Skip to content

Conversation

snyk-bot
Copy link
Contributor

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

Changes included in this PR

  • Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
    • monkey/monkey_island/cc/ui/package.json
    • monkey/monkey_island/cc/ui/package-lock.json

Vulnerabilities that will be fixed

With an upgrade:
Severity Issue Breaking Change Exploit Maturity
medium severity Regular Expression Denial of Service (ReDoS )
SNYK-JS-MARKED-584281
Yes No Known Exploit
Commit messages
Package name: marked The new version differs by 195 commits.

See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:
🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic

…c/ui/package-lock.json to reduce vulnerabilities

The following vulnerabilities are fixed with an upgrade:
- https://snyk.io/vuln/SNYK-JS-MARKED-584281
@codecov
Copy link

codecov bot commented Jul 27, 2020

Codecov Report

Merging #740 into develop will not change coverage.
The diff coverage is n/a.

Impacted file tree graph

@@           Coverage Diff            @@
##           develop     #740   +/-   ##
========================================
  Coverage    60.04%   60.04%           
========================================
  Files          157      157           
  Lines         4818     4818           
========================================
  Hits          2893     2893           
  Misses        1925     1925           

Continue to review full report at Codecov.

Legend - Click here to learn more
Δ = absolute <relative> (impact), ø = not affected, ? = missing data
Powered by Codecov. Last update c1c412f...ac21aca. Read the comment docs.

@VakarisZ VakarisZ merged commit 1f96167 into develop Jul 28, 2020
@acepace acepace deleted the snyk-fix-e85f472f3a236fafae1b14a45dcea76c branch January 6, 2021 00:00
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants