Skip to content

[Snyk] Upgrade @slack/bolt from 3.11.1 to 3.13.0#1

Open
jakeortega wants to merge 1 commit intomainfrom
snyk-upgrade-42f74d8a425e4781ae93f11cffde5e25
Open

[Snyk] Upgrade @slack/bolt from 3.11.1 to 3.13.0#1
jakeortega wants to merge 1 commit intomainfrom
snyk-upgrade-42f74d8a425e4781ae93f11cffde5e25

Conversation

@jakeortega
Copy link
Owner

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade @slack/bolt from 3.11.1 to 3.13.0.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 6 versions ahead of your current version.
  • The recommended version was released a month ago, on 2023-04-04.

The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Improper Authentication
SNYK-JS-JSONWEBTOKEN-3180022
320/1000
Why? CVSS 6.4
No Known Exploit
Improper Restriction of Security Token Assignment
SNYK-JS-JSONWEBTOKEN-3180024
320/1000
Why? CVSS 6.4
No Known Exploit
Use of a Broken or Risky Cryptographic Algorithm
SNYK-JS-JSONWEBTOKEN-3180026
320/1000
Why? CVSS 6.4
No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: @slack/bolt from @slack/bolt GitHub release notes
Commit messages
Package name: @slack/bolt
  • 2b3b929 Publish v3.13.0 (#1795)
  • 165ce02 Remove legacy tag (#1796)
  • 4934d52 Fix #1758 Correct type definitions for `OptionGroups` and `*Options` types (#1790)
  • b533f15 Bump @ types/node from 18.15.10 to 18.15.11 (#1794)
  • 4cfb6f7 Test against node 18.x (#1792)
  • 4f9a106 Fix #1325 Added support for dynamic custom paths (#1785)
  • 72a79e4 fix: typo of docs (#1787)
  • e769452 Bump @ types/node from 18.14.6 to 18.15.10 (#1786)
  • 9de0405 fix: bump axios version to the correct working (#1781)
  • a839b81 Add unit tests to make sure https://github.com/Fix #842 Cannot pass thread_ts to respond() utility slackapi/bolt-python#844 is not an issue in bolt-js
  • 7334e82 Bump @ types/node from 18.14.2 to 18.14.6 (#1757)
  • f95bf25 Bump @ types/node from 18.14.0 to 18.14.2 (#1754)
  • 99297f0 Fix #1718 selected_date_time is missing in ViewStateValue interface (#1719)
  • d8cc21c Bump @ types/node from 18.13.0 to 18.14.0 (#1745)
  • 3baf581 Update GH issue template settings
  • 31e88e9 Bump @ types/node from 18.11.19 to 18.13.0 (#1738)
  • 9ec6e3d Bump @ types/node from 18.11.18 to 18.11.19 (#1734)
  • dc48f9c Typo in docs -> future -> beta TOS link (#1716)
  • 3e1d18e [next-gen docs] Update next-gen capitalization of terms and also trim down on the getting started guide (#1709)
  • 527276f Update @ slack/oauth dependency (#1708)
  • ca7a441 Bump @ types/node from 18.11.17 to 18.11.18 (#1705)
  • dd86665 Replace hyperlinks which pointing outdated lines on AWS Lambda documents (#1704)
  • 603eb82 Add note about body argument to docs (#1700)
  • bf374b6 📄 Update Japanese OAuth docs (#1697)

Compare


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants