Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update dependency grunt to v1 - autoclosed #3

Closed
wants to merge 1 commit into from

Conversation

mend-for-github-com[bot]
Copy link

@mend-for-github-com mend-for-github-com bot commented Aug 21, 2022

This PR contains the following updates:

Package Type Update Change
grunt (source) dependencies major >= 0.4.2 -> >= 1.0.3

By merging this PR, the below vulnerabilities will be automatically resolved:

Severity CVSS Score CVE
High High 9.8 CVE-2020-28282
High High 9.1 CVE-2019-10744
High High 9.1 CVE-2019-10744
High High 8.1 WS-2019-0063
High High 7.5 CVE-2016-10540
High High 7.5 CVE-2016-10540
High High 7.5 WS-2019-0032
High High 7.4 CVE-2020-8203
High High 7.4 CVE-2020-8203
High High 7.2 CVE-2021-23337
High High 7.2 CVE-2021-23337
High High 7.2 CVE-2021-23358
High High 7.1 CVE-2020-7729
High High 7.0 CVE-2022-1537
Medium Medium 6.5 CVE-2018-3721
Medium Medium 6.5 CVE-2018-3721
Medium Medium 6.5 CVE-2019-1010266
Medium Medium 6.5 CVE-2019-1010266
Medium Medium 5.6 CVE-2018-16487
Medium Medium 5.6 CVE-2018-16487
Medium Medium 5.5 CVE-2022-0436
Medium Medium 5.3 CVE-2020-28500
Medium Medium 5.3 CVE-2020-28500

Release Notes

gruntjs/grunt

v1.0.3

Compare Source

v1.0.2

Compare Source

v1.0.1

Compare Source

v1.0.0

Compare Source

v0.4.5

Compare Source

v0.4.4

Compare Source

v0.4.3

Compare Source


  • If you want to rebase/retry this PR, check this box

@mend-for-github-com mend-for-github-com bot added the security fix Security fix generated by Mend label Aug 21, 2022
@github-actions
Copy link

github-actions bot commented Sep 5, 2022

If you don't want this PR to be closed automatically in 28 days then you need to assign the label 'Do not close'.

@github-actions github-actions bot added the Stale label Sep 5, 2022
@mend-for-github-com mend-for-github-com bot changed the title Update dependency grunt to v1 Update dependency grunt to v1 - autoclosed Feb 16, 2023
@mend-for-github-com mend-for-github-com bot deleted the whitesource-remediate/grunt-1.x branch February 16, 2023 15:28
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
security fix Security fix generated by Mend Stale
Projects
None yet
0 participants