Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Snyk] Upgrade @nestjs/cli from 9.2.0 to 10.4.3 #469

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

snyk-io[bot]
Copy link

@snyk-io snyk-io bot commented Aug 30, 2024

snyk-top-banner

Snyk has created this PR to upgrade @nestjs/cli from 9.2.0 to 10.4.3.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


⚠️ Warning: This PR contains major version upgrade(s), and may be a breaking change.

  • The recommended version is 46 versions ahead of your current version.

  • The recommended version was released on 21 days ago.

Issues fixed by the recommended upgrade:

Issue Score Exploit Maturity
high severity Uncontrolled resource consumption
SNYK-JS-BRACES-6838727
44 Proof of Concept
high severity Inefficient Regular Expression Complexity
SNYK-JS-MICROMATCH-6838728
44 No Known Exploit
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-SEMVER-3247795
44 Proof of Concept
high severity Sandbox Bypass
SNYK-JS-WEBPACK-3358798
44 Proof of Concept
medium severity Denial of Service (DoS)
SNYK-JS-GRAPHQL-5905181
44 Proof of Concept
medium severity Missing Release of Resource after Effective Lifetime
SNYK-JS-INFLIGHT-6095116
44 Proof of Concept
medium severity Cross-site Scripting (XSS)
SNYK-JS-SERIALIZEJAVASCRIPT-6147607
44 Proof of Concept
low severity Information Exposure
SNYK-JS-APOLLOSERVERCORE-5876618
44 No Known Exploit
Release notes
Package name: @nestjs/cli
  • 10.4.3 - 2024-08-09
    • Merge pull request #2647 from nestjs/renovate/webpack-5.x (2864899)
    • Merge pull request #2681 from jaunusa/bugfix/copyPathDepth (f2b3d7e)
    • fix(assets): copy nested files and directories when no wildcard #2687 (793f319)
    • chore(deps): update dependency @ commitlint/cli to v19.4.0 (6ebb6e5)
    • chore(deps): update dependency eslint to v9 (2660990)
    • chore(deps): update dependency lint-staged to v15.2.8 (3795d2a)
    • chore(deps): update dependency @ types/node to v20.14.14 (9c850f1)
    • chore(deps): update dependency @ swc/core to v1.7.6 (1535c58)
    • chore(deps): update typescript-eslint monorepo to v8 (c0800ff)
    • fix: allow resolving copy paths for files in project root folder (5e74583)
    • chore(deps): update dependency @ swc/core to v1.7.4 (8416f33)
    • chore(deps): update typescript-eslint monorepo to v7.18.0 (039ba07)
    • chore(deps): update dependency husky to v9.1.4 (9a71f09)
    • chore(deps): update dependency @ types/node to v20.14.13 (902c155)
    • chore(deps): update dependency @ swc/core to v1.7.3 (46cb313)
    • chore(deps): update dependency husky to v9.1.3 (f8bc48d)
    • chore(deps): update dependency @ swc/core to v1.7.2 (f30661a)
    • chore(deps): update dependency husky to v9.1.2 (aa13521)
    • chore(deps): update dependency @ swc/core to v1.7.1 (1b93deb)
    • chore(deps): update dependency @ types/node to v20.14.12 (0ac320c)
    • chore(deps): update typescript-eslint monorepo to v7.17.0 (0117a1d)
    • chore(deps): update dependency ts-jest to v29.2.3 (6b81d67)
    • chore(deps): update dependency husky to v9.1.1 (6b32a85)
    • chore(deps): update dependency @ swc/core to v1.7.0 (13ad44d)
    • chore(deps): update dependency husky to v9.1.0 (6663e6f)
    • chore(deps): update dependency @ types/node to v20.14.11 (bea1af0)
    • chore(deps): update typescript-eslint monorepo to v7.16.1 (d561146)
    • chore(deps): update dependency release-it to v17.6.0 (60fe4c8)
    • chore(deps): update dependency prettier to v3.3.3 (db27139)
    • fix(deps): update dependency webpack to v5.93.0 (5433e50)
    • chore(deps): update dependency ts-jest to v29.2.2 (a628afe)
    • chore(deps): update dependency ts-jest to v29.2.1 (e1e2c19)
    • chore(deps): update dependency release-it to v17.5.0 (657178d)
    • chore(deps): update typescript-eslint monorepo to v7.16.0 (716638e)
    • chore(deps): update dependency ts-jest to v29.2.0 (fa5f68d)
    • chore(deps): update dependency @ types/inquirer to v9.0.7 (469a24f)
    • chore(deps): update dependency @ swc/core to v1.6.13 (b8fcf49)
    • chore(deps): update dependency @ swc/core to v1.6.12 (d26058a)
    • chore(deps): update dependency @ types/node to v20.14.10 (dc9f39d)
  • 10.4.2 - 2024-07-05
    • Merge pull request #2627 from micalevisk/fix-issue-2421 (952da4b)
    • Merge pull request #2630 from micalevisk/fix-issue-2629 (682e7dd)
    • fix: npm-script clean not working due to missing dependency (b5dba00)
    • chore(deps): remove source-map-support hard dependency (5dafd62)
    • feat: drop 'source-map-support' injection in favor of nodejs flag (d857d9b)
    • chore(deps): update dependency @ swc/core to v1.6.7 (d87405a)
    • refactor: remove redundand try-catch block (f48ce24)
    • style: fix formatting (b59436a)
    • fix: do not ignoring webpack config loading errors (285980e)
    • Merge pull request #2624 from nestjs/revert-2622-renovate/typescript-5.x (28bbb72)
    • Revert "fix(deps): update dependency typescript to v5.5.3" (4961cc4)
  • 10.4.1 - 2024-07-03
    • Merge pull request #2622 from nestjs/renovate/typescript-5.x (0abced2)
    • Merge pull request #2620 from nestjs/renovate/nest-monorepo (f8fe10e)
    • Merge pull request #2623 from micalevisk/less-confusing-missing-packages-error-msg (f9f9d4c)
    • fix(deps): update dependency typescript to v5.5.3 (40ab797)
    • chore(deps): update typescript-eslint monorepo to v7.15.0 (a97ab8e)
    • fix(deps): update dependency @ nestjs/schematics to v10.1.2 (bc7a9f3)
    • feat: less verbose 'missing packages' error message (f16f5b9)
  • 10.4.0 - 2024-07-02
    • Merge pull request #2618 from nestjs/renovate/release-it-17.x (d37735f)
    • Merge pull request #2619 from nestjs/renovate/swc-monorepo (aa4f52d)
    • chore(deps): update swc monorepo (eb9284f)
    • chore(deps): update dependency release-it to v17.4.1 (dc42ddd)
    • Merge pull request #2553 from CustomEntity/fix-assets-copying (3812852)
    • Merge pull request #2616 from nestjs/renovate/node-20.x (ad18939)
    • Merge pull request #2617 from nestjs/renovate/prettier-3.x (c592de3)
    • chore(deps): update dependency prettier to v3.3.2 (3e693cf)
    • chore(deps): update dependency @ types/node to v20.14.9 (f8e2802)
    • Merge branch 'Phillip9587-remove-shelljs' (8c2523b)
    • chore: resolve conflicts (2f2acdf)
    • Merge pull request #2525 from Phillip9587/replace-rimraf (7dacbd0)
    • Merge pull request #2614 from nestjs/renovate/lint-staged-15.x (252f7ee)
    • Merge pull request #2615 from nestjs/renovate/ts-jest-29.x (bd5440b)
    • chore(deps): update dependency ts-jest to v29.1.5 (53f5a63)
    • chore(deps): update dependency lint-staged to v15.2.7 (c2b97aa)
    • chore(deps): revert typescript version (81b026b)
    • Merge pull request #2515 from nestjs/renovate/webpack-5.x (ca93138)
    • fix(deps): update dependency webpack to v5.92.1 (fc67663)
    • Merge pull request #2504 from nestjs/renovate/nest-monorepo (6fcb954)
    • Merge pull request #2505 from nestjs/renovate/angular-cli-monorepo (829a878)
    • Merge pull request #2537 from nestjs/renovate/typescript-5.x (71de177)
    • Merge pull request #2552 from nestjs/renovate/cli-table3-0.x (6bcb9c7)
    • Merge pull request #2559 from nestjs/renovate/glob-10.x (cdf44bf)
    • Merge pull request #2588 from nestjs/renovate/cimg-node-22.x (e5ddd70)
    • fix(deps): update dependency typescript to v5.5.3 (e89998a)
    • chore(deps): update node.js to v22 (844874b)
    • fix(deps): update dependency glob to v10.4.2 (f142519)
    • fix(deps): update angular-cli monorepo to v17.3.8 (5cef840)
    • chore(deps): update dependency lint-staged to v15.2.4 (77c3e45)
    • chore(deps): update dependency ts-jest to v29.1.3 (285941c)
    • chore(deps): update typescript-eslint monorepo to v7.10.0 (067ddc5)
    • chore(deps): update dependency release-it to v17.3.0 (c5e2f89)
    • chore(deps): update dependency @ swc/core to v1.5.7 (16634f7)
    • chore(deps): update dependency @ types/node to v20.12.12 (bd8889e)
    • chore(deps): update dependency @ swc/core to v1.5.6 (ec38bc6)
    • chore(deps): update typescript-eslint monorepo to v7.9.0 (a7d30e8)
    • fix(deps): update dependency cli-table3 to v0.6.5 (6ba347a)
    • chore(deps): update dependency @ types/node to v20.12.11 (c0f0720)
    • chore(deps): update dependency @ swc/core to v1.5.5 (0399bc9)
    • chore(deps): update dependency @ types/node to v20.12.10 (312760a)
    • chore(deps): update dependency @ swc/core to v1.5.3 (ec532bb)
    • chore(deps): update dependency @ types/node to v20.12.8 (8867245)
    • chore(deps): update typescript-eslint monorepo to v7.8.0 (a370336)
    • chore(deps): update dependency @ swc/core to v1.5.2 (a08e9d8)
    • chore(deps): update dependency @ swc/core to v1.5.1 (f81f5eb)
    • chore(deps): update dependency release-it to v17.2.1 (87f5bc3)
    • chore(deps): update dependency @ swc/core to v1.5.0 (aaa43c6)
    • chore(deps): update dependency @ swc/core to v1.4.17 (e7254b1)
    • chore(deps): update commitlint monorepo to v19.3.0 (f998d8f)
    • chore(deps): update typescript-eslint monorepo to v7.7.1 (93fed17)
    • chore(deps): update dependency @ swc/core to v1.4.16 (df75c16)
    • chore(deps): update dependency @ swc/core to v1.4.15 (1a3bd21)
    • chore(deps): update typescript-eslint monorepo to v7.7.0 (8f64463)
    • chore(deps): update dependency @ swc/core to v1.4.14 (#2577) (289ec36)
    • chore(deps): update commitlint monorepo to v19.2.2 (893d8ac)
    • chore(deps): update dependency release-it to v17.2.0 (8b4c799)
    • refactor: use fs/promises instead of rimraf package (405b22e)
    • refactor: replace shelljs usage with fs methods (923f2e2)
    • chore(deps): update dependency @ types/node to v20.12.7 (6345642)
    • chore(deps): update dependency @ swc/core to v1.4.13 (788175c)
    • chore(deps): update dependency @ types/node to v20.12.6 (956ac33)
    • chore(deps): update typescript-eslint monorepo to v7.6.0 (0223a04)
    • chore(deps): update dependency @ types/node to v20.12.5 (0b661a0)
    • chore(deps): update dependency @ swc/core to v1.4.12 (67a6fa1)
    • chore(deps): update dependency @ types/node to v20.12.4 (3d6a3b0)
    • chore(deps): update dependency @ types/node to v20.12.3 (d99f01b)
    • chore(deps): update typescript-eslint monorepo to v7.5.0 (910d033)
    • fix(deps): update dependency @ nestjs/schematics to v10.1.1 (58cb0ac)
    • chore(deps): update dependency @ swc/cli to v0.3.12 (ed65bdb)
    • chore(deps): update dependency @ types/node to v20.12.2 (0369b15)
    • chore(deps): update dependency gulp to v5 (589ef7f)
    • chore(deps): update dependency @ swc/core to v1.4.11 (e5d6019)
    • chore(deps): update typescript-eslint monorepo to v7.4.0 (79dc187)
    • fix(assets): Refactor (68508b2)
    • fix(assets): Fix assets copying on Windows (2421a59)
    • chore(deps): update dependency @ types/node to v20.11.30 (185169a)
    • Merge pull request #2549 from apeltop/fix-typo (217d9e4)
    • chore(deps): update dependency @ commitlint/cli to v19.2.1 (d6587f1)
    • chore(deps): update typescript-eslint monorepo to v7.3.1 (5a9f9c5)
    • refactor: fix typo (a1ef593)
    • chore(deps): update dependency @ types/node to v20.11.29 (aa29686)
    • chore(deps): update dependency @ types/node to v20.11.28 (66133f8)
    • chore(deps): update dependency @ commitlint/cli to v19.2.0 (0b4d12e)
    • chore(deps): update dependency @ swc/core to v1.4.8 (704cf1d)
    • chore(deps): update dependency @ types/node to v20.11.27 (08cf5ea)
    • chore(deps): update dependency @ swc/core to v1.4.7 (b6014a8)
    • chore(deps): update commitlint monorepo to v19.1.0 (f1184e7)
    • chore(deps): update dependency @ types/node to v20.11.26 (3d25b95)
    • chore(deps): update typescript-eslint monorepo to v7.2.0 (458db84)
    • chore(deps): update dependency @ swc/core to v1.4.6 (2af3018)
    • chore(deps): update dependency @ types/node to v20.11.25 (393b85e)
    • chore(deps): update dependency @ swc/core to v1.4.5 (adb8db4)
    • chore(deps): update dependency @ swc/core to v1.4.4 (1766db6)
    • chore(deps): update typescript-eslint monorepo to v7.1.1 (bfc5e36)
    • chore(deps): update commitlint monorepo to v19 (ef4001c)
    • chore(deps): update typescript-eslint monorepo to v7.1.0 (b9bf65a)
    • chore(deps): update dependency @ types/node to v20.11.24 (b909249)

Snyk has created this PR to upgrade @nestjs/cli from 9.2.0 to 10.4.3.

See this package in npm:
@nestjs/cli

See this project in Snyk:
https://app.snyk.io/org/cachiman/project/e8a09aad-d984-41b5-b868-fc0ac0b05847?utm_source=github-cloud-app&utm_medium=referral&page=upgrade-pr
Copy link

google-cla bot commented Aug 30, 2024

Thanks for your pull request! It looks like this may be your first contribution to a Google open source project. Before we can look at your pull request, you'll need to sign a Contributor License Agreement (CLA).

View this failed invocation of the CLA check for more information.

For the most up to date status, view the checks section at the bottom of the pull request.

Copy link

sonarcloud bot commented Sep 2, 2024

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants