Skip to content

Conversation

snyk-bot
Copy link

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

Changes included in this PR

  • Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
    • package.json

Vulnerabilities that will be fixed

With an upgrade:
Severity Issue Breaking Change Exploit Maturity
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-MARKED-174116
No No Known Exploit
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-MARKED-451540
No No Known Exploit
medium severity Prototype Pollution
SNYK-JS-YARGSPARSER-560381
Yes Proof of Concept
Commit messages
Package name: jsdoc The new version differs by 105 commits.
  • 2099e72 3.6.0
  • d45c5b8 Add 3.6.0 changelog.
  • b8012f4 Update dependencies, plus the URLs for the GitHub repos and docs.
  • 10c004f update docs with new template (#1604)
  • aa0b6c1 switch to new-ish ECMAScript syntax
  • 1546d40 update ESLint config
  • 27f9a33 migrate from `babylon` to `@babel/parser`
  • d310908 Update ajv to the latest version 🚀 (#1599)
  • ccb70aa only run CI with Node.js versions that actually exist
  • 2d3b55b migrate from `markdown-it-named-headers` to `markdown-it-anchor` (#1481)
  • 7b304d8 update dependencies and supported Node.js versions
  • b214273 3.5.5 changelog
  • 932c357 Prefer copyFileSync from here over native (#1440)
  • 8e2f868 upgrade Babylon
  • 96f8875 fix test breakage
  • 4c3d563 3.5.4 changelog
  • 2c6bcd4 prevent crash when an anonymous class is passed as a parameter (#1416)
  • 67e19bf hide the signature in the heading for classes with hidden constructors (#1397)
  • 67f1d23 chore(package): update nyc to version 11.1.0 (#1417)
  • e8bca1f add `templates.useShortNamesInLinks` config option (#738)
  • 2c47d4b allow users to specify a highlighter for Markdown code blocks (#1412)
  • f3a31e9 document `longnamesToTree`, plus other doc improvements (Cannot install successfully on win10 pichillilorenzo/JavaScriptEnhancements#43)
  • 832dfd7 move namespaces and interfaces up in the nav (#1410)
  • a63337b don't pretty-print code blocks that begin with "```plain" (#1361)

See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:
🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

1 participant