Skip to content

Conversation

snyk-bot
Copy link

@snyk-bot snyk-bot commented Apr 7, 2023

Snyk has created this PR to upgrade chai from 4.2.0 to 4.3.7.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 8 versions ahead of your current version.
  • The recommended version was released 5 months ago, on 2022-11-07.

The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Prototype Pollution
SNYK-JS-PATHVAL-596926
407/1000
Why? Proof of Concept exploit, CVSS 6
Proof of Concept

(*) Note that the real score may have changed since the PR was raised.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

Snyk has created this PR to upgrade chai from 4.2.0 to 4.3.7. See this package in npm: See this project in Snyk: https://app.snyk.io/org/arduinobot/project/2527be8b-f4d4-4a3c-a686-e9cd29117e8c?utm_source=github&utm_medium=referral&page=upgrade-pr
@CLAassistant
Copy link

CLA assistant check
Thank you for your submission! We really appreciate it. Like many open source projects, we ask that you sign our Contributor License Agreement before we can accept your contribution.
You have signed the CLA already but the status is still pending? Let us recheck it.

@kittaakos
Copy link
Contributor

Snyk auto-PRs have been accidentally re-enabled when the IDE2 repo has been reimported to Snyk. IDE2 does not need it. I am closing it as invalid.

@kittaakos kittaakos closed this Apr 11, 2023
@kittaakos kittaakos added the conclusion: invalid Issue/PR not valid label Apr 11, 2023
@per1234 per1234 added the topic: infrastructure Related to project infrastructure label Apr 13, 2023
@kittaakos kittaakos deleted the snyk-upgrade-a8e44925a46e0881109fdba58d944f64 branch May 11, 2023 08:04
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

conclusion: invalid Issue/PR not valid topic: infrastructure Related to project infrastructure

4 participants