Skip to content
This repository has been archived by the owner on Jan 9, 2023. It is now read-only.

[Snyk Alert] Fix for 6 vulnerable dependency paths #27

Merged
merged 1 commit into from Aug 18, 2016

Conversation

snyk-bot
Copy link
Contributor

@snyk-bot snyk-bot commented Aug 2, 2016

The following newly disclosed vulnerabilities impact one or more of the npm packages this project uses:

As these vulnerabilities are now publicly known, attackers can try to use them against your application, making fixing them a matter of urgency.

To help expedite the fix, Snyk created this pull request with the necessary changes to address the vulnerabilities.

This pull request includes:

  • package.json scripts and a Snyk policy (.snyk) file, which patch the vulnerabilities that can't be upgraded away.

You can read more about Snyk's upgrade and patch logic in Snyk's documentation. Each vulnerability advisory includes information about the vulnerable versions, and direct links to the available patches.

Note that this pull request only addresses the newly disclosed vulnerabilities mentioned above.

See the Snyk test report to review and remediate the full list of vulnerable dependencies.

Please check the changes in this PR to ensure they won't cause issues with your application.

Stay secure,

The Snyk team

@jkleinsc jkleinsc merged commit f952e80 into master Aug 18, 2016
@stukalin stukalin deleted the snyk-fix-d5e87b57 branch August 31, 2018 11:25
ghost pushed a commit that referenced this pull request Oct 15, 2019
# 1.0.0 (2019-10-15)

### Bug Fixes

* adds .npmrc ([cbc815b](cbc815b))
* **package:** update csv-parse to version 1.3.0 ([ab42b30](ab42b30))
* package.json & .snyk to reduce vulnerabilities ([#24](#24)) ([3e03601](3e03601))
* **deps:** moves fastify-plugin to deps from devDeps ([8e5b35c](8e5b35c))
* **fastify:** fixes fastify app loading ([c4c1bcb](c4c1bcb))
* **license:** reverts license to MIT on the next version ([fe3ecae](fe3ecae))
* **package:** update csv-parse to version 1.2.1 ([e9f2534](e9f2534))
* **package:** update csv-parse to version 2.0.2 ([df99aba](df99aba))
* **package:** update csv-parse to version 2.2.0 ([3733369](3733369))
* **package:** update csv-stringify to version 2.0.0 ([2a112aa](2a112aa))
* **package:** update csv-stringify to version 3.0.0 ([1f74470](1f74470))
* package.json & .snyk to reduce vulnerabilities ([#25](#25)) ([08b4887](08b4887))
* package.json & .snyk to reduce vulnerabilities ([#26](#26)) ([07df5ed](07df5ed))
* package.json & .snyk to reduce vulnerabilities ([#27](#27)) ([f952e80](f952e80))
* **package:** update hospitalrun to version 0.9.17 ([#31](#31)) ([f9cbb57](f9cbb57))
* **package:** update hospitalrun-dblisteners to version 0.9.6 ([#35](#35)) ([b898a69](b898a69))
* **package:** update hospitalrun-dblisteners to version 1.0.1 ([f79ccea](f79ccea))
* **package:** update hospitalrun-server-routes to version 0.9.10 ([#34](#34)) ([c8b5b01](c8b5b01))
* **package:** update hospitalrun-server-routes to version 0.9.11 ([#40](#40)) ([ca9a2d4](ca9a2d4))
* **package:** update osprey to version 0.5.0 ([dad2014](dad2014))

### Features

* Adds Typescript Fastify CLI Application ([#154](#154)) ([74ead9f](74ead9f))
* **toolchain:** adds new commit script ([285b367](285b367))
* **toolchain:** adds vscode settings folder in order to enable eslint ([683e16b](683e16b))
@ghost
Copy link

ghost commented Oct 15, 2019

🎉 This PR is included in version 1.0.0 🎉

The release is available on GitHub release

Your semantic-release bot 📦🚀

@ghost ghost added the released label Oct 15, 2019
ghost pushed a commit that referenced this pull request Oct 15, 2019
# 1.0.0 (2019-10-15)

### Bug Fixes

* adds .npmrc ([cbc815b](cbc815b))
* **package:** update csv-parse to version 1.3.0 ([ab42b30](ab42b30))
* package.json & .snyk to reduce vulnerabilities ([#24](#24)) ([3e03601](3e03601))
* **deps:** moves fastify-plugin to deps from devDeps ([8e5b35c](8e5b35c))
* **fastify:** fixes fastify app loading ([c4c1bcb](c4c1bcb))
* **license:** reverts license to MIT on the next version ([fe3ecae](fe3ecae))
* **package:** update csv-parse to version 1.2.1 ([e9f2534](e9f2534))
* **package:** update csv-parse to version 2.0.2 ([df99aba](df99aba))
* **package:** update csv-parse to version 2.2.0 ([3733369](3733369))
* **package:** update csv-stringify to version 2.0.0 ([2a112aa](2a112aa))
* **package:** update csv-stringify to version 3.0.0 ([1f74470](1f74470))
* package.json & .snyk to reduce vulnerabilities ([#25](#25)) ([08b4887](08b4887))
* package.json & .snyk to reduce vulnerabilities ([#26](#26)) ([07df5ed](07df5ed))
* package.json & .snyk to reduce vulnerabilities ([#27](#27)) ([f952e80](f952e80))
* **package:** update hospitalrun to version 0.9.17 ([#31](#31)) ([f9cbb57](f9cbb57))
* **package:** update hospitalrun-dblisteners to version 0.9.6 ([#35](#35)) ([b898a69](b898a69))
* **package:** update hospitalrun-dblisteners to version 1.0.1 ([f79ccea](f79ccea))
* **package:** update hospitalrun-server-routes to version 0.9.10 ([#34](#34)) ([c8b5b01](c8b5b01))
* **package:** update hospitalrun-server-routes to version 0.9.11 ([#40](#40)) ([ca9a2d4](ca9a2d4))
* **package:** update osprey to version 0.5.0 ([dad2014](dad2014))

### Features

* Adds Typescript Fastify CLI Application ([#154](#154)) ([74ead9f](74ead9f))
* **toolchain:** adds new commit script ([285b367](285b367))
* **toolchain:** adds vscode settings folder in order to enable eslint ([683e16b](683e16b))
@ghost
Copy link

ghost commented Oct 15, 2019

🎉 This PR is included in version 1.0.0 🎉

The release is available on GitHub release

Your semantic-release bot 📦🚀

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants