Skip to content

[Snyk] Security upgrade karma from 0.12.37 to 0.13.0 - #13

Open
snyk-bot wants to merge 1 commit into
masterfrom
snyk-fix-85aa1fb6b71cf1b82cb4ef14b18c407b
Open

[Snyk] Security upgrade karma from 0.12.37 to 0.13.0#13
snyk-bot wants to merge 1 commit into
masterfrom
snyk-fix-85aa1fb6b71cf1b82cb4ef14b18c407b

Conversation

@snyk-bot

@snyk-bot snyk-bot commented Jun 2, 2022

Copy link
Copy Markdown

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

merge advice

Changes included in this PR

  • Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
    • package.json

Vulnerabilities that will be fixed

With an upgrade:
Severity Priority Score (*) Issue Breaking Change Exploit Maturity
low severity 399/1000
Why? Has a fix available, CVSS 3.7
Regular Expression Denial of Service (ReDoS)
npm:ms:20170412
No No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Commit messages
Package name: karma The new version differs by 88 commits.
  • 2c9be5a chore: release v0.13.0
  • c658c9d chore: update contributors
  • ecee70a Merge branch 'canary'
  • 7685484 chore: Update dependencies
  • c25c91c chore: release v0.13.0-rc.9
  • a4b5cdd feat(logger): Add date/time stamp to log output
  • 6a9df4a Updated example to have comment about libraries
  • 7ed6be7 docs(readme): All support goes to gitter and the mailing list
  • bcce563 Merge pull request #1491 from Dignifiedquire/terinjokes-fix-http-proxy
  • 4a59443 feat(logger): Add date/time stamp to log output
  • 04f408f Merge branch 'fix-http-proxy' of https://github.com/terinjokes/karma into terinjokes-fix-http-proxy
  • 0ce9df6 Merge branch 'canary' of github.com:karma-runner/karma into canary
  • e364149 Merge pull request #1485 from Dignifiedquire/server-api
  • 4d1fa24 chore: release v0.13.0-rc.8
  • 3019c0c Merge pull request #1487 from KJTsanaktsidis/canary
  • 32eec8d fix(web-server): Correctly update filesPromise on files updated
  • 68b5208 chore: release v0.13.0-rc.7
  • 82cbbad feat(server): improve public api
  • 48e3000 chore: Code cleanup and linting fixes
  • 7e37a23 Merge pull request #1442 from tailsu/sd/context-json
  • 31494cb Merge pull request #1471 from Dignifiedquire/glob-sync
  • b16e6e2 Merge pull request #1481 from Dignifiedquire/1106-stringify-dom-elements
  • 1f73be4 fix(client): serialise DOM objects
  • 211939f Merge pull request #1472 from anshbansal/patch-1

See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:
🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic


Learn how to fix vulnerabilities with free interactive lessons:

🦉 Learn about vulnerability in an interactive lesson of Snyk Learn.

The following vulnerabilities are fixed with an upgrade:
- https://snyk.io/vuln/npm:ms:20170412
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant