Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

update devDependencies #156

Merged
merged 4 commits into from Dec 30, 2022
Merged

update devDependencies #156

merged 4 commits into from Dec 30, 2022

Conversation

oke-py
Copy link
Owner

@oke-py oke-py commented Dec 30, 2022

  • @typescript-eslint/parser from 5.46.1 to 5.47.1
  • @vercel/ncc from 0.34.0 to 0.36.0
  • graphql from 16.5.0 to 16.6.0
  • prettier from 2.7.1 to 2.8.1

@oke-py oke-py added the devDependencies Pull requests that update devDependencies label Dec 30, 2022
@github-actions
Copy link

# npm audit report

json5  <2.2.2
Severity: high
Prototype Pollution in JSON5 via Parse Method - https://github.com/advisories/GHSA-9c47-m6qq-7p4h
fix available via `npm audit fix --force`
Will install eslint-plugin-github@4.3.0, which is a breaking change
node_modules/tsconfig-paths/node_modules/json5
  tsconfig-paths  3.5.0 - 3.9.0 || 3.11.0 - 3.14.1
  Depends on vulnerable versions of json5
  node_modules/tsconfig-paths
    eslint-plugin-import  >=2.24.2
    Depends on vulnerable versions of tsconfig-paths
    node_modules/eslint-plugin-import
      eslint-plugin-github  0.0.0-dev || >=4.3.1
      Depends on vulnerable versions of eslint-plugin-import
      node_modules/eslint-plugin-github

4 high severity vulnerabilities

To address all issues (including breaking changes), run:
  npm audit fix --force

2 similar comments
@github-actions
Copy link

# npm audit report

json5  <2.2.2
Severity: high
Prototype Pollution in JSON5 via Parse Method - https://github.com/advisories/GHSA-9c47-m6qq-7p4h
fix available via `npm audit fix --force`
Will install eslint-plugin-github@4.3.0, which is a breaking change
node_modules/tsconfig-paths/node_modules/json5
  tsconfig-paths  3.5.0 - 3.9.0 || 3.11.0 - 3.14.1
  Depends on vulnerable versions of json5
  node_modules/tsconfig-paths
    eslint-plugin-import  >=2.24.2
    Depends on vulnerable versions of tsconfig-paths
    node_modules/eslint-plugin-import
      eslint-plugin-github  0.0.0-dev || >=4.3.1
      Depends on vulnerable versions of eslint-plugin-import
      node_modules/eslint-plugin-github

4 high severity vulnerabilities

To address all issues (including breaking changes), run:
  npm audit fix --force

@github-actions
Copy link

# npm audit report

json5  <2.2.2
Severity: high
Prototype Pollution in JSON5 via Parse Method - https://github.com/advisories/GHSA-9c47-m6qq-7p4h
fix available via `npm audit fix --force`
Will install eslint-plugin-github@4.3.0, which is a breaking change
node_modules/tsconfig-paths/node_modules/json5
  tsconfig-paths  3.5.0 - 3.9.0 || 3.11.0 - 3.14.1
  Depends on vulnerable versions of json5
  node_modules/tsconfig-paths
    eslint-plugin-import  >=2.24.2
    Depends on vulnerable versions of tsconfig-paths
    node_modules/eslint-plugin-import
      eslint-plugin-github  0.0.0-dev || >=4.3.1
      Depends on vulnerable versions of eslint-plugin-import
      node_modules/eslint-plugin-github

4 high severity vulnerabilities

To address all issues (including breaking changes), run:
  npm audit fix --force

@oke-py oke-py merged commit 9eb4404 into main Dec 30, 2022
@oke-py oke-py deleted the dependencies branch December 30, 2022 00:59
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
devDependencies Pull requests that update devDependencies
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

1 participant