This repository was archived by the owner on Aug 22, 2024. It is now read-only.
Open
Conversation
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-CRYPTOJS-6028119 - https://snyk.io/vuln/SNYK-JS-ECSTATIC-540354 - https://snyk.io/vuln/SNYK-JS-ENGINEIO-1056749 - https://snyk.io/vuln/SNYK-JS-EXPRESSJWT-575022 - https://snyk.io/vuln/SNYK-JS-INFLIGHT-6095116 - https://snyk.io/vuln/SNYK-JS-JSONWEBTOKEN-3180022 - https://snyk.io/vuln/SNYK-JS-JSONWEBTOKEN-3180024 - https://snyk.io/vuln/SNYK-JS-JSONWEBTOKEN-3180026 - https://snyk.io/vuln/SNYK-JS-LODASH-1018905 - https://snyk.io/vuln/SNYK-JS-LODASH-1040724 - https://snyk.io/vuln/SNYK-JS-LODASH-450202 - https://snyk.io/vuln/SNYK-JS-LODASH-608086 - https://snyk.io/vuln/SNYK-JS-LODASH-6139239 - https://snyk.io/vuln/SNYK-JS-LODASH-73638 - https://snyk.io/vuln/SNYK-JS-LODASH-73639 - https://snyk.io/vuln/SNYK-JS-MINIMATCH-3050818 - https://snyk.io/vuln/SNYK-JS-MOCHA-2863123 - https://snyk.io/vuln/SNYK-JS-MOMENT-2440688 - https://snyk.io/vuln/SNYK-JS-NANOID-2332193 - https://snyk.io/vuln/SNYK-JS-NODEFETCH-2342118 - https://snyk.io/vuln/SNYK-JS-NODEFETCH-674311 - https://snyk.io/vuln/SNYK-JS-SANITIZEHTML-1070780 - https://snyk.io/vuln/SNYK-JS-SANITIZEHTML-1070786 - https://snyk.io/vuln/SNYK-JS-SANITIZEHTML-2957526 - https://snyk.io/vuln/SNYK-JS-SANITIZEHTML-585892 - https://snyk.io/vuln/SNYK-JS-SANITIZEHTML-6256334 - https://snyk.io/vuln/SNYK-JS-SEQUELIZE-2959225 - https://snyk.io/vuln/SNYK-JS-SEQUELIZE-3324088 - https://snyk.io/vuln/SNYK-JS-SEQUELIZE-3324089 - https://snyk.io/vuln/SNYK-JS-SEQUELIZE-3324090 - https://snyk.io/vuln/SNYK-JS-TINYMCE-1056408 - https://snyk.io/vuln/SNYK-JS-TINYMCE-1298037 - https://snyk.io/vuln/SNYK-JS-TINYMCE-1766967 - https://snyk.io/vuln/SNYK-JS-TINYMCE-1910225 - https://snyk.io/vuln/SNYK-JS-TINYMCE-3166281 - https://snyk.io/vuln/SNYK-JS-TINYMCE-543825 - https://snyk.io/vuln/SNYK-JS-TINYMCE-568922 - https://snyk.io/vuln/SNYK-JS-TINYMCE-598223 - https://snyk.io/vuln/SNYK-JS-TINYMCE-6016276 - https://snyk.io/vuln/SNYK-JS-TINYMCE-6016290 - https://snyk.io/vuln/SNYK-JS-TINYMCE-6062167 - https://snyk.io/vuln/SNYK-JS-TINYMCE-6501006 - https://snyk.io/vuln/SNYK-JS-TINYMCE-6501605 - https://snyk.io/vuln/SNYK-JS-UNSETVALUE-2400660 - https://snyk.io/vuln/npm:debug:20170905 - https://snyk.io/vuln/npm:jsonwebtoken:20150331 - https://snyk.io/vuln/npm:jws:20160726 - https://snyk.io/vuln/npm:lodash:20180130 - https://snyk.io/vuln/npm:moment:20160126 - https://snyk.io/vuln/npm:moment:20161019 - https://snyk.io/vuln/npm:moment:20170905 - https://snyk.io/vuln/npm:sanitize-html:20141024 - https://snyk.io/vuln/npm:sanitize-html:20160801 - https://snyk.io/vuln/npm:sanitize-html:20161026 - https://snyk.io/vuln/npm:tinymce:20150610 - https://snyk.io/vuln/npm:tinymce:20150813 - https://snyk.io/vuln/npm:tinymce:20170613 - https://snyk.io/vuln/npm:tinymce:20180522
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to subscribe to this conversation on GitHub.
Already have an account?
Sign in.
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR was automatically created by Snyk using the credentials of a real user.
Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.
Changes included in this PR
Vulnerabilities that will be fixed
With an upgrade:
SNYK-JS-CRYPTOJS-6028119
SNYK-JS-ECSTATIC-540354
SNYK-JS-ENGINEIO-1056749
SNYK-JS-EXPRESSJWT-575022
SNYK-JS-INFLIGHT-6095116
SNYK-JS-JSONWEBTOKEN-3180022
SNYK-JS-JSONWEBTOKEN-3180024
SNYK-JS-JSONWEBTOKEN-3180026
SNYK-JS-LODASH-1018905
SNYK-JS-LODASH-1040724
SNYK-JS-LODASH-450202
SNYK-JS-LODASH-608086
SNYK-JS-LODASH-6139239
SNYK-JS-LODASH-73638
SNYK-JS-LODASH-73639
SNYK-JS-MINIMATCH-3050818
SNYK-JS-MOCHA-2863123
SNYK-JS-MOMENT-2440688
SNYK-JS-NANOID-2332193
SNYK-JS-NODEFETCH-2342118
SNYK-JS-NODEFETCH-674311
SNYK-JS-SANITIZEHTML-1070780
SNYK-JS-SANITIZEHTML-1070786
SNYK-JS-SANITIZEHTML-2957526
SNYK-JS-SANITIZEHTML-585892
SNYK-JS-SANITIZEHTML-6256334
SNYK-JS-SEQUELIZE-2959225
SNYK-JS-SEQUELIZE-3324088
SNYK-JS-SEQUELIZE-3324089
SNYK-JS-SEQUELIZE-3324090
SNYK-JS-TINYMCE-1056408
SNYK-JS-TINYMCE-1298037
SNYK-JS-TINYMCE-1766967
SNYK-JS-TINYMCE-1910225
SNYK-JS-TINYMCE-3166281
SNYK-JS-TINYMCE-543825
SNYK-JS-TINYMCE-568922
SNYK-JS-TINYMCE-598223
SNYK-JS-TINYMCE-6016276
SNYK-JS-TINYMCE-6016290
SNYK-JS-TINYMCE-6062167
SNYK-JS-TINYMCE-6501006
SNYK-JS-TINYMCE-6501605
SNYK-JS-UNSETVALUE-2400660
npm:debug:20170905
npm:jsonwebtoken:20150331
npm:jws:20160726
npm:lodash:20180130
npm:moment:20160126
npm:moment:20161019
npm:moment:20170905
npm:sanitize-html:20141024
npm:sanitize-html:20160801
npm:sanitize-html:20161026
npm:tinymce:20150610
npm:tinymce:20150813
npm:tinymce:20170613
npm:tinymce:20180522
Commit messages
Package name: check-dependencies
The new version differs by 55 commits.See the full diff
Package name: glob
The new version differs by 114 commits.See the full diff
Package name: grunt-contrib-compress
The new version differs by 5 commits.See the full diff
Package name: http-server
The new version differs by 71 commits.See the full diff
Package name: jasmine
The new version differs by 163 commits.See the full diff
Package name: jest
The new version differs by 250 commits.See the full diff
Package name: mocha
The new version differs by 109 commits.See the full diff
Package name: sequelize
The new version differs by 250 commits.See the full diff
Package name: socket.io
The new version differs by 84 commits.See the full diff
Package name: standard
The new version differs by 82 commits.See the full diff
Check the changes in this PR to ensure they won't cause issues with your project.
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
🛠 Adjust project settings
📚 Read more about Snyk's upgrade and patch logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Use of Weak Hash
🦉 Denial of Service (DoS)
🦉 Improper Authentication
🦉 More lessons are available in Snyk Learn