Skip to content

Conversation

@mjperrins
Copy link

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade typescript-rest from 3.0.1 to 3.0.4.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 3 versions ahead of your current version.
  • The recommended version was released 3 years ago, on 2021-06-10.

The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Server-side Request Forgery (SSRF)
SNYK-JS-SWAGGERUIDIST-2314884
441/1000
Why? Mature exploit, CVSS 5.4
Mature
Server-side Request Forgery (SSRF)
SNYK-JS-SWAGGERUIDIST-6056393
441/1000
Why? Mature exploit, CVSS 5.4
Proof of Concept

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: typescript-rest from typescript-rest GitHub release notes
Commit messages
Package name: typescript-rest
  • 43231ca fix coverage
  • 5a8d009 fix version
  • 816e514 change test framework to jest
  • 97eb9e7 update dependencies
  • 398e159 fix pipeline
  • 3fa54c9 remove travis
  • 076195b update CI/CD tool
  • d93081f updating dependencies
  • 70a2716 Merge pull request #144 from mr-short/patch-1
  • af159a1 update dependencies
  • 6e6e09c Merge pull request #148 from mr-short/multiple-security-decorators
  • 1dbae06 Multiple security decorators
  • 78b8c48 ServiceAuthenticator getRoles: add response param
  • 7215bff Authenticator getRoles: add response param
  • bc1491d new version
  • fbc53ae new version
  • fc22a52 Merge pull request #141 from abhisekp/fix-null-return
  • c3a14b9 Merge pull request #143 from thiagobustamante/snyk-fix-ffa9b8c068604dd0964148211857f5df
  • 3a7812a Merge pull request #142 from msieurtoph/patch-1
  • 4f48f43 fix: package.json & package-lock.json to reduce vulnerabilities
  • 70582d7 Wait for the reponse from async methods before executing postProcessors
  • f6284c7 fix(service): Fix service invoker null return

Compare


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants