Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Snyk] Upgrade ical-generator from 3.0.1 to 3.4.3 #35

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

Frainlar
Copy link
Contributor

@Frainlar Frainlar commented Jul 5, 2022

Snyk has created this PR to upgrade ical-generator from 3.0.1 to 3.4.3.

merge advice
As this is a private repository, Snyk-bot does not have access. Therefore, this PR has been created automatically, but appears to have been created by a real user.

✨ Snyk has automatically assigned this pull request, set who gets assigned.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 24 versions ahead of your current version.
  • The recommended version was released 2 months ago, on 2022-05-14.

The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Regular Expression Denial of Service (ReDoS)
SNYK-JS-ANSIREGEX-1583908
696/1000
Why? Proof of Concept exploit, Has a fix available, CVSS 7.5
Proof of Concept

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: ical-generator from ical-generator GitHub release notes
Commit messages
Package name: ical-generator
  • 4f17774 chore(release): 🔖 3.4.3 [skip ci]
  • bdbaf9a Merge pull request #381 from sebbo2002/develop
  • 98ec955 Merge remote-tracking branch 'template/typescript' into develop
  • 2226893 ci: Fix docker digest assignment
  • 37e2ef6 ci: Fix docker digest assignment
  • 619afeb chore(release): 🔖 3.4.3-develop.2 [skip ci]
  • fdb15f0 Merge remote-tracking branch 'template/typescript' into develop
  • dca5f4d ci: Add template updater
  • 721af57 ci: Try Docker builds 3 times each
  • e1a3dce Update all development npm dependencies (2022-05-10) (#380)
  • 395a352 Merge pull request #75 from sebbo2002/dependabot/github_actions/docker/setup-qemu-action-2
  • 244a23f Merge pull request #74 from sebbo2002/dependabot/github_actions/docker/login-action-2
  • f201203 Merge pull request #73 from sebbo2002/dependabot/github_actions/docker/build-push-action-3
  • 9143fc3 ci(deps): bump docker/setup-qemu-action from 1 to 2
  • 59fab1a ci(deps): bump docker/login-action from 1 to 2
  • 03e95b0 ci(deps): bump docker/build-push-action from 2 to 3
  • bbd3137 Update all development npm dependencies (2022-05-03) (#379)
  • c196a8f Merge pull request #72 from sebbo2002/dependabot/docker/node-1a9a71e
  • b2b8db0 build(deps): bump node from `28bed50` to `1a9a71e`
  • b8434e4 chore(release): 🔖 3.4.3-develop.1 [skip ci]
  • 46048d4 Merge remote-tracking branch 'template/typescript' into develop
  • 310d80e Merge branch 'typescript' of github.com:sebbo2002/js-template into typescript
  • e4eb139 ci: Add is-semantic-release
  • ad674cd Merge branch main into develop [skip ci]

Compare


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

👩‍💻 Set who automatically gets assigned

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

@netlify
Copy link

netlify bot commented Jul 5, 2022

Deploy Preview for ktern-ai-3 ready!

Name Link
🔨 Latest commit 72f2582
🔍 Latest deploy log https://app.netlify.com/sites/ktern-ai-3/deploys/62c38c44e60e490009d53fa4
😎 Deploy Preview https://deploy-preview-35--ktern-ai-3.netlify.app
📱 Preview on mobile
Toggle QR Code...

QR Code

Use your smartphone camera to open QR code link.

To edit notification comments on pull requests, go to your Netlify site settings.

@netlify
Copy link

netlify bot commented Jul 5, 2022

Deploy Preview for affectionate-dijkstra-2ef19f ready!

Name Link
🔨 Latest commit 72f2582
🔍 Latest deploy log https://app.netlify.com/sites/affectionate-dijkstra-2ef19f/deploys/62c38c44d6f87f00093343f4
😎 Deploy Preview https://deploy-preview-35--affectionate-dijkstra-2ef19f.netlify.app
📱 Preview on mobile
Toggle QR Code...

QR Code

Use your smartphone camera to open QR code link.

To edit notification comments on pull requests, go to your Netlify site settings.

@netlify
Copy link

netlify bot commented Jul 5, 2022

Deploy Preview for ktern-ai ready!

Name Link
🔨 Latest commit 72f2582
🔍 Latest deploy log https://app.netlify.com/sites/ktern-ai/deploys/62c38c44b2aaaa000820eec4
😎 Deploy Preview https://deploy-preview-35--ktern-ai.netlify.app
📱 Preview on mobile
Toggle QR Code...

QR Code

Use your smartphone camera to open QR code link.

To edit notification comments on pull requests, go to your Netlify site settings.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants