Title: [Snyk] Security upgrade webpack-dev-server from 3.11.3 to 4.7.3 by snyk-bot · Pull Request #91 · Zintexiss/Leo-JavaScript · GitHub
Open Graph Title: [Snyk] Security upgrade webpack-dev-server from 3.11.3 to 4.7.3 by snyk-bot · Pull Request #91 · Zintexiss/Leo-JavaScript
X Title: [Snyk] Security upgrade webpack-dev-server from 3.11.3 to 4.7.3 by snyk-bot · Pull Request #91 · Zintexiss/Leo-JavaScript
Description: Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project. Changes included in this PR Changes to the following files to upgrade the vulnerable dependencies to a fixed version: Cute-Webpack/Webpack-Quickly-Starter/package.json Vulnerabilities that will be fixed With an upgrade: Severity Priority Score (*) Issue Breaking Change Exploit Maturity 658/1000 Why? Proof of Concept exploit, Recently disclosed, Has a fix available, CVSS 5.3 Open Redirect SNYK-JS-NODEFORGE-2330875 Yes Proof of Concept 601/1000 Why? Recently disclosed, Has a fix available, CVSS 6.3 Prototype Pollution SNYK-JS-NODEFORGE-2331908 Yes No Known Exploit (*) Note that the real score may have changed since the PR was raised. Commit messages Package name: webpack-dev-server The new version differs by 250 commits. 5280ee7 docs: fix typo d834582 chore(release): 4.7.3 7b8c85b chore(deps): update `selfsigned` (#4170) d598325 chore: fix lint c1907f1 refactor: remove redundant `if` statements (#4158) e535f25 ci: debug (#4144) 75999bb chore(release): 4.7.2 90a96f7 ci: fix (#4143) f6bc644 fix: compatible with `onAfterSetupMiddleware` 317e4b9 docs: fix testing instructions (#4133) ff4550e test: remove redundant test cases related to 3rd party code (#4131) 0dd1ee6 test: add e2e tests for `setupExitSignals` option (#4130) afe4975 chore(release): 4.1.7 4e5d8ea fix: droped `url` package (#4132) b0c98f0 chore(release): 4.7.0 3138213 chore(deps): update (#4127) 8f02c3f feat: added types f4fb15f fix: update description of `onAfterSetupMiddleware` and `onBeforeSetupMiddleware` options (#4126) 37b73d5 test: add e2e test for `WEBPACK_SERVE` env variable (#4125) f5a9d05 chore(deps-dev): bump eslint from 8.4.1 to 8.5.0 (#4121) c9b959f chore(deps): bump ws from 8.3.0 to 8.4.0 (#4124) 42208aa chore(deps-dev): bump lint-staged from 12.1.2 to 12.1.3 (#4122) f440f84 chore(deps): bump express from 4.17.1 to 4.17.2 (#4120) c13aa56 feat: added the `setupMiddlewares` option (#4068) See the full diff Check the changes in this PR to ensure they won't cause issues with your project. Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs. For more information: 🧐 View latest project report 🛠 Adjust project settings 📚 Read more about Snyk's upgrade and patch logic
Open Graph Description: Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project. Changes included in this PR Changes to the following files to upgrade the vulnerable dep...
X Description: Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project. Changes included in this PR Changes to the following files to upgrade the vulnerable dep...
Opengraph URL: https://github.com/Zintexiss/Leo-JavaScript/pull/91
X: @github
Domain: github.com
| route-pattern | /:user_id/:repository/pull/:id/files(.:format) |
| route-controller | pull_requests |
| route-action | files |
| fetch-nonce | v2:f82b82f6-e5cd-ca65-4056-fee648e6df50 |
| current-catalog-service-hash | ae870bc5e265a340912cde392f23dad3671a0a881730ffdadd82f2f57d81641b |
| request-id | E426:A6347:21D1CD1:2D28452:6A5D6F12 |
| html-safe-nonce | ab6ffef4ec780e2dcc78b7bd33a64b6b0b98d1bf0634e5cc79657137576289c8 |
| visitor-payload | eyJyZWZlcnJlciI6IiIsInJlcXVlc3RfaWQiOiJFNDI2OkE2MzQ3OjIxRDFDRDE6MkQyODQ1Mjo2QTVENkYxMiIsInZpc2l0b3JfaWQiOiI4NzkyNjIxNDIzNDAxOTg3ODU4IiwicmVnaW9uX2VkZ2UiOiJpYWQiLCJyZWdpb25fcmVuZGVyIjoiaWFkIn0= |
| visitor-hmac | ceb6873bafe9f7c67f1651c3760640ac4161b31493558dfbde8210c8400684b5 |
| hovercard-subject-tag | pull_request:820125288 |
| github-keyboard-shortcuts | repository,pull-request-list,pull-request-conversation,pull-request-files-changed,copilot |
| google-site-verification | Apib7-x98H0j5cPqHWwSMm6dNU4GmODRoqxLiDzdx9I |
| octolytics-url | https://collector.github.com/github/collect |
| analytics-location | / |
| fb:app_id | 1401488693436528 |
| apple-itunes-app | app-id=1477376905, app-argument=https://github.com/Zintexiss/Leo-JavaScript/pull/91/files |
| twitter:image | https://avatars.githubusercontent.com/u/19733683?s=400&v=4 |
| twitter:card | summary_large_image |
| og:image | https://avatars.githubusercontent.com/u/19733683?s=400&v=4 |
| og:image:alt | Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project. Changes included in this PR Changes to the following files to upgrade the vulnerable dep... |
| og:site_name | GitHub |
| og:type | object |
| hostname | github.com |
| expected-hostname | github.com |
| None | 5290d7e14309ad1e76106a9c4237bd1041517e83ea182c8ab756752cb0c6940b |
| turbo-cache-control | no-preview |
| diff-view | unified |
| go-import | github.com/Zintexiss/Leo-JavaScript git https://github.com/Zintexiss/Leo-JavaScript.git |
| octolytics-dimension-user_id | 74653433 |
| octolytics-dimension-user_login | Zintexiss |
| octolytics-dimension-repository_id | 317631018 |
| octolytics-dimension-repository_nwo | Zintexiss/Leo-JavaScript |
| octolytics-dimension-repository_public | true |
| octolytics-dimension-repository_is_fork | true |
| octolytics-dimension-repository_parent_id | 281939405 |
| octolytics-dimension-repository_parent_nwo | snailuncle/Leo-JavaScript |
| octolytics-dimension-repository_network_root_id | 131255918 |
| octolytics-dimension-repository_network_root_nwo | MsLin857046915/Leo-JavaScript |
| turbo-body-classes | logged-out env-production page-responsive |
| disable-turbo | true |
| browser-stats-url | https://api.github.com/_private/browser/stats |
| browser-errors-url | https://api.github.com/_private/browser/errors |
| release | 9c975978430e9ad293956f2bbdaf153b1bd84a99 |
| ui-target | canary-2 |
| theme-color | #1e2327 |
| color-scheme | light dark |
Links:
Viewport: width=device-width