[Snyk] Upgrade: lodash, , , , , , , , , , react, react-dom, semver, , , node-fetch, , , , babel-loader, cheerio, cookie-parser, mkdirp, copy-webpack-plugin, cross-env, directory-tree, dotenv, express, express-rate-limit, express-timeout-handler, flat, github-slugger, js-yaml, gray-matter, helmet, hot-shots, html-entities, linkinator, liquidjs, lunr-languages, mini-css-extract-plugin, morgan, redis, resolve-url-loader, rimraf, rss-parser, sass, sass-loader, style-loader, uuid, webpack #460
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Snyk has created this PR to upgrade multiple dependencies.
👯♂ The following dependencies are linked and will therefore be updated together.ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
lodash
from 4.17.20 to 4.17.21 | 1 version ahead of your current version | 4 years ago
on 2021-02-20
@babel/core
from 7.12.13 to 7.25.2 | 91 versions ahead of your current version | 2 months ago
on 2024-07-30
@babel/plugin-proposal-class-properties
from 7.12.13 to 7.18.6 | 7 versions ahead of your current version | 2 years ago
on 2022-06-27
@babel/plugin-transform-modules-amd
from 7.12.13 to 7.24.7 | 24 versions ahead of your current version | 4 months ago
on 2024-06-05
@babel/plugin-transform-modules-commonjs
from 7.12.13 to 7.24.8 | 35 versions ahead of your current version | 2 months ago
on 2024-07-11
@babel/plugin-transform-react-jsx
from 7.12.13 to 7.25.2 | 31 versions ahead of your current version | 2 months ago
on 2024-07-30
@babel/plugin-transform-runtime
from 7.11.0 to 7.25.4 | 68 versions ahead of your current version | a month ago
on 2024-08-22
@babel/runtime
from 7.11.2 to 7.25.6 | 78 versions ahead of your current version | 25 days ago
on 2024-08-29
@babel/preset-env
from 7.12.13 to 7.25.4 | 78 versions ahead of your current version | a month ago
on 2024-08-22
@babel/preset-react
from 7.12.13 to 7.24.7 | 20 versions ahead of your current version | 4 months ago
on 2024-06-05
react
from 17.0.1 to 17.0.2 | 1 version ahead of your current version | 4 years ago
on 2021-03-22
react-dom
from 17.0.1 to 17.0.2 | 1 version ahead of your current version | 4 years ago
on 2021-03-22
semver
from 5.7.1 to 5.7.2 | 1 version ahead of your current version | a year ago
on 2023-07-10
@graphql-inspector/core
from 2.3.0 to 2.9.0 | 8 versions ahead of your current version | 3 years ago
on 2021-09-02
@graphql-tools/load
from 6.2.5 to 6.2.8 | 56 versions ahead of your current version | 3 years ago
on 2021-04-14
node-fetch
from 2.6.1 to 2.7.0 | 13 versions ahead of your current version | a year ago
on 2023-08-23
@octokit/rest
from 16.38.1 to 16.43.2 | 15 versions ahead of your current version | 4 years ago
on 2020-06-24
@primer/css
from 15.1.0 to 15.2.0 | 13 versions ahead of your current version | 4 years ago
on 2020-09-21
@primer/octicons
from 11.0.0 to 11.3.0 | 20 versions ahead of your current version | 4 years ago
on 2021-02-02
babel-loader
from 8.1.0 to 8.3.0 | 7 versions ahead of your current version | 2 years ago
on 2022-11-03
cheerio
from 1.0.0-rc.3 to 1.0.0 | 10 versions ahead of your current version | a month ago
on 2024-08-09
cookie-parser
from 1.4.5 to 1.4.6 | 1 version ahead of your current version | 3 years ago
on 2021-11-16
mkdirp
from 1.0.3 to 1.0.4 | 1 version ahead of your current version | 4 years ago
on 2020-04-03
copy-webpack-plugin
from 6.0.3 to 6.4.1 | 10 versions ahead of your current version | 4 years ago
on 2020-12-16
cross-env
from 7.0.2 to 7.0.3 | 1 version ahead of your current version | 4 years ago
on 2020-12-01
directory-tree
from 2.2.6 to 2.3.1 | 5 versions ahead of your current version | 3 years ago
on 2021-08-12
dotenv
from 8.2.0 to 8.6.0 | 5 versions ahead of your current version | 3 years ago
on 2021-05-05
express
from 4.17.1 to 4.19.2 | 9 versions ahead of your current version | 6 months ago
on 2024-03-25
express-rate-limit
from 5.1.3 to 5.5.1 | 10 versions ahead of your current version | 3 years ago
on 2021-11-06
express-timeout-handler
from 2.2.0 to 2.2.2 | 1 version ahead of your current version | 3 years ago
on 2021-07-26
flat
from 5.0.0 to 5.0.2 | 2 versions ahead of your current version | 4 years ago
on 2020-08-06
github-slugger
from 1.2.1 to 1.5.0 | 3 versions ahead of your current version | 2 years ago
on 2022-10-25
js-yaml
from 3.14.0 to 3.14.1 | 1 version ahead of your current version | 4 years ago
on 2020-12-07
gray-matter
from 4.0.2 to 4.0.3 | 1 version ahead of your current version | 3 years ago
on 2021-04-24
helmet
from 3.21.2 to 3.23.3 | 7 versions ahead of your current version | 4 years ago
on 2020-06-26
hot-shots
from 8.2.0 to 8.5.2 | 8 versions ahead of your current version | 3 years ago
on 2021-09-26
html-entities
from 1.2.1 to 1.4.0 | 5 versions ahead of your current version | 4 years ago
on 2020-12-19
linkinator
from 2.13.1 to 2.16.2 | 16 versions ahead of your current version | 3 years ago
on 2021-11-14
liquidjs
from 9.22.1 to 9.43.0 | 45 versions ahead of your current version | 2 years ago
on 2022-11-27
lunr-languages
from 1.4.0 to 1.14.0 | 8 versions ahead of your current version | a year ago
on 2023-10-09
mini-css-extract-plugin
from 0.9.0 to 0.12.0 | 7 versions ahead of your current version | 4 years ago
on 2020-10-07
morgan
from 1.9.1 to 1.10.0 | 1 version ahead of your current version | 5 years ago
on 2020-03-20
redis
from 3.0.2 to 3.1.2 | 3 versions ahead of your current version | 3 years ago
on 2021-04-20
resolve-url-loader
from 3.1.2 to 3.1.5 | 3 versions ahead of your current version | 2 years ago
on 2022-12-02
rimraf
from 3.0.0 to 3.0.2 | 2 versions ahead of your current version | 5 years ago
on 2020-02-09
rss-parser
from 3.12.0 to 3.13.0 | 1 version ahead of your current version | a year ago
on 2023-04-11
sass
from 1.26.3 to 1.77.8 | 154 versions ahead of your current version | 2 months ago
on 2024-07-11
sass-loader
from 9.0.2 to 9.0.3 | 1 version ahead of your current version | 4 years ago
on 2020-08-05
style-loader
from 1.2.1 to 1.3.0 | 1 version ahead of your current version | 4 years ago
on 2020-10-03
uuid
from 8.3.0 to 8.3.2 | 3 versions ahead of your current version | 4 years ago
on 2020-12-08
webpack
from 4.44.0 to 4.47.0 | 5 versions ahead of your current version | a year ago
on 2023-09-06
Issues fixed by the recommended upgrade:
SNYK-JS-LODASH-1040724
SNYK-JS-MARKED-1070800
SNYK-JS-AJV-584908
SNYK-JS-QS-3153490
SNYK-JS-NODEFETCH-2342118
SNYK-JS-POSTCSS-1255640
SNYK-JS-POSTCSS-1090595
SNYK-JS-POSTCSS-1255640
SNYK-JS-FLAT-596927
SNYK-JS-LODASH-1018905
SNYK-JS-BABELTRAVERSE-5962462
SNYK-JS-PATHPARSE-1077067
SNYK-JS-PATHPARSE-1077067
SNYK-JS-POSTCSS-1090595
SNYK-JS-CSSWHAT-1298035
SNYK-JS-REDIS-1255645
SNYK-JS-EXPRESS-6474509
SNYK-JS-XML2JS-5414874
Release notes
Package name: lodash
Bump to v4.17.21
Bump to v4.17.20.
Package name: @babel/core
v7.25.2 (2024-07-30)
🐛 Bug Fix
babel-core
,babel-traverse
requeueComputedKeyAndDecorators
is available (@ nicolo-ribaudo)Committers: 2
v7.24.9 (2024-07-15)
🐛 Bug Fix
babel-core
,babel-standalone
require()
call in@ babel/standalone
bundle (@ nicolo-ribaudo)babel-types
💅 Polish
babel-generator
,babel-plugin-transform-optional-chaining
as
/satisfies
(@ nicolo-ribaudo)🏠 Internal
babel-helper-module-transforms
Committers: 5
Package name: @babel/plugin-proposal-class-properties
Package name: @babel/plugin-transform-modules-amd
v7.24.7 (2024-06-05)
🐛 Bug Fix
babel-node
babel-traverse
constantViolations
with destructuring (@ liuxingbaoyu)babel-helper-transform-fixture-test-runner
,babel-plugin-proposal-explicit-resource-management
using
inswitch
correctly (@ liuxingbaoyu)🏠 Internal
babel-helpers
,babel-runtime-corejs2
,babel-runtime-corejs3
,babel-runtime
Committers: 7
v7.24.6 (2024-05-24)
Thanks @ amjed-98, @ blakewilson, @ coelhucas, and @ SukkaW for your first PRs!
🐛 Bug Fix
babel-helper-create-class-features-plugin
,babel-plugin-transform-class-properties
babel-core
,babel-generator
,babel-plugin-transform-modules-commonjs
babel-helper-create-class-features-plugin
,babel-plugin-proposal-decorators
babel-helpers
,babel-plugin-proposal-decorators
,babel-runtime-corejs3
babel-parser
,babel-plugin-transform-typescript
cls.fn<C> = x
(@ liuxingbaoyu)🏠 Internal
babel-core
,babel-helpers
,babel-plugin-transform-runtime
,babel-preset-env
,babel-runtime-corejs2
,babel-runtime-corejs3
,babel-runtime
babel-helpers
tsconfig.json
for@ babel/helpers/src/helpers
(@ nicolo-ribaudo)babel-cli
,babel-helpers
,babel-plugin-external-helpers
,babel-plugin-proposal-decorators
,babel-plugin-transform-class-properties
,babel-plugin-transform-modules-commonjs
,babel-plugin-transform-modules-systemjs
,babel-plugin-transform-runtime
,babel-preset-env
,babel-runtime-corejs2
,babel-runtime-corejs3
,babel-runtime
babel-parser
,babel-traverse
Committers: 9
v7.24.1 (2024-03-19)
🐛 Bug Fix
babel-helper-create-class-features-plugin
,babel-plugin-proposal-decorators
babel-plugin-proposal-decorators
,babel-plugin-proposal-json-modules
,babel-plugin-transform-async-generator-functions
,babel-plugin-transform-regenerator
,babel-plugin-transform-runtime
,babel-preset-env
moduleName
for@ babel/runtime/regenerator
imports (@ nicolo-ribaudo)babel-helper-create-class-features-plugin
,babel-plugin-proposal-decorators
,babel-plugin-proposal-pipeline-operator
,babel-plugin-transform-class-properties
babel-helper-create-class-features-plugin
,babel-helper-replace-supers
,babel-plugin-proposal-decorators
,babel-plugin-transform-class-properties
📝 Documentation
🏠 Internal
babel-code-frame
,babel-highlight
chalk
withpicocolors
(@ nicolo-ribaudo)babel-helper-fixtures
,babel-helpers
,babel-plugin-bugfix-safari-id-destructuring-collision-in-function-expression
,babel-plugin-proposal-pipeline-operator
,babel-plugin-transform-unicode-sets-regex
,babel-preset-env
,babel-preset-flow
babel-helper-module-imports
,babel-plugin-proposal-import-wasm-source
,babel-plugin-proposal-json-modules
,babel-plugin-proposal-record-and-tuple
,babel-plugin-transform-react-jsx-development
,babel-plugin-transform-react-jsx
🔬 Output optimization
babel-helper-replace-supers
,babel-plugin-transform-class-properties
,babel-plugin-transform-classes
,babel-plugin-transform-parameters
,babel-plugin-transform-runtime
assertThisInitialized
aftersuper()
(@ liuxingbaoyu)babel-plugin-transform-class-properties
,babel-plugin-transform-classes
assertThisInitialized
more often (@ liuxingbaoyu)babel-plugin-proposal-decorators
,babel-plugin-transform-class-properties
,babel-plugin-transform-object-rest-spread
,babel-traverse
babel-core
,babel-plugin-external-helpers
,babel-plugin-proposal-decorators
,babel-plugin-proposal-function-bind
,babel-plugin-transform-class-properties
,babel-plugin-transform-classes
,babel-plugin-transform-flow-comments
,babel-plugin-transform-flow-strip-types
,babel-plugin-transform-function-name
,babel-plugin-transform-modules-systemjs
,babel-plugin-transform-parameters
,babel-plugin-transform-private-property-in-object
,babel-plugin-transform-react-jsx
,babel-plugin-transform-runtime
,babel-plugin-transform-spread
,babel-plugin-transform-typescript
,babel-preset-env
Committers: 4
Package name: @babel/plugin-transform-modules-commonjs
v7.24.8 (2024-07-11)
Thanks @ H0onnn, @ jkup and @ SreeXD for your first pull requests!
👓 Spec Compliance
babel-parser
declare
(@ liuxingbaoyu)🐛 Bug Fix
babel-generator
in
infor
heads (@ nicolo-ribaudo)await using
(@ nicolo-ribaudo)babel-parser
using
declarations (@ H0onnn).value: undefined
to regexp literals (@ liuxingbaoyu)babel-types
ObjectTypeInternalSlot
visitor keys (@ nicolo-ribaudo)babel-plugin-transform-typescript
export import x =
(@ liuxingbaoyu)💅 Polish
babel-generator
async
infor await
(@ nicolo-ribaudo)babel-traverse
Scope.globals
multiple times (@ liuxingbaoyu)Committers: 9
v7.24.7 (2024-06-05)
🐛 Bug Fix
babel-node
babel-traverse
constantViolations
with destructuring (@ liuxingbaoyu)babel-helper-transform-fixture-test-runner
,babel-plugin-proposal-explicit-resource-management
using
inswitch
correctly (@ liuxingbaoyu)🏠 Internal
babel-helpers
,babel-runtime-corejs2
,babel-runtime-corejs3
,babel-runtime
Committers: 7
v7.24.6 (2024-05-24)
Thanks @ amjed-98, @ blakewilson, @ coelhucas, and @ SukkaW for your first PRs!
🐛 Bug Fix
babel-helper-create-class-features-plugin
,babel-plugin-transform-class-properties
babel-core
,babel-generator
,babel-plugin-transform-modules-commonjs
babel-helper-create-class-features-plugin
,babel-plugin-proposal-decorators
babel-helpers
,babel-plugin-proposal-decorators
,babel-runtime-corejs3
babel-parser
,babel-plugin-transform-typescript
cls.fn<C> = x
(@ liuxingbaoyu)🏠 Internal
babel-core
,babel-helpers
,babel-plugin-transform-runtime
,babel-preset-env
,babel-runtime-corejs2
,babel-runtime-corejs3
,babel-runtime
babel-helpers
tsconfig.json
for@ babel/helpers/src/helpers
(@ nicolo-ribaudo)babel-cli
,babel-helpers
,babel-plugin-external-helpers
,babel-plugin-proposal-decorators
,babel-plugin-transform-class-properties
,babel-plugin-transform-modules-commonjs
,babel-plugin-transform-modules-systemjs
,babel-plugin-transform-runtime
,babel-preset-env
,babel-runtime-corejs2
,babel-runtime-corejs3
,babel-runtime
babel-parser
,babel-traverse
Committers: 9
Package name: @babel/plugin-transform-react-jsx
v7.25.2 (2024-07-30)
🐛 Bug Fix
babel-core
,babel-traverse
requeueComputedKeyAndDecorators
is available (@ nicolo-ribaudo)Committers: 2
Package name: @babel/plugin-transform-runtime
v7.25.4 (2024-08-22)
🐛 Bug Fix
babel-traverse
babel-helper-create-class-features-plugin
,babel-plugin-proposal-decorators
babel-types
babel-generator
export namespace as A
(@ nicolo-ribaudo)💅 Polish
babel-generator
,babel-plugin-proposal-decorators
,babel-plugin-proposal-destructuring-private
,babel-plugin-proposal-pipeline-operator
,babel-plugin-transform-class-properties
,babel-plugin-transform-destructuring
,babel-plugin-transform-optional-chaining
,babel-plugin-transform-private-methods
,babel-plugin-transform-private-property-in-object
,babel-plugin-transform-typescript
,babel-runtime-corejs2
,babel-runtime
,babel-traverse
babel-generator
,babel-plugin-transform-class-properties
babel-generator
,babel-plugin-proposal-decorators
,babel-plugin-proposal-destructuring-private
,babel-plugin-transform-object-rest-spread
🔬 Output optimization
babel-generator
Committers: 4