Title: [Snyk] Security upgrade three from 0.92.0 to 0.125.0 by checkoss · Pull Request #6 · checkoss/iClient-JavaScript · GitHub
Open Graph Title: [Snyk] Security upgrade three from 0.92.0 to 0.125.0 by checkoss · Pull Request #6 · checkoss/iClient-JavaScript
X Title: [Snyk] Security upgrade three from 0.92.0 to 0.125.0 by checkoss · Pull Request #6 · checkoss/iClient-JavaScript
Description: Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project. Changes included in this PR Changes to the following files to upgrade the vulnerable dependencies to a fixed version: package.json Vulnerabilities that will be fixed With an upgrade: Severity Priority Score (*) Issue Breaking Change Exploit Maturity 661/1000 Why? Recently disclosed, Has a fix available, CVSS 7.5 Regular Expression Denial of Service (ReDoS) SNYK-JS-THREE-1064931 No No Known Exploit (*) Note that the real score may have changed since the PR was raised. Commit messages Package name: three The new version differs by 250 commits. e1037f9 r125 3f03b59 Merge pull request #21158 from Mugen87/dev51 b14f0ee Merge pull request #21148 from elalish/variantNormals 535f7fc Examples: Clean up. c5acc71 Merge pull request #21157 from Mugen87/dev51 8242ac0 TS: Add failIfMajorPerformanceCaveat. 72a9ae4 Merge pull request #21155 from donmccurdy/docs-gltfloader-ktx2 41e2f30 GLTFLoader: Remove 'experimental' note on KHR_texture_basisu. 65d597d adding notes d16ca2a Merge pull request #21154 from j13ag0/patch-1 192b4dd Update Vector3.html 16eb3ec Merge pull request #21145 from Mugen87/dev2 3d153ab Merge pull request #21149 from Mugen87/dev51 ca306c0 Add version to glslang. f9d120d WebGPURenderer: Refactor glslang import. 5eba37e Added RGBMLoader. 5f1124b fixed GLTF variants normal map scale b15bd85 Merge pull request #21134 from 1993heqiang/local_dev a295496 Merge pull request #21146 from chpatrick/reset-current-depth 58338b6 Merge pull request #21144 from donmccurdy/cleanup-universal-texture-loaders 608216f Reset _currentDepth... in onSessionEnd in WebXRManager. 055ffaf KTX2Loader + BasisTextureLoader: Clean up. e5d85f6 Docs: Modify ‘round’ to ‘orbit’ ff5573c Merge pull request #19085 from Mugen87/dev48 See the full diff Check the changes in this PR to ensure they won't cause issues with your project. Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs. For more information: 🧐 View latest project report 🛠 Adjust project settings 📚 Read more about Snyk's upgrade and patch logic
Open Graph Description: Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project. Changes included in this PR Changes to the following files to upgrade the vulnerable dep...
X Description: Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project. Changes included in this PR Changes to the following files to upgrade the vulnerable dep...
Opengraph URL: https://github.com/checkoss/iClient-JavaScript/pull/6
X: @github
Domain: patch-diff.githubusercontent.com
| route-pattern | /:user_id/:repository/pull/:id/files(.:format) |
| route-controller | pull_requests |
| route-action | files |
| fetch-nonce | v2:8199d3d5-a31d-fb0a-1add-95cb347570a7 |
| current-catalog-service-hash | ae870bc5e265a340912cde392f23dad3671a0a881730ffdadd82f2f57d81641b |
| request-id | C8DC:11805C:77420:962C9:6992087E |
| html-safe-nonce | af7addf81d98d977035a0972852507267685df523a4c7febd2b98844361cd723 |
| visitor-payload | eyJyZWZlcnJlciI6IiIsInJlcXVlc3RfaWQiOiJDOERDOjExODA1Qzo3NzQyMDo5NjJDOTo2OTkyMDg3RSIsInZpc2l0b3JfaWQiOiI2NDEzNzk5MzI2MzEzNzQ0NTEwIiwicmVnaW9uX2VkZ2UiOiJpYWQiLCJyZWdpb25fcmVuZGVyIjoiaWFkIn0= |
| visitor-hmac | d09a3732e1908f53907762123f8b96bb240b12c16340db90d60d0a6e3c4a5337 |
| hovercard-subject-tag | pull_request:564262631 |
| github-keyboard-shortcuts | repository,pull-request-list,pull-request-conversation,pull-request-files-changed,copilot |
| google-site-verification | Apib7-x98H0j5cPqHWwSMm6dNU4GmODRoqxLiDzdx9I |
| octolytics-url | https://collector.github.com/github/collect |
| analytics-location | / |
| fb:app_id | 1401488693436528 |
| apple-itunes-app | app-id=1477376905, app-argument=https://github.com/checkoss/iClient-JavaScript/pull/6/files |
| twitter:image | https://avatars.githubusercontent.com/u/72003755?s=400&v=4 |
| twitter:card | summary_large_image |
| og:image | https://avatars.githubusercontent.com/u/72003755?s=400&v=4 |
| og:image:alt | Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project. Changes included in this PR Changes to the following files to upgrade the vulnerable dep... |
| og:site_name | GitHub |
| og:type | object |
| hostname | github.com |
| expected-hostname | github.com |
| None | 42c603b9d642c4a9065a51770f75e5e27132fef0e858607f5c9cb7e422831a7b |
| turbo-cache-control | no-preview |
| diff-view | unified |
| go-import | github.com/checkoss/iClient-JavaScript git https://github.com/checkoss/iClient-JavaScript.git |
| octolytics-dimension-user_id | 72003755 |
| octolytics-dimension-user_login | checkoss |
| octolytics-dimension-repository_id | 299585160 |
| octolytics-dimension-repository_nwo | checkoss/iClient-JavaScript |
| octolytics-dimension-repository_public | true |
| octolytics-dimension-repository_is_fork | true |
| octolytics-dimension-repository_parent_id | 99533003 |
| octolytics-dimension-repository_parent_nwo | SuperMap/iClient-JavaScript |
| octolytics-dimension-repository_network_root_id | 99533003 |
| octolytics-dimension-repository_network_root_nwo | SuperMap/iClient-JavaScript |
| turbo-body-classes | logged-out env-production page-responsive |
| disable-turbo | true |
| browser-stats-url | https://api.github.com/_private/browser/stats |
| browser-errors-url | https://api.github.com/_private/browser/errors |
| release | 848bc6032dcc93a9a7301dcc3f379a72ba13b96e |
| ui-target | full |
| theme-color | #1e2327 |
| color-scheme | light dark |
Links:
Viewport: width=device-width