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
Learn how to fix vulnerabilities with free interactive lessons: