forked from jlord/git-it-electron
-
Notifications
You must be signed in to change notification settings - Fork 1
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[Snyk] Fix for 174 vulnerabilities #24
Open
MarcelRaschke
wants to merge
4
commits into
master
Choose a base branch
from
snyk-fix-c7a6f96d4be6ed931f8d15150e5db371
base: master
Could not load branches
Branch not found: {{ refName }}
Loading
Could not load tags
Nothing to show
Loading
Are you sure you want to change the base?
Some commits from the old base branch may be removed from the timeline,
and old review comments may become outdated.
Open
Conversation
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-ANSIREGEX-1583908 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1021884 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1041745 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1047306 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1048693 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1049321 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1049323 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1049547 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1050424 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1050427 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1050882 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1050999 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1051000 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1064555 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1064558 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1064561 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1065981 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1070013 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1070014 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1070015 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1085647 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1085705 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1085994 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1085996 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1085998 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1086693 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1086694 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1086695 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1087442 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1088600 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1088602 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1252279 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1252280 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1253279 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1253281 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1257943 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1258207 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1259349 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1260586 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1261111 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1277203 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1277205 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1277526 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1278596 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1296553 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1296555 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1296557 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1296559 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1296561 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1296563 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1296565 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1312313 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1312314 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1312315 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1313765 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1313767 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1314896 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1315151 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1315668 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1533614 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1534881 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1534882 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1534883 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1534884 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1536579 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1536581 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1536587 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1585619 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1586050 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1656742 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1656743 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1656745 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1656746 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1656752 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1727342 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1727344 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1731315 - https://snyk.io/vuln/SNYK-JS-ELECTRON-174045 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1910985 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1910987 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1910988 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1910991 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1911949 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1912074 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1912075 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1912082 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1912084 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1912085 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1924893 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1924894 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1924895 - https://snyk.io/vuln/SNYK-JS-ELECTRON-1930826 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2322001 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2329155 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2329162 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2329257 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2330890 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2332173 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2332176 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2338684 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2339883 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2351961 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2404183 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2404184 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2414027 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2420972 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2420994 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2422385 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2431353 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2434822 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2434824 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2774694 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2803052 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2803053 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2806357 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2806730 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2807802 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2807803 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2807804 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2807809 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2808872 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2808873 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2808874 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2812497 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2812499 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2824110 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2838863 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2869408 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2869410 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2870632 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2932172 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2934721 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2946881 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2946891 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2961655 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2977510 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2977512 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2978483 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2978519 - https://snyk.io/vuln/SNYK-JS-ELECTRON-483050 - https://snyk.io/vuln/SNYK-JS-ELECTRON-483056 - https://snyk.io/vuln/SNYK-JS-ELECTRON-564272 - https://snyk.io/vuln/SNYK-JS-ELECTRON-565051 - https://snyk.io/vuln/SNYK-JS-ELECTRON-565052 - https://snyk.io/vuln/SNYK-JS-ELECTRON-565362 - https://snyk.io/vuln/SNYK-JS-ELECTRON-565366 - https://snyk.io/vuln/SNYK-JS-ELECTRON-565368 - https://snyk.io/vuln/SNYK-JS-ELECTRON-565441 - https://snyk.io/vuln/SNYK-JS-ELECTRON-565488 - https://snyk.io/vuln/SNYK-JS-ELECTRON-565490 - https://snyk.io/vuln/SNYK-JS-ELECTRON-565494 - https://snyk.io/vuln/SNYK-JS-ELECTRON-565571 - https://snyk.io/vuln/SNYK-JS-ELECTRON-565705 - https://snyk.io/vuln/SNYK-JS-ELECTRON-565709 - https://snyk.io/vuln/SNYK-JS-ELECTRON-565713 - https://snyk.io/vuln/SNYK-JS-ELECTRON-570624 - https://snyk.io/vuln/SNYK-JS-ELECTRON-570833 - https://snyk.io/vuln/SNYK-JS-ELECTRON-575393 - https://snyk.io/vuln/SNYK-JS-ELECTRON-575394 - https://snyk.io/vuln/SNYK-JS-ELECTRON-575395 - https://snyk.io/vuln/SNYK-JS-ELECTRON-575396 - https://snyk.io/vuln/SNYK-JS-LODASH-1018905 - https://snyk.io/vuln/SNYK-JS-LODASH-1040724 - https://snyk.io/vuln/SNYK-JS-LODASH-450202 - https://snyk.io/vuln/SNYK-JS-LODASH-567746 - https://snyk.io/vuln/SNYK-JS-LODASH-608086 - https://snyk.io/vuln/SNYK-JS-LODASH-73638 - https://snyk.io/vuln/SNYK-JS-LODASH-73639 - https://snyk.io/vuln/SNYK-JS-MINIMATCH-1019388 - https://snyk.io/vuln/SNYK-JS-PLIST-2405644 - https://snyk.io/vuln/SNYK-JS-XMLDOM-1084960 - https://snyk.io/vuln/npm:lodash:20180130 - https://snyk.io/vuln/npm:minimatch:20160620 - https://snyk.io/vuln/npm:plist:20180219 The following vulnerabilities are fixed with a Snyk patch: - https://snyk.io/vuln/SNYK-JS-LODASH-567746 - https://snyk.io/vuln/npm:lodash:20180130
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR was automatically created by Snyk using the credentials of a real user.
Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.
Changes included in this PR
Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
Adding or updating a Snyk policy (.snyk) file; this file is required in order to apply Snyk vulnerability patches.
Find out more.
Vulnerabilities that will be fixed
With an upgrade:
Why? Proof of Concept exploit, Has a fix available, CVSS 7.5
SNYK-JS-ANSIREGEX-1583908
Why? Mature exploit, Has a fix available, CVSS 7.5
SNYK-JS-ELECTRON-1021884
Why? Mature exploit, Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1041745
Why? Mature exploit, Has a fix available, CVSS 7.3
SNYK-JS-ELECTRON-1047306
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1048693
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1049321
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1049323
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1049547
Why? Has a fix available, CVSS 8.2
SNYK-JS-ELECTRON-1050424
Why? Has a fix available, CVSS 6.5
SNYK-JS-ELECTRON-1050427
Why? Mature exploit, Has a fix available, CVSS 7.3
SNYK-JS-ELECTRON-1050882
Why? Has a fix available, CVSS 9.8
SNYK-JS-ELECTRON-1050999
Why? Has a fix available, CVSS 7.5
SNYK-JS-ELECTRON-1051000
Why? Proof of Concept exploit, Has a fix available, CVSS 6.5
SNYK-JS-ELECTRON-1064555
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1064558
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1064561
Why? Has a fix available, CVSS 5.3
SNYK-JS-ELECTRON-1065981
Why? Has a fix available, CVSS 9.8
SNYK-JS-ELECTRON-1070013
Why? Has a fix available, CVSS 7.3
SNYK-JS-ELECTRON-1070014
Why? Has a fix available, CVSS 5
SNYK-JS-ELECTRON-1070015
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1085647
Why? Mature exploit, Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1085705
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1085994
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1085996
Why? Has a fix available, CVSS 5.3
SNYK-JS-ELECTRON-1085998
Why? Has a fix available, CVSS 8.6
SNYK-JS-ELECTRON-1086693
Why? Has a fix available, CVSS 6.5
SNYK-JS-ELECTRON-1086694
Why? Has a fix available, CVSS 8.6
SNYK-JS-ELECTRON-1086695
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1087442
Why? Mature exploit, Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1088600
Why? Has a fix available, CVSS 8.1
SNYK-JS-ELECTRON-1088602
Why? Mature exploit, Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1252279
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1252280
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1253279
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1253281
Why? Mature exploit, Has a fix available, CVSS 9.8
SNYK-JS-ELECTRON-1257943
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1258207
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1259349
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1260586
Why? Has a fix available, CVSS 7.4
SNYK-JS-ELECTRON-1261111
Why? Has a fix available, CVSS 7.5
SNYK-JS-ELECTRON-1277203
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1277205
Why? Has a fix available, CVSS 4.8
SNYK-JS-ELECTRON-1277526
Why? Has a fix available, CVSS 3.7
SNYK-JS-ELECTRON-1278596
Why? Has a fix available, CVSS 7.3
SNYK-JS-ELECTRON-1296553
Why? Has a fix available, CVSS 7.3
SNYK-JS-ELECTRON-1296555
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1296557
Why? Proof of Concept exploit, Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1296559
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1296561
Why? Has a fix available, CVSS 7.3
SNYK-JS-ELECTRON-1296563
Why? Has a fix available, CVSS 7.3
SNYK-JS-ELECTRON-1296565
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1312313
Why? Mature exploit, Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1312314
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1312315
Why? Mature exploit, Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1313765
Why? Has a fix available, CVSS 6.3
SNYK-JS-ELECTRON-1313767
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1314896
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1315151
Why? Has a fix available, CVSS 9.8
SNYK-JS-ELECTRON-1315668
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1533614
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1534881
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1534882
Why? Mature exploit, Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1534883
Why? Has a fix available, CVSS 6.5
SNYK-JS-ELECTRON-1534884
Why? Has a fix available, CVSS 6.3
SNYK-JS-ELECTRON-1536579
Why? Proof of Concept exploit, Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1536581
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1536587
Why? Mature exploit, Has a fix available, CVSS 5.3
SNYK-JS-ELECTRON-1585619
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1586050
Why? Has a fix available, CVSS 7.3
SNYK-JS-ELECTRON-1656742
Why? Mature exploit, Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1656743
Why? Has a fix available, CVSS 7.3
SNYK-JS-ELECTRON-1656745
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1656746
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1656752
Why? Has a fix available, CVSS 6.5
SNYK-JS-ELECTRON-1727342
Why? Mature exploit, Has a fix available, CVSS 5.3
SNYK-JS-ELECTRON-1727344
Why? Proof of Concept exploit, Has a fix available, CVSS 5.6
SNYK-JS-ELECTRON-1731315
Why? Mature exploit, Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-174045
Why? Mature exploit, Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1910985
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1910987
Why? Has a fix available, CVSS 4.3
SNYK-JS-ELECTRON-1910988
Why? Has a fix available, CVSS 4.3
SNYK-JS-ELECTRON-1910991
Why? Proof of Concept exploit, Has a fix available, CVSS 9.8
SNYK-JS-ELECTRON-1911949
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1912074
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1912075
Why? Has a fix available, CVSS 7.3
SNYK-JS-ELECTRON-1912082
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1912084
Why? Mature exploit, Has a fix available, CVSS 6.5
SNYK-JS-ELECTRON-1912085
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1924893
Why? Has a fix available, CVSS 5.6
SNYK-JS-ELECTRON-1924894
Why? Has a fix available, CVSS 6.5
SNYK-JS-ELECTRON-1924895
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-1930826
Why? Mature exploit, Has a fix available, CVSS 7.3
SNYK-JS-ELECTRON-2322001
Why? Has a fix available, CVSS 6.5
SNYK-JS-ELECTRON-2329155
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-2329162
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-2329257
Why? Has a fix available, CVSS 8.8
SNYK-JS-ELECTRON-2330890
Why?
SNYK-JS-ELECTRON-2332173
Why?
SNYK-JS-ELECTRON-2332176
Why?
SNYK-JS-ELECTRON-2338684
Why?
SNYK-JS-ELECTRON-2339883
Why?
SNYK-JS-ELECTRON-2351961
Why?
SNYK-JS-ELECTRON-2404183
Why?
SNYK-JS-ELECTRON-2404184
Why?
SNYK-JS-ELECTRON-2414027
Why?
SNYK-JS-ELECTRON-2420972
Why?
SNYK-JS-ELECTRON-2420994
Why?
SNYK-JS-ELECTRON-2422385
Why?
SNYK-JS-ELECTRON-2431353
Why?
SNYK-JS-ELECTRON-2434822
Why?
SNYK-JS-ELECTRON-2434824
Why?
SNYK-JS-ELECTRON-2774694
Why?
SNYK-JS-ELECTRON-2803052
Why?
SNYK-JS-ELECTRON-2803053
Why?
SNYK-JS-ELECTRON-2806357
Why?
SNYK-JS-ELECTRON-2806730
Why?
SNYK-JS-ELECTRON-2807802
Why?
SNYK-JS-ELECTRON-2807803
Why?
SNYK-JS-ELECTRON-2807804
Why?
SNYK-JS-ELECTRON-2807809
Why?
SNYK-JS-ELECTRON-2808872
Why?
SNYK-JS-ELECTRON-2808873
Why?
SNYK-JS-ELECTRON-2808874
Why?
SNYK-JS-ELECTRON-2812497
Why?
SNYK-JS-ELECTRON-2812499
Why?
SNYK-JS-ELECTRON-2824110
Why?
SNYK-JS-ELECTRON-2838863
Why?
SNYK-JS-ELECTRON-2869408
Why?
SNYK-JS-ELECTRON-2869410
Why?
SNYK-JS-ELECTRON-2870632
Why?
SNYK-JS-ELECTRON-2932172
Why?
SNYK-JS-ELECTRON-2934721
Why?
SNYK-JS-ELECTRON-2946881
Why?
SNYK-JS-ELECTRON-2946891
Why?
SNYK-JS-ELECTRON-2961655
Why?
SNYK-JS-ELECTRON-2977510
Why?
SNYK-JS-ELECTRON-2977512
Why?
SNYK-JS-ELECTRON-2978483
Why?
SNYK-JS-ELECTRON-2978519
Why?
SNYK-JS-ELECTRON-483050
Why?
SNYK-JS-ELECTRON-483056
Why?
SNYK-JS-ELECTRON-564272
Why?
SNYK-JS-ELECTRON-565051
Why?
SNYK-JS-ELECTRON-565052
Why?
SNYK-JS-ELECTRON-565362
Why?
SNYK-JS-ELECTRON-565366
Why?
SNYK-JS-ELECTRON-565368
Why?
SNYK-JS-ELECTRON-565441
Why?
SNYK-JS-ELECTRON-565488
Why?
SNYK-JS-ELECTRON-565490
Why?
SNYK-JS-ELECTRON-565494
Why?
SNYK-JS-ELECTRON-565571
Why?
SNYK-JS-ELECTRON-565705
Why?
SNYK-JS-ELECTRON-565709
Why?
SNYK-JS-ELECTRON-565713
Why?
SNYK-JS-ELECTRON-570624
Why?
SNYK-JS-ELECTRON-570833
Why?
SNYK-JS-ELECTRON-575393
Why?
SNYK-JS-ELECTRON-575394
Why?
SNYK-JS-ELECTRON-575395
Why?
SNYK-JS-ELECTRON-575396
Why?
SNYK-JS-LODASH-1018905
Why?
SNYK-JS-LODASH-1040724
Why?
SNYK-JS-LODASH-450202
Why?
SNYK-JS-LODASH-567746
Why?
SNYK-JS-LODASH-608086
Why?
SNYK-JS-LODASH-73638
Why?
SNYK-JS-LODASH-73639
Why?
SNYK-JS-MINIMATCH-1019388
Why?
SNYK-JS-PLIST-2405644
Why?
SNYK-JS-XMLDOM-1084960
Why? Proof of Concept exploit, Has a fix available, CVSS 6.3
npm:lodash:20180130
Why? Has a fix available, CVSS 7.5
npm:minimatch:20160620
Why? Proof of Concept exploit, Has a fix available, CVSS 7.1
npm:plist:20180219
(*) Note that the real score may have changed since the PR was raised.
Commit messages
Package name: electron-packager
The new version differs by 243 commits.See the full diff
Package name: standard
The new version differs by 66 commits.See the full diff
With a Snyk patch:
Why?
SNYK-JS-LODASH-567746
Why? Proof of Concept exploit, Has a fix available, CVSS 6.3
npm:lodash:20180130
(*) Note that the real score may have changed since the PR was raised.
Check the changes in this PR to ensure they won't cause issues with your project.
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
🛠 Adjust project settings
📚 Read more about Snyk's upgrade and patch logic
[//]: # (snyk:metadata:{"prId":"0a0f082f-e560-4532-8251-b331946807ee","prPublicId":"0a0f082f-e560-4532-8251-b331946807ee","dependencies":[{"name":"electron","from":"1.8.8","to":"18.3.9"},{"name":"electron-packager","from":"8.7.2","to":"13.0.0"},{"name":"standard","from":"5.4.1","to":"6.0.0"}],"packageManager":"npm","projectPublicId":"e8c2b53c-9a15-4875-acb0-e68b715a0271","projectUrl":"https://app.snyk.io/org/marcelraschke/project/e8c2b53c-9a15-4875-acb0-e68b715a0271?utm_source=github&utm_medium=referral&page=fix-pr","type":"auto","patch":["SNYK-JS-LODASH-567746","npm:lodash:20180130"],"vulns":["SNYK-JS-ANSIREGEX-1583908","SNYK-JS-ELECTRON-1021884","SNYK-JS-ELECTRON-1041745","SNYK-JS-ELECTRON-1047306","SNYK-JS-ELECTRON-1048693","SNYK-JS-ELECTRON-1049321","SNYK-JS-ELECTRON-1049323","SNYK-JS-ELECTRON-1049547","SNYK-JS-ELECTRON-1050424","SNYK-JS-ELECTRON-1050427","SNYK-JS-ELECTRON-1050882","SNYK-JS-ELECTRON-1050999","SNYK-JS-ELECTRON-1051000","SNYK-JS-ELECTRON-1064555","SNYK-JS-ELECTRON-1064558","SNYK-JS-ELECTRON-1064561","SNYK-JS-ELECTRON-1065981","SNYK-JS-ELECTRON-1070013","SNYK-JS-ELECTRON-1070014","SNYK-JS-ELECTRON-1070015","SNYK-JS-ELECTRON-1085647","SNYK-JS-ELECTRON-1085705","SNYK-JS-ELECTRON-1085994","SNYK-JS-ELECTRON-1085996","SNYK-JS-ELECTRON-1085998","SNYK-JS-ELECTRON-1086693","SNYK-JS-ELECTRON-1086694","SNYK-JS-ELECTRON-1086695","SNYK-JS-ELECTRON-1087442","SNYK-JS-ELECTRON-1088600","SNYK-JS-ELECTRON-1088602","SNYK-JS-ELECTRON-1252279","SNYK-JS-ELECTRON-1252280","SNYK-JS-ELECTRON-1253279","SNYK-JS-ELECTRON-1253281","SNYK-JS-ELECTRON-1257943","SNYK-JS-ELECTRON-1258207","SNYK-JS-ELECTRON-1259349","SNYK-JS-ELECTRON-1260586","SNYK-JS-ELECTRON-1261111","SNYK-JS-ELECTRON-1277203","SNYK-JS-ELECTRON-1277205","SNYK-JS-ELECTRON-1277526","SNYK-JS-ELECTRON-1278596","SNYK-JS-ELECTRON-1296553","SNYK-JS-ELECTRON-1296555","SNYK-JS-ELECTRON-1296557","SNYK-JS-ELECTRON-1296559","SNYK-JS-ELECTRON-1296561","SNYK-JS-ELECTRON-1296563","SNYK-JS-ELECTRON-129...