[Snyk] Fix for 1 vulnerabilities #53

Merged
argoyle merged 2 commits from snyk-fix-8dcc14af672e4e2d4d93362997e9e4e4 into master 2019-10-05 14:35:05 +00:00
argoyle commented 2019-10-05 01:01:09 +00:00 (Migrated from gitlab.com)

Description

This Merge Request fixes one or more vulnerable packages in the yarn dependencies of this project.
See the Snyk test report for more details.

Snyk Project: unboundsoftware/dancefinder/dancefinder-app:package.json

Snyk Organization: argoyle

Lockfile

If you are using package-lock.json or yarn.lock, please re-lock your dependencies and push an updated lockfile before merging this Merge Request.

Changes included in this Merge Request

  • A Snyk policy (.snyk) file, with updated settings.

Vulnerabilities that will be fixed

With a Snyk patch:

You can read more about Snyk's upgrade and patch logic in Snyk's documentation.

Check the changes in this Merge Request to ensure they won't cause issues with your project.

Stay secure,
The Snyk team

Note: You are seeing this because you or someone else with access to this repository has authorised Snyk to open Fix Merge Requests. To review the settings for this Snyk project please go to the project settings page.

#### Description This Merge Request fixes one or more vulnerable packages in the `yarn` dependencies of this project. See the [Snyk test report](https://app.snyk.io/org/argoyle/test/gitlab/fdbefbeb-8f1c-483c-917e-152c9523c009/master..snyk-fix-8dcc14af672e4e2d4d93362997e9e4e4) for more details. #### Snyk Project: [unboundsoftware/dancefinder/dancefinder-app:package.json](https://app.snyk.io/org/argoyle/project/fdbefbeb-8f1c-483c-917e-152c9523c009) #### Snyk Organization: [argoyle](https://app.snyk.io/org/argoyle) #### Lockfile If you are using `package-lock.json` or `yarn.lock`, please re-lock your dependencies and push an updated lockfile before merging this Merge Request. #### Changes included in this Merge Request - A Snyk policy (`.snyk`) file, with updated settings. #### Vulnerabilities that will be fixed ##### With a [Snyk patch](https://snyk.io/docs/fixing-vulnerabilities/#patches): - [SNYK-JS-LODASH-450202](https://snyk.io/vuln/SNYK-JS-LODASH-450202) You can read more about Snyk's upgrade and patch logic in [Snyk's documentation](https://snyk.io/docs/using-snyk/). Check the changes in this Merge Request to ensure they won't cause issues with your project. Stay secure, The Snyk team _**Note**: You are seeing this because you or someone else with access to this repository has authorised Snyk to open Fix Merge Requests. To review the settings for this Snyk project please go to the [project settings page](https://app.snyk.io/org/argoyle/project/fdbefbeb-8f1c-483c-917e-152c9523c009/settings)._ [//]: # (snyk:metadata:{"type":"auto","packageManager":"yarn","vulns":["SNYK-JS-LODASH-450202"],"patch":["SNYK-JS-LODASH-450202"],"upgrade":[],"isBreakingChange":false,"env":"prod","dependencies":[],"prType":"fix"})
argoyle commented 2019-10-05 14:19:22 +00:00 (Migrated from gitlab.com)

added 1 commit

Compare with previous version

added 1 commit <ul><li>d55acad4 - Update lockfile</li></ul> [Compare with previous version](/unboundsoftware/dancefinder/dancefinder-app/merge_requests/4/diffs?diff_id=57580195&start_sha=aac508c4771fd5d41c8c6057aa6f6d6f5f055247)
argoyle commented 2019-10-05 14:35:05 +00:00 (Migrated from gitlab.com)

merged

merged
argoyle commented 2019-10-05 14:35:05 +00:00 (Migrated from gitlab.com)

mentioned in commit 5846755d74

mentioned in commit 5846755d74c474ed572916386b3e7247554dbe1c
Sign in to join this conversation.