[Snyk] Fix for 7 vulnerabilities#18
Conversation
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-FLATTED-15700433 - https://snyk.io/vuln/SNYK-JS-FLATTED-15518041 - https://snyk.io/vuln/SNYK-JS-MINIMATCH-15309438 - https://snyk.io/vuln/SNYK-JS-MINIMATCH-15353387 - https://snyk.io/vuln/SNYK-JS-MINIMATCH-15353389 - https://snyk.io/vuln/SNYK-JS-AJV-15274295 - https://snyk.io/vuln/SNYK-JS-BRACEEXPANSION-15789759
|
This update includes a major version upgrade for ESLint from v8 to v9, which introduces significant breaking changes. The upgrade for eslint@8.57.1 → eslint@9.1.0 (HIGH RISK)This is a major upgrade with several breaking changes that require developer action. Key Breaking Changes:
Recommendation: @typescript-eslint/parser@6.21.0 → @typescript-eslint/parser@7.6.0 (MEDIUM RISK)This upgrade prepares for compatibility with ESLint v9. Key Breaking Changes:
Source: ESLint v9 Migration Guide, typescript-eslint v7 Announcement
|
⛔ Snyk checks have failed. 26 issues have been found so far.
💻 Catch issues earlier using the plugins for VS Code, JetBrains IDEs, Visual Studio, and Eclipse. |
Snyk has created this PR to fix 7 vulnerabilities in the pnpm dependencies of this project.
Snyk changed the following file(s):
packages/edp-form-extension/package.jsonVulnerabilities that will be fixed with an upgrade:
SNYK-JS-FLATTED-15700433
SNYK-JS-FLATTED-15518041
SNYK-JS-MINIMATCH-15309438
SNYK-JS-MINIMATCH-15353387
SNYK-JS-MINIMATCH-15353389
SNYK-JS-AJV-15274295
SNYK-JS-BRACEEXPANSION-15789759
Breaking Change Risk
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Regular Expression Denial of Service (ReDoS)
🦉 Prototype Pollution