-
Notifications
You must be signed in to change notification settings - Fork 0
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[Snyk] Upgrade: ajv, ethers, object-sha, , , , , express, nodemon, swagger-ui-express #32
base: public
Are you sure you want to change the base?
Conversation
Snyk has created this PR to upgrade: - ajv from 8.11.2 to 8.17.1. See this package in npm: https://www.npmjs.com/package/ajv - ethers from 5.6.0 to 5.7.2. See this package in npm: https://www.npmjs.com/package/ethers - object-sha from 2.0.6 to 2.1.1. See this package in npm: https://www.npmjs.com/package/object-sha - @i3m/non-repudiation-library from 2.5.6 to 2.6.4. See this package in npm: https://www.npmjs.com/package/@i3m/non-repudiation-library - @i3m/server-wallet from 2.5.3 to 2.6.1. See this package in npm: https://www.npmjs.com/package/@i3m/server-wallet - @i3m/wallet-protocol from 2.5.3 to 2.6.1. See this package in npm: https://www.npmjs.com/package/@i3m/wallet-protocol - @i3m/wallet-protocol-api from 2.5.3 to 2.6.1. See this package in npm: https://www.npmjs.com/package/@i3m/wallet-protocol-api - express from 4.17.3 to 4.19.2. See this package in npm: https://www.npmjs.com/package/express - nodemon from 2.0.20 to 2.0.22. See this package in npm: https://www.npmjs.com/package/nodemon - swagger-ui-express from 4.3.0 to 4.6.3. See this package in npm: https://www.npmjs.com/package/swagger-ui-express See this project in Snyk: https://app.snyk.io/org/rish2497/project/416ebfc7-2d08-42a1-ac43-6598362efd00?utm_source=github&utm_medium=referral&page=upgrade-pr
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
src/package.json
@@ -14,21 +14,21 @@ | |||
"author": "", | |||
"license": "ISC", | |||
"dependencies": { | |||
"@i3m/non-repudiation-library": "^2.5.6", |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
5.6
@@ -14,21 +14,21 @@ | |||
"author": "", | |||
"license": "ISC", | |||
"dependencies": { | |||
"@i3m/non-repudiation-library": "^2.5.6", | |||
"@i3m/server-wallet": "^2.5.3", |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
5.3
@@ -14,21 +14,21 @@ | |||
"author": "", | |||
"license": "ISC", | |||
"dependencies": { | |||
"@i3m/non-repudiation-library": "^2.5.6", | |||
"@i3m/server-wallet": "^2.5.3", | |||
"@i3m/wallet-protocol": "^2.5.3", |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
5.3
"@i3m/non-repudiation-library": "^2.5.6", | ||
"@i3m/server-wallet": "^2.5.3", | ||
"@i3m/wallet-protocol": "^2.5.3", | ||
"@i3m/wallet-protocol-api": "^2.5.3", |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
5.3
"@i3m/server-wallet": "^2.5.3", | ||
"@i3m/wallet-protocol": "^2.5.3", | ||
"@i3m/wallet-protocol-api": "^2.5.3", | ||
"@i3m/non-repudiation-library": "^2.6.4", |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
6.4
"ethers": "^5.6.0", | ||
"express": "^4.17.3", | ||
"ethers": "^5.7.2", | ||
"express": "^4.19.2", |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
19.2
"http-errors": "^1.8.1", | ||
"isomorphic-fetch": "^3.0.0", | ||
"object-sha": "^2.0.6", |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
0.6
"http-errors": "^1.8.1", | ||
"isomorphic-fetch": "^3.0.0", | ||
"object-sha": "^2.0.6", | ||
"object-sha": "^2.1.1", |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
1.1
"quorum-js": "^0.3.6", | ||
"swagger-ui-express": "^4.3.0", |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
3.0
"quorum-js": "^0.3.6", | ||
"swagger-ui-express": "^4.3.0", | ||
"swagger-ui-express": "^4.6.3", |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
6.3
Snyk has created this PR to upgrade multiple dependencies.
👯♂ The following dependencies are linked and will therefore be updated together.ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
ajv
from 8.11.2 to 8.17.1 | 6 versions ahead of your current version | 2 months ago
on 2024-07-12
ethers
from 5.6.0 to 5.7.2 | 12 versions ahead of your current version | 2 years ago
on 2022-10-19
object-sha
from 2.0.6 to 2.1.1 | 3 versions ahead of your current version | a year ago
on 2023-04-14
@i3m/non-repudiation-library
from 2.5.6 to 2.6.4 | 5 versions ahead of your current version | a year ago
on 2023-04-28
@i3m/server-wallet
from 2.5.3 to 2.6.1 | 9 versions ahead of your current version | a year ago
on 2023-05-04
@i3m/wallet-protocol
from 2.5.3 to 2.6.1 | 9 versions ahead of your current version | a year ago
on 2023-05-04
@i3m/wallet-protocol-api
from 2.5.3 to 2.6.1 | 9 versions ahead of your current version | a year ago
on 2023-05-04
express
from 4.17.3 to 4.19.2 | 7 versions ahead of your current version | 6 months ago
on 2024-03-25
nodemon
from 2.0.20 to 2.0.22 | 2 versions ahead of your current version | a year ago
on 2023-03-22
swagger-ui-express
from 4.3.0 to 4.6.3 | 6 versions ahead of your current version | a year ago
on 2023-05-05
Issues fixed by the recommended upgrade:
SNYK-JS-EXPRESS-6474509
Release notes
Package name: ajv
What's Changed
Full Changelog: v8.17.0...v8.17.1
Plus everything in 8.17.0 which failed to release
The only functional change is to switch from uri-js (which is no longer supported), to fast-uri. This is the second attempt and the team on fast-uri have been really helpful addressing the issues we found last time.
Revert "Revert fast-uri change (#2444)" by @ gurgunday in #2448
fix: ignore new eslint error for @ typescript-eslint/no-extraneous-class by @ jasoniangreen in #2455
docs: clarify behaviour of addVocabulary by @ jasoniangreen in #2454
docs: refactor to improve legibility by @ blottn in #2432
Fix grammatical typo in managing-schemas.md by @ wetneb in #2305
docs: Fix broken strict-mode link by @ alexanderjsx in #2459
feat: add test for encoded refs and bump fast-uri by @ jasoniangreen in #2449
fix: changes for @ typescript-eslint/array-type rule by @ jasoniangreen in #2467
fixes #2217 - clarify custom keyword naming by @ jasoniangreen in #2457
What's Changed
Full Changelog: v8.15.0...v8.16.0
What's Changed
uri-js
withfast-uri
by @ vixalien in #2415New Contributors
Full Changelog: v8.14.0...v8.15.0
What's Changed
New Contributors
Full Changelog: v8.13.0...v8.14.0
Update dependencies
Export ValidationError and MissingRefError (#1840, @ dannyb648)
Package name: ethers
Package name: object-sha
2.1.1
2.1.0
2.0.7
2.0.6
Package name: @i3m/non-repudiation-library
2.6.4
2.6.3
2.6.2
2.6.0
2.5.7
2.5.6
Package name: @i3m/server-wallet
v2.6.1
v2.6.0
v2.5.11
v2.5.10
v2.5.9
Package name: @i3m/wallet-protocol
v2.6.1
v2.6.0
v2.5.11
v2.5.10
v2.5.8
Package name: @i3m/wallet-protocol-api
v2.6.1
v2.6.0
v2.5.11
v2.5.10
v2.5.9
Package name: express
What's Changed
Full Changelog: 4.19.0...4.19.1
What's Changed
New Contributors
Full Changelog: 4.18.3...4.19.0
Main Changes
Other Changes
New Contributors
Full Changelog: 4.18.2...4.18.3
res.download
options
withoutfilename
inres.download
res.status
null
/undefined
asmaxAge
inres.cookie
Object.prototype
values in settings throughapp.set
/app.get
default
with same arguments as types inres.format
res.send
http-errors
forres.format
errorstrict
priority
optionexpires
option to reject invalid dateseval
usage withFunction
constructorprocess
to check for listeners425 Unordered Collection
to standard425 Too Early
__proto__
keysPackage name: nodemon
2.0.22 (2023-03-22)
Bug Fixes
2.0.21 (2023-03-02)
Bug Fixes
2.0.20 (2022-09-16)
Bug Fixes
Package name: swagger-ui-express
Support for Express 5
4.6.2
No content.
Accept array of external JS/CSS assets
No content.
4.4.0
No content.
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.
For more information: