Skip to content

[Snyk] Fix for 1 vulnerabilities#5

Open
snyk-bot wants to merge 1 commit into
masterfrom
snyk-fix-4756fb4f03d63d756a82c45a018ef020
Open

[Snyk] Fix for 1 vulnerabilities#5
snyk-bot wants to merge 1 commit into
masterfrom
snyk-fix-4756fb4f03d63d756a82c45a018ef020

Conversation

@snyk-bot

@snyk-bot snyk-bot commented Feb 4, 2020

Copy link
Copy Markdown

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

Changes included in this PR

  • Adding or updating a Snyk policy (.snyk) file; this file is required in order to apply Snyk vulnerability patches.
    Find out more.

Vulnerabilities that will be fixed

With a Snyk patch:
Severity Issue Exploit Maturity
medium severity Prototype Pollution
npm:lodash:20180130
No Known Exploit

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:

🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic

The following vulnerabilities are fixed with a Snyk patch:
- https://snyk.io/vuln/npm:lodash:20180130
@ghost

ghost commented Feb 4, 2020

Copy link
Copy Markdown

DeepCode's analysis on #4b4646 found:

  • 0 critical issues. ⚠️ 0 warnings and 0 minor issues. ✔️ 0 issues were fixed.

💬 This comment has been generated by the DeepCode bot, installed by the owner of the repository. The DeepCode bot protects your repository by detecting and commenting on security vulnerabilities or other critical issues.


☺️ If you want to provide feedback on our bot, here is how to contact us.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant