-
Notifications
You must be signed in to change notification settings - Fork 0
[Snyk] Upgrade semver from 7.3.2 to 7.3.4 #9
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
base: master
Are you sure you want to change the base?
Conversation
Snyk has created this PR to upgrade semver from 7.3.2 to 7.3.4. See this package in npm: https://www.npmjs.com/package/semver See this project in Snyk: https://app.snyk.io/org/turkdevops/project/29b53065-4ed2-45d8-8ba9-453cd1009983?utm_source=github&utm_medium=upgrade-pr
Thanks for your submission. It appears that you've created a pull request using one of our repository's branches. Since this is Thanks again! |
*Ruff* 🐶 I wasn't able to find any Docker Compose files in your repository at any of the given paths in the Files checked:
What is this?Pull Dog is a GitHub app that makes test environments for your pull requests using Docker, from a Visit our website to learn more. Commands
TroubleshootingNeed help? Don't hesitate to file an issue in our repository Configuration {
"isLazy": false,
"dockerComposeYmlFilePaths": [
"docker-compose.yml"
],
"expiry": "00:00:00",
"conversationMode": "singleComment"
} Trace ID |
Hard-Coded Secrets (12)
https://github.com/turkdevops/create-react-app/blob/e9c31a31c3f149a3c38b92e857ee47c9b9cd78b0/packages/react-error-overlay/fixtures/bundle.mjs#L62 https://github.com/turkdevops/create-react-app/blob/e9c31a31c3f149a3c38b92e857ee47c9b9cd78b0/packages/react-error-overlay/fixtures/bundle.mjs#L8103 https://github.com/turkdevops/create-react-app/blob/e9c31a31c3f149a3c38b92e857ee47c9b9cd78b0/packages/react-error-overlay/fixtures/bundle.mjs#L15667 https://github.com/turkdevops/create-react-app/blob/e9c31a31c3f149a3c38b92e857ee47c9b9cd78b0/packages/react-error-overlay/fixtures/bundle.mjs#L39583 https://github.com/turkdevops/create-react-app/blob/e9c31a31c3f149a3c38b92e857ee47c9b9cd78b0/packages/react-error-overlay/fixtures/bundle.mjs.map#L1 https://github.com/turkdevops/create-react-app/blob/e9c31a31c3f149a3c38b92e857ee47c9b9cd78b0/packages/react-error-overlay/fixtures/bundle_u.mjs#L62 https://github.com/turkdevops/create-react-app/blob/e9c31a31c3f149a3c38b92e857ee47c9b9cd78b0/packages/react-error-overlay/fixtures/bundle_u.mjs#L8239 https://github.com/turkdevops/create-react-app/blob/e9c31a31c3f149a3c38b92e857ee47c9b9cd78b0/packages/react-error-overlay/fixtures/bundle_u.mjs#L15827 https://github.com/turkdevops/create-react-app/blob/e9c31a31c3f149a3c38b92e857ee47c9b9cd78b0/packages/react-error-overlay/fixtures/bundle_u.mjs#L39709 https://github.com/turkdevops/create-react-app/blob/e9c31a31c3f149a3c38b92e857ee47c9b9cd78b0/packages/react-error-overlay/fixtures/bundle_u.mjs.map#L1 More info on how to fix Hard-Coded Secrets in General. Insecure Use of Dangerous Function (31)
Line 13 in e9c31a3
create-react-app/tasks/screencast.js Line 41 in e9c31a3
More info on how to fix Insecure Use of Dangerous Function in Javascript. Insecure File Management (111)
create-react-app/packages/react-scripts/fixtures/kitchensink/template/integration/initDOM.js Line 21 in e9c31a3
Line 64 in e9c31a3
Line 67 in e9c31a3
Line 73 in e9c31a3
Line 91 in e9c31a3
create-react-app/tasks/screencast.js Line 47 in e9c31a3
More info on how to fix Insecure File Management in Javascript. Insecure Use of Regular Expressions (16)
More info on how to fix Insecure Use of Regular Expressions in Javascript. Insecure Use of Language/Framework API (1)
More info on how to fix Insecure Use of Language/Framework API in Javascript. Information Disclosure (1)More info on how to fix Information Disclosure in Javascript. 👉 Go to the dashboard for detailed results. 📥 Happy? Share your feedback with us. |
Snyk has created this PR to upgrade semver from 7.3.2 to 7.3.4.
ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
Release notes
Package name: semver
7.3.4
7.3.3
7.3.2
Commit messages
Package name: semver
Compare
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.
For more information:
🧐 View latest project report
🛠 Adjust upgrade PR settings
🔕 Ignore this dependency or unsubscribe from future upgrade PRs