Skip to content

Conversation

@ambrose40
Copy link
Owner

snyk-top-banner

Snyk has created this PR to upgrade multiple dependencies.

👯 The following dependencies are linked and will therefore be updated together.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.

⚠️ Warning: This PR contains major version upgrade(s), and may be a breaking change.

Name Versions Released on

@nestjs/common
from 7.6.5 to 10.3.10 | 126 versions ahead of your current version
⚠️ This is a major version upgrade, and may be a breaking change | 2 months ago
on 2024-07-01
@nestjs/core
from 7.4.2 to 10.3.10 | 141 versions ahead of your current version
⚠️ This is a major version upgrade, and may be a breaking change | 2 months ago
on 2024-07-01
@nestjs/platform-express
from 7.4.2 to 10.3.10 | 141 versions ahead of your current version
⚠️ This is a major version upgrade, and may be a breaking change | 2 months ago
on 2024-07-01

Issues fixed by the recommended upgrade:

Issue Score Exploit Maturity
high severity Denial of Service (DoS)
SNYK-JS-DICER-2311764
546 Mature
high severity Improper Input Validation
SNYK-JS-FOLLOWREDIRECTS-6141137
546 Proof of Concept
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-AXIOS-1579269
546 Proof of Concept
high severity Cross-site Request Forgery (CSRF)
SNYK-JS-AXIOS-6032459
546 Proof of Concept
high severity Prototype Poisoning
SNYK-JS-QS-3153490
546 Proof of Concept
medium severity Open Redirect
SNYK-JS-EXPRESS-6474509
546 No Known Exploit
medium severity Information Exposure
SNYK-JS-FOLLOWREDIRECTS-2332181
546 Proof of Concept
medium severity Information Exposure
SNYK-JS-FOLLOWREDIRECTS-6444610
546 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-AXIOS-6124857
546 Proof of Concept
medium severity Denial of Service
SNYK-JS-NODEFETCH-674311
546 No Known Exploit
medium severity Information Exposure
SNYK-JS-NODEFETCH-2342118
546 No Known Exploit
low severity Information Exposure
SNYK-JS-FOLLOWREDIRECTS-2396346
546 No Known Exploit
low severity Information Exposure
SNYK-JS-NESTJSCORE-2869127
546 No Known Exploit
Release notes
Package name: @nestjs/common
Snyk has created this PR to upgrade: - @nestjs/common from 7.6.5 to 10.3.10. See this package in npm: https://www.npmjs.com/package/@nestjs/common - @nestjs/core from 7.4.2 to 10.3.10. See this package in npm: https://www.npmjs.com/package/@nestjs/core - @nestjs/platform-express from 7.4.2 to 10.3.10. See this package in npm: https://www.npmjs.com/package/@nestjs/platform-express See this project in Snyk: https://app.snyk.io/org/bl82/project/50d11c58-82c2-43d9-9c5c-84d62096b5fc?utm_source=github&utm_medium=referral&page=upgrade-pr
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

3 participants