Skip to content
This repository was archived by the owner on Jan 23, 2023. It is now read-only.

Conversation

dragutin-nav
Copy link
Contributor

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade @google-cloud/storage from 5.8.5 to 5.20.5.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 42 versions ahead of your current version.
  • The recommended version was released 5 months ago, on 2022-05-19.

The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Improper Verification of Cryptographic Signature
SNYK-JS-NODEFORGE-2430339
365/1000
Why? CVSS 7.3
No Known Exploit
Improper Verification of Cryptographic Signature
SNYK-JS-NODEFORGE-2430341
365/1000
Why? CVSS 7.3
No Known Exploit
Improper Verification of Cryptographic Signature
SNYK-JS-NODEFORGE-2430337
365/1000
Why? CVSS 7.3
No Known Exploit
Prototype Pollution
SNYK-JS-NODEFORGE-2331908
365/1000
Why? CVSS 7.3
No Known Exploit
Open Redirect
SNYK-JS-NODEFORGE-2330875
365/1000
Why? CVSS 7.3
Proof of Concept

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: @google-cloud/storage
  • 5.20.5 - 2022-05-19

    5.20.5 (2022-05-19)

    Bug Fixes

    • chore: move uuid package to dependencies (#1952) (0ff5aa3)
  • 5.20.4 - 2022-05-18

    5.20.4 (2022-05-18)

    Bug Fixes

    • revert native typescript mocha tests (#1947) (1d0ea7d)
    • support empty object uploads for resumable upload (#1949) (da6016e)
  • 5.20.3 - 2022-05-17

    5.20.3 (2022-05-17)

    Bug Fixes

    • move retrieval of package.json to utility function (#1941) (ac5cbdf)
  • 5.20.2 - 2022-05-17

    5.20.2 (2022-05-17)

    Bug Fixes

    • use path.join and __dirname for require package.json (#1936) (b868762)
  • 5.20.1 - 2022-05-16

    5.20.1 (2022-05-16)

    Bug Fixes

  • 5.20.0 - 2022-05-16

    5.20.0 (2022-05-16)

    Features

    • add x-goog-api-client headers for retry metrics (#1920) (0c7e4f6)
  • 5.19.4 - 2022-04-28

    5.19.4 (2022-04-28)

    Bug Fixes

  • 5.19.3 - 2022-04-20

    5.19.3 (2022-04-20)

    Bug Fixes

    • export idempotencystrategy and preconditionoptions from index (#1880) (8aafe04)
  • 5.19.2 - 2022-04-14

    5.19.2 (2022-04-14)

    Bug Fixes

    • deleting, getting, and getting metadata for notifications (#1872) (451570e)
  • 5.19.1 - 2022-04-11

    5.19.1 (2022-04-08)

    Bug Fixes

  • 5.19.0 - 2022-04-06
  • 5.18.3 - 2022-03-28
  • 5.18.2 - 2022-02-16
  • 5.18.1 - 2022-01-26
  • 5.18.0 - 2022-01-19
  • 5.17.0 - 2022-01-10
  • 5.16.1 - 2021-12-01
  • 5.16.0 - 2021-11-09
  • 5.15.6 - 2021-11-08
  • 5.15.5 - 2021-11-03
  • 5.15.4 - 2021-11-01
  • 5.15.3 - 2021-10-14
  • 5.15.2 - 2021-10-13
  • 5.15.1 - 2021-10-12
  • 5.15.0 - 2021-10-07
  • 5.14.8 - 2021-10-06
  • 5.14.7 - 2021-10-06
  • 5.14.6 - 2021-10-06
  • 5.14.5 - 2021-10-04
  • 5.14.4 - 2021-09-27
  • 5.14.3 - 2021-09-22
  • 5.14.2 - 2021-09-13
  • 5.14.1 - 2021-09-08
  • 5.14.0 - 2021-08-26
  • 5.13.2 - 2021-08-26
  • 5.13.1 - 2021-08-18
  • 5.13.0 - 2021-08-09
  • 5.12.0 - 2021-08-03
  • 5.11.1 - 2021-08-02
  • 5.11.0 - 2021-07-26
  • 5.10.0 - 2021-07-22
  • 5.9.0 - 2021-07-21
  • 5.8.5 - 2021-05-04
from @google-cloud/storage GitHub release notes
Commit messages
Package name: @google-cloud/storage
  • a9c4c18 chore(main): release 5.20.5 (#1954)
  • 0ff5aa3 fix(chore): move uuid package to dependencies (#1952)
  • ad8440b chore(main): release 5.20.4 (#1948)
  • da6016e Fix: support empty object uploads for resumable upload (#1949)
  • 1d0ea7d fix: revert native typescript mocha tests (#1947)
  • 7ea4ec6 chore(main): release 5.20.3 (#1943)
  • 342545d chore: clean up linter warnings (#1942)
  • ac5cbdf fix: move retrieval of package.json to utility function (#1941)
  • 86c37c5 chore(main): release 5.20.2 (#1937)
  • b868762 fix: use path.join and __dirname for require package.json (#1936)
  • 129ff51 chore(main): release 5.20.1 (#1933)
  • d0f0494 fix: do not use import on package.json (#1932)
  • d38dc73 chore(main): release 5.20.0 (#1929)
  • 0c7e4f6 feat: add x-goog-api-client headers for retry metrics (#1920)
  • 850733c refactor(deps): Remove dependency date-and-time in favor of utility (#1928)
  • 5d8bfd0 refactor(deps): Remove get-stream in favor of async iterators (#1925)
  • c8f6257 refactor(common): remove unused operations class, tests, and poll interval variable (#1923)
  • ff2d14e refactor(deps): remove snakeize dependency and create equivalent func… (#1924)
  • cbe2590 chore(deps): update dependency sinon to v14 (#1919)
  • 01e2c83 build: update auto approve to v2, remove release autoapproving (#1432) (#1912)
  • 2086fd4 refactor(gcs-resumable-upload): Remove `pumpify` and `stream-events` (#1914)
  • 64bf0c9 build: Streamline `mocha` config (#1905)
  • eee0cf1 test: disable resumable upload in acl test before (#1903)
  • c324006 Build: Native TypeScript Support in Mocha (#1892)

Compare


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

@dragutin-nav dragutin-nav requested a review from a team as a code owner November 2, 2022 16:30
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants