Skip to content
This repository was archived by the owner on Feb 27, 2025. It is now read-only.

Conversation

@orm-vulnerabilityscanner
Copy link
Contributor

@orm-vulnerabilityscanner orm-vulnerabilityscanner commented Aug 7, 2022

This Pull Request was created to address Low or greater security vulnerabilities as idenitified by Dependabot.

Updates to lib/package-lock.json

This pull request contains updates to lib/package-lock.json. If you do not wish to accept one or more of these changes, please close the Dependabot issue. The vulnerabillity patcher will then update this pull request the next time it runs against this repository.

❔ This pull request regenerated the referenced manifest file, but it did not resolve any of the vulnerabilities identified. However, you may still want to merge this pull request, as it will have updated other non-vulnerable dependencies referenced by the manifest.

⚠️ NOTE: This pull request failed to address the following vulnerabilities. You can still merge this pull request, but will need to take other steps to resolve these vulnerabilities.

Package Vulnerable Versions Message Issue Severity Scope Status
node-fetch >= 3.0.0 < 3.2.10 Not adding override for "release-it@15.2.0" Issue 13 Moderate Development
Operations
[2022-08-08T12:28:59.485Z]	Reset package-lock.json
[2022-08-08T12:29:16.221Z]	Created package-lock.json
[2022-08-08T12:29:16.684Z]	Not adding override for "release-it@15.2.0"

@orm-vulnerabilityscanner orm-vulnerabilityscanner requested a review from a team as a code owner August 7, 2022 12:45
@orm-vulnerabilityscanner orm-vulnerabilityscanner added the maintenance Relates to project upkeep or maintenance label Aug 7, 2022
@orm-vulnerabilityscanner orm-vulnerabilityscanner force-pushed the orm-vulnerability-patcher/patches-low branch 3 times, most recently from fcab9d6 to 175d879 Compare August 8, 2022 08:29
@orm-vulnerabilityscanner orm-vulnerabilityscanner force-pushed the orm-vulnerability-patcher/patches-low branch from 175d879 to 34d7a0c Compare August 8, 2022 12:29
@carpie carpie merged commit a2b9796 into main Aug 8, 2022
@carpie carpie deleted the orm-vulnerability-patcher/patches-low branch August 8, 2022 16:17
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

maintenance Relates to project upkeep or maintenance

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants