[Snyk] Security upgrade cucumber from 2.3.1 to 6.0.7 by jcompagner · Pull Request #106 · Servoy/aggridcomponents
This PR was automatically created by Snyk using the credentials of a real user.
Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.
Changes included in this PR
- Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
- svyGroupingGridDemo_e2e/package.json
- svyGroupingGridDemo_e2e/package-lock.json
Vulnerabilities that will be fixed
With an upgrade:
| Severity | Priority Score (*) | Issue | Breaking Change | Exploit Maturity |
|---|---|---|---|---|
| 479/1000 Why? Has a fix available, CVSS 5.3 |
Regular Expression Denial of Service (ReDoS) SNYK-JS-MINIMATCH-3050818 |
Yes | No Known Exploit |
(*) Note that the real score may have changed since the PR was raised.
Commit messages
Package name: cucumber
The new version differs by 213 commits.- 9f15d6f 6.0.7
- 7153154 chore: update script
- 09b9aa3 6.0.6
- 022e26d chore: get 6.x ready for patch release (#2001)
- 71ae9cf add build image scripting
- 68c9f45 ignore whole browser example dir
- 4ca796e Release 6.0.5
- c4f062a simplify unit test
- 7e5773b json formatter: remove incorrect duration multiplication (#1257)
- 9518f1c Release 6.0.4
- 96d6615 retry: create a new World instance for every attempt (#1253)
- b534f0c docs: add link to 5.x documentation (#1252)
- ec6606f update dep: cucumber expressions 8.1.0 (#1251)
- a89eae3 Release 6.0.3
- 086ba83 revert json formatter
- 13a6c77 add contributor
- 76d50cd Release 6.0.2
- 977f886 Upgrade to cucumber-expressions 8.0.1 (#1239)
- 9481f6d Update CHANGELOG.md
- d2b8fdb Update CHANGELOG.md
- cd1b3cc fix changelog, prepublish
- 167fd82 Release 6.0.1
- d195239 Release 6.0.0
- 009e5ce fix build release
Check the changes in this PR to ensure they won't cause issues with your project.
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📚 Read more about Snyk's upgrade and patch logic
Learn how to fix vulnerabilities with free interactive lessons: