Skip to content

Conversation

@tfSheol
Copy link
Owner

@tfSheol tfSheol commented Nov 30, 2023

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

Changes included in this PR

  • Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
    • package.json
    • package-lock.json

Vulnerabilities that will be fixed

With an upgrade:
Severity Priority Score (*) Issue Breaking Change Exploit Maturity
high severity 661/1000
Why? Recently disclosed, Has a fix available, CVSS 7.5
Missing Release of Resource after Effective Lifetime
SNYK-JS-INFLIGHT-6095116
Yes No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Commit messages
Package name: rxdb The new version differs by 250 commits.
  • 532dc1e 14.17.0
  • a49753e Update dependency async-test-util to v2.1.1
  • ce28277 Update dependency terser to v5.19.4
  • db068f1 Update dependency @ types/node to v18.17.17
  • ed0784f Update dependency @ types/lokijs to v1.5.10
  • f578a32 Update babel monorepo to v7.22.20 (#4941)
  • 050a0a5 Update dependency typescript to v5.2.2
  • 72efd71 FIX lint
  • 5e80dc0 FIX mongodb closing
  • 23c0c71 FIX random failure
  • 73328bb FIX typecheck
  • d1fbf46 FIX checkpoint writing on closed
  • e986441 UPDATE typescript
  • 356643f FIX typescript missing node
  • ef9db6d Feature/mongodb storage (#4935)
  • 0341b3c Update dependency @ types/crypto-js to v4.1.2
  • 0966ee2 Update babel monorepo to v7.22.19
  • b3b1115 Update dependency @ types/cors to v2.8.14
  • dbbcbac Update dependency @ types/core-js to v2.5.6
  • 2f45372 Fix typo in rx-schema.md (#4936)
  • c4c2c1a Update dependency @ types/clone to v2.1.2
  • 446be6e Update dependency @ apollo/server to v4.9.3
  • c994827 Update babel monorepo
  • 3ee55b3 ADD comment for #3935

See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:
🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic


Learn how to fix vulnerabilities with free interactive lessons:

🦉 Learn about vulnerability in an interactive lesson of Snyk Learn.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants