Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Snyk] Upgrade: , webcomponents.js, , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , codemirror, vulcanize, web-animations-js #444

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

mohammed-ibra
Copy link
Owner

snyk-top-banner

Snyk has created this PR to upgrade multiple dependencies.

👯‍♂ The following dependencies are linked and will therefore be updated together.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.

Name Versions Released on

@polymer/font-roboto
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
webcomponents.js
from 0.7.22 to 0.7.24 | 2 versions ahead of your current version | 8 years ago
on 2017-02-22
@polymer/iron-a11y-announcer
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/iron-a11y-keys-behavior
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/iron-behaviors
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/iron-fit-behavior
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/iron-resizable-behavior
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/iron-overlay-behavior
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/iron-meta
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/iron-selector
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/neon-animation
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/iron-dropdown
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/iron-flex-layout
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/iron-form-element-behavior
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/iron-icon
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/iron-iconset-svg
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/iron-icons
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/iron-validatable-behavior
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/iron-input
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/iron-menu-behavior
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/paper-ripple
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/paper-behaviors
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/paper-styles
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/paper-material
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/paper-button
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/paper-input
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/paper-menu-button
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/paper-dropdown-menu
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/paper-item
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/paper-listbox
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/paper-toast
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
@polymer/paper-toolbar
from 0.0.3 to 0.0.4 | 1 version ahead of your current version | 8 years ago
on 2017-01-06
codemirror
from 5.15.2 to 5.65.17 | 98 versions ahead of your current version | 2 months ago
on 2024-07-20
vulcanize
from 1.14.8 to 1.16.0 | 7 versions ahead of your current version | 7 years ago
on 2017-07-14
web-animations-js
from 2.2.2 to 2.3.2 | 6 versions ahead of your current version | 5 years ago
on 2019-06-25

Issues fixed by the recommended upgrade:

Issue Score Exploit Maturity
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-ANSIREGEX-1583908
696 Proof of Concept
high severity Prototype Pollution
SNYK-JS-INI-1048974
696 Proof of Concept
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-SEMVER-3247795
696 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-CODEMIRROR-1016937
696 Proof of Concept
medium severity Prototype Pollution
SNYK-JS-DOTPROP-543489
696 Proof of Concept
medium severity Open Redirect
SNYK-JS-GOT-2932019
696 No Known Exploit
low severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-CODEMIRROR-569611
696 No Known Exploit
low severity Prototype Pollution
SNYK-JS-MINIMIST-2429795
696 Proof of Concept
Release notes
Package name: @polymer/font-roboto
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/font-roboto GitHub release notes
Package name: webcomponents.js
  • 0.7.24 - 2017-02-22
  • 0.7.23 - 2016-11-02
  • 0.7.22 - 2016-04-22
from webcomponents.js GitHub release notes
Package name: @polymer/iron-a11y-announcer
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/iron-a11y-announcer GitHub release notes
Package name: @polymer/iron-a11y-keys-behavior
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/iron-a11y-keys-behavior GitHub release notes
Package name: @polymer/iron-behaviors
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/iron-behaviors GitHub release notes
Package name: @polymer/iron-fit-behavior
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/iron-fit-behavior GitHub release notes
Package name: @polymer/iron-resizable-behavior
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/iron-resizable-behavior GitHub release notes
Package name: @polymer/iron-overlay-behavior
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/iron-overlay-behavior GitHub release notes
Package name: @polymer/iron-meta
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/iron-meta GitHub release notes
Package name: @polymer/iron-selector
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/iron-selector GitHub release notes
Package name: @polymer/neon-animation
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/neon-animation GitHub release notes
Package name: @polymer/iron-dropdown
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/iron-dropdown GitHub release notes
Package name: @polymer/iron-flex-layout
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/iron-flex-layout GitHub release notes
Package name: @polymer/iron-form-element-behavior
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/iron-form-element-behavior GitHub release notes
Package name: @polymer/iron-icon
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/iron-icon GitHub release notes
Package name: @polymer/iron-iconset-svg
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/iron-iconset-svg GitHub release notes
Package name: @polymer/iron-icons
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/iron-icons GitHub release notes
Package name: @polymer/iron-validatable-behavior
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/iron-validatable-behavior GitHub release notes
Package name: @polymer/iron-input
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/iron-input GitHub release notes
Package name: @polymer/iron-menu-behavior
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/iron-menu-behavior GitHub release notes
Package name: @polymer/paper-ripple
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/paper-ripple GitHub release notes
Package name: @polymer/paper-behaviors
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/paper-behaviors GitHub release notes
Package name: @polymer/paper-styles
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/paper-styles GitHub release notes
Package name: @polymer/paper-material
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/paper-material GitHub release notes
Package name: @polymer/paper-button
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/paper-button GitHub release notes
Package name: @polymer/paper-input
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/paper-input GitHub release notes
Package name: @polymer/paper-menu-button
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/paper-menu-button GitHub release notes
Package name: @polymer/paper-dropdown-menu
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/paper-dropdown-menu GitHub release notes
Package name: @polymer/paper-item
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/paper-item GitHub release notes
Package name: @polymer/paper-listbox
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/paper-listbox GitHub release notes
Package name: @polymer/paper-toast
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/paper-toast GitHub release notes
Package name: @polymer/paper-toolbar
  • 0.0.4 - 2017-01-06
  • 0.0.3 - 2016-02-03
from @polymer/paper-toolbar GitHub release notes
Package name: codemirror
  • 5.65.17 - 2024-07-20
  • 5.65.16 - 2023-11-20
  • 5.65.15 - 2023-08-29
  • 5.65.14 - 2023-07-17
  • 5.65.13 - 2023-04-27
  • 5.65.12 - 2023-02-20
  • 5.65.11 - 2022-12-20
  • 5.65.10 - 2022-11-20
  • 5.65.9 - 2022-09-20
  • 5.65.8 - 2022-08-20
  • 5.65.7 - 2022-07-20
  • 5.65.6 - 2022-06-20
  • 5.65.5 - 2022-05-30
  • 5.65.4 - 2022-05-20
  • 5.65.3 - 2022-04-20
  • 5.65.2 - 2022-02-21
  • 5.65.1 - 2022-01-20
  • 5.65.0 - 2021-12-20
  • 5.64.0 - 2021-11-20
  • 5.63.3 - 2021-10-12
  • 5.63.2 - 2021-10-11
  • 5.63.1 - 2021-09-29
  • 5.63.0 - 2021-09-20
  • 5.62.3 - 2021-08-20
  • 5.62.2 - 2021-07-21
  • 5.62.1 - 2021-07-20
  • 5.62.0 - 2021-06-21
  • 5.61.1 - 2021-05-20
  • 5.61.0 - 2021-04-20
  • 5.60.0 - 2021-03-20
  • 5.59.4 - 2021-02-24
  • 5.59.3 - 2021-02-20
  • 5.59.2 - 2021-01-20
  • 5.59.1 - 2020-12-31
  • 5.59.0 - 2020-12-20
  • 5.58.3 - 2020-11-19
  • 5.58.2 - 2020-10-23
  • 5.58.1 - 2020-09-23
  • 5.58.0 - 2020-09-21
  • 5.57.0 - 2020-08-20
  • 5.56.0 - 2020-07-20
  • 5.55.0 - 2020-06-21
  • 5.54.0 - 2020-05-20
  • 5.53.2 - 2020-04-21
  • 5.53.0 - 2020-04-21
  • 5.52.2 - 2020-03-20
  • 5.52.0 - 2020-02-20
  • 5.51.0 - 2020-01-20
  • 5.50.2 - 2020-01-01
  • 5.50.0 - 2019-12-20
  • 5.49.2 - 2019-10-21
  • 5.49.0 - 2019-09-20
  • 5.48.4 - 2019-08-19
  • 5.48.2 - 2019-07-19
  • 5.48.0 - 2019-06-20
  • 5.47.0 - 2019-05-21
  • 5.46.0 - 2019-04-22
  • 5.45.0 - 2019-03-20
  • 5.44.0 - 2019-02-21
  • 5.43.0 - 2019-01-21
  • 5.42.2 - 2018-12-21
  • 5.42.0 - 2018-11-20
  • 5.41.0 - 2018-10-25
  • 5.40.2 - 2018-09-20
  • 5.40.0 - 2018-08-25
  • 5.39.2 - 2018-07-20
  • 5.39.0 - 2018-06-20
  • 5.38.0 - 2018-05-22
  • 5.37.0 - 2018-04-20
  • 5.36.0 - 2018-03-20
  • 5.35.0 - 2018-02-20
  • 5.34.0 - 2018-01-29
  • 5.33.0 - 2017-12-21
  • 5.32.0 - 2017-11-22
  • 5.31.0 - 2017-10-20
  • 5.30.0 - 2017-09-20
  • 5.29.0 - 2017-08-24
  • 5.28.0 - 2017-07-21
  • 5.27.4 - 2017-06-29
  • 5.27.2 - 2017-06-22
  • 5.27.0 - 2017-06-22
  • 5.26.0 - 2017-05-22
  • 5.25.2 - 2017-04-20
  • 5.25.0 - 2017-03-20
  • 5.24.2 - 2017-02-22
  • 5.24.0 - 2017-02-20
  • 5.23.0 - 2017-01-19
  • 5.22.2 - 2017-01-12
  • 5.22.0 - 2016-12-20
  • 5.21.0 - 2016-11-21
  • 5.20.2 - 2016-10-21
  • 5.20.0 - 2016-10-20
  • 5.19.0 - 2016-09-20
  • 5.18.3 - 2016-09-20
  • 5.18.2 - 2016-08-23
  • 5.18.0 - 2016-08-22
  • 5.17.0 - 2016-07-19
  • 5.16.0 - 2016-06-20
  • 5.15.2 - 2016-05-20
from codemirror GitHub release notes
Package name: vulcanize
  • 1.16.0 - 2017-07-14

    1.16.0

  • 1.15.4 - 2017-03-21
  • 1.15.3 - 2017-01-11
  • 1.15.2 - 2016-12-22
  • 1.15.1 - 2016-12-09
  • 1.15.0 - 2016-12-09
  • 1.14.12 - 2016-11-16
  • 1.14.8 - 2016-03-24
from vulcanize GitHub release notes
Package name: web-animations-js from web-animations-js GitHub release notes

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

Snyk has created this PR to upgrade:
  - @polymer/font-roboto from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/font-roboto
  - webcomponents.js from 0.7.22 to 0.7.24.
    See this package in npm: https://www.npmjs.com/package/webcomponents.js
  - @polymer/iron-a11y-announcer from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/iron-a11y-announcer
  - @polymer/iron-a11y-keys-behavior from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/iron-a11y-keys-behavior
  - @polymer/iron-behaviors from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/iron-behaviors
  - @polymer/iron-fit-behavior from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/iron-fit-behavior
  - @polymer/iron-resizable-behavior from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/iron-resizable-behavior
  - @polymer/iron-overlay-behavior from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/iron-overlay-behavior
  - @polymer/iron-meta from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/iron-meta
  - @polymer/iron-selector from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/iron-selector
  - @polymer/neon-animation from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/neon-animation
  - @polymer/iron-dropdown from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/iron-dropdown
  - @polymer/iron-flex-layout from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/iron-flex-layout
  - @polymer/iron-form-element-behavior from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/iron-form-element-behavior
  - @polymer/iron-icon from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/iron-icon
  - @polymer/iron-iconset-svg from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/iron-iconset-svg
  - @polymer/iron-icons from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/iron-icons
  - @polymer/iron-validatable-behavior from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/iron-validatable-behavior
  - @polymer/iron-input from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/iron-input
  - @polymer/iron-menu-behavior from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/iron-menu-behavior
  - @polymer/paper-ripple from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/paper-ripple
  - @polymer/paper-behaviors from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/paper-behaviors
  - @polymer/paper-styles from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/paper-styles
  - @polymer/paper-material from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/paper-material
  - @polymer/paper-button from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/paper-button
  - @polymer/paper-input from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/paper-input
  - @polymer/paper-menu-button from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/paper-menu-button
  - @polymer/paper-dropdown-menu from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/paper-dropdown-menu
  - @polymer/paper-item from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/paper-item
  - @polymer/paper-listbox from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/paper-listbox
  - @polymer/paper-toast from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/paper-toast
  - @polymer/paper-toolbar from 0.0.3 to 0.0.4.
    See this package in npm: https://www.npmjs.com/package/@polymer/paper-toolbar
  - codemirror from 5.15.2 to 5.65.17.
    See this package in npm: https://www.npmjs.com/package/codemirror
  - vulcanize from 1.14.8 to 1.16.0.
    See this package in npm: https://www.npmjs.com/package/vulcanize
  - web-animations-js from 2.2.2 to 2.3.2.
    See this package in npm: https://www.npmjs.com/package/web-animations-js

See this project in Snyk:
https://app.snyk.io/org/mohammed766/project/ce94a5cc-3ed5-48ca-8cff-47f62309bcfc?utm_source=github&utm_medium=referral&page=upgrade-pr
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

web-animations.min.js missing in 2.3.0 release
2 participants