Skip to content

Commit

Permalink
chore: ignore semver vuln since snyk advisory has not been updated ye…
Browse files Browse the repository at this point in the history
…t with the new backported patches (#557)
  • Loading branch information
himanshusinghs authored Jul 12, 2023
1 parent 82fddb0 commit 5f0e8ee
Show file tree
Hide file tree
Showing 2 changed files with 11 additions and 0 deletions.
1 change: 1 addition & 0 deletions .prettierignore
Original file line number Diff line number Diff line change
Expand Up @@ -13,3 +13,4 @@ syntaxes
CHANGELOG.md
README.md
constants.json
.sbom
10 changes: 10 additions & 0 deletions .snyk
Original file line number Diff line number Diff line change
@@ -0,0 +1,10 @@
# Snyk (https://snyk.io) policy file, patches or ignores known vulnerabilities.
version: v1.25.0
# ignores vulnerabilities until expiry date; change duration by modifying expiry date
ignore:
SNYK-JS-SEMVER-3247795:
- '*':
reason: "Security patches released for semver 5.x (5.7.2) and 6.x (6.3.1) are not yet known to Snyk which is why we would like to ignore this vulnerability until the mentioned expiry."
expires: 2023-08-11T09:00:55.553Z
created: 2023-07-12T09:00:55.557Z
patch: {}

0 comments on commit 5f0e8ee

Please sign in to comment.