Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Snyk] Upgrade: , , c8, rimraf, rollup, typescript, vitest #807

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

leonardoadame
Copy link
Owner

snyk-top-banner

Snyk has created this PR to upgrade multiple dependencies.

👯 The following dependencies are linked and will therefore be updated together.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.

⚠️ Warning: This PR contains major version upgrade(s), and may be a breaking change.

Name Versions Released on

@rollup/plugin-commonjs
from 25.0.8 to 26.0.1 | 2 versions ahead of your current version
⚠️ This is a major version upgrade, and may be a breaking change | 4 months ago
on 2024-06-05
@types/node
from 16.18.108 to 22.5.2 | 397 versions ahead of your current version
⚠️ This is a major version upgrade, and may be a breaking change | 21 days ago
on 2024-09-01
c8
from 7.14.0 to 10.1.2 | 8 versions ahead of your current version
⚠️ This is a major version upgrade, and may be a breaking change | 3 months ago
on 2024-06-13
rimraf
from 5.0.10 to 6.0.1 | 2 versions ahead of your current version
⚠️ This is a major version upgrade, and may be a breaking change | 2 months ago
on 2024-07-10
rollup
from 3.29.5 to 4.21.2 | 82 versions ahead of your current version
⚠️ This is a major version upgrade, and may be a breaking change | 24 days ago
on 2024-08-30
typescript
from 4.9.5 to 5.5.4 | 595 versions ahead of your current version
⚠️ This is a major version upgrade, and may be a breaking change | 2 months ago
on 2024-07-22
vitest
from 0.31.4 to 2.0.5 | 58 versions ahead of your current version
⚠️ This is a major version upgrade, and may be a breaking change | 2 months ago
on 2024-07-31

Issues fixed by the recommended upgrade:

Issue Score Exploit Maturity
medium severity Missing Release of Resource after Effective Lifetime
SNYK-JS-INFLIGHT-6095116
631 Proof of Concept
Release notes
Package name: @rollup/plugin-commonjs
  • 26.0.1 - 2024-06-05

    chore(release): commonjs v26.0.1

  • 26.0.0 - 2024-06-05

    chore(release): commonjs v26.0.0

  • 25.0.8 - 2024-05-22

    chore(release): commonjs v25.0.8

from @rollup/plugin-commonjs GitHub release notes
Package name: @types/node
  • 22.5.2 - 2024-09-01
  • 22.5.1 - 2024-08-28
  • 22.5.0 - 2024-08-21
  • 22.4.2 - 2024-08-21
  • 22.4.1 - 2024-08-19
  • 22.4.0 - 2024-08-16
  • 22.3.0 - 2024-08-14
  • 22.2.0 - 2024-08-09
  • 22.1.0 - 2024-08-02
  • 22.0.3 - 2024-08-02
  • 22.0.2 - 2024-07-31
  • 22.0.1 - 2024-07-31
  • 22.0.0 - 2024-07-28
  • 20.16.5 - 2024-09-04
  • 20.16.4 - 2024-09-04
  • 20.16.3 - 2024-09-01
  • 20.16.2 - 2024-08-28
  • 20.16.1 - 2024-08-19
  • 20.16.0 - 2024-08-18
  • 20.15.0 - 2024-08-16
  • 20.14.15 - 2024-08-09
  • 20.14.14 - 2024-08-02
  • 20.14.13 - 2024-07-28
  • 20.14.12 - 2024-07-23
  • 20.14.11 - 2024-07-16
  • 20.14.10 - 2024-07-05
  • 20.14.9 - 2024-06-25
  • 20.14.8 - 2024-06-22
  • 20.14.7 - 2024-06-20
  • 20.14.6 - 2024-06-19
  • 20.14.5 - 2024-06-18
  • 20.14.4 - 2024-06-17
  • 20.14.3 - 2024-06-17
  • 20.14.2 - 2024-06-05
  • 20.14.1 - 2024-06-03
  • 20.14.0 - 2024-06-02
  • 20.13.0 - 2024-05-31
  • 20.12.14 - 2024-05-31
  • 20.12.13 - 2024-05-29
  • 20.12.12 - 2024-05-14
  • 20.12.11 - 2024-05-08
  • 20.12.10 - 2024-05-06
  • 20.12.9 - 2024-05-06
  • 20.12.8 - 2024-05-01
  • 20.12.7 - 2024-04-09
  • 20.12.6 - 2024-04-09
  • 20.12.5 - 2024-04-05
  • 20.12.4 - 2024-04-03
  • 20.12.3 - 2024-04-02
  • 20.12.2 - 2024-03-30
  • 20.12.1 - 2024-03-30
  • 20.12.0 - 2024-03-30
  • 20.11.30 - 2024-03-19
  • 20.11.29 - 2024-03-18
  • 20.11.28 - 2024-03-15
  • 20.11.27 - 2024-03-13
  • 20.11.26 - 2024-03-11
  • 20.11.25 - 2024-03-06
  • 20.11.24 - 2024-02-29
  • 20.11.23 - 2024-02-29
  • 20.11.22 - 2024-02-28
  • 20.11.21 - 2024-02-27
  • 20.11.20 - 2024-02-22
  • 20.11.19 - 2024-02-15
  • 20.11.18 - 2024-02-15
  • 20.11.17 - 2024-02-08
  • 20.11.16 - 2024-02-01
  • 20.11.15 - 2024-02-01
  • 20.11.14 - 2024-01-31
  • 20.11.13 - 2024-01-30
  • 20.11.12 - 2024-01-30
  • 20.11.11 - 2024-01-30
  • 20.11.10 - 2024-01-28
  • 20.11.9 - 2024-01-28
  • 20.11.8 - 2024-01-27
  • 20.11.7 - 2024-01-26
  • 20.11.6 - 2024-01-24
  • 20.11.5 - 2024-01-17
  • 20.11.4 - 2024-01-16
  • 20.11.3 - 2024-01-15
  • 20.11.2 - 2024-01-15
  • 20.11.1 - 2024-01-15
  • 20.11.0 - 2024-01-11
  • 20.10.8 - 2024-01-09
  • 20.10.7 - 2024-01-07
  • 20.10.6 - 2023-12-30
  • 20.10.5 - 2023-12-17
  • 20.10.4 - 2023-12-07
  • 20.10.3 - 2023-12-03
  • 20.10.2 - 2023-12-01
  • 20.10.1 - 2023-11-29
  • 20.10.0 - 2023-11-24
  • 20.9.5 - 2023-11-23
  • 20.9.4 - 2023-11-22
  • 20.9.3 - 2023-11-21
  • 20.9.2 - 2023-11-18
  • 20.9.1 - 2023-11-16
  • 20.9.0 - 2023-11-07
  • 20.8.10 - 2023-10-31
  • 20.8.9 - 2023-10-25
  • 20.8.8 - 2023-10-24
  • 20.8.7 - 2023-10-18
  • 20.8.6 - 2023-10-13
  • 20.8.5 - 2023-10-12
  • 20.8.4 - 2023-10-09
  • 20.8.3 - 2023-10-06
  • 20.8.2 - 2023-10-02
  • 20.8.1 - 2023-10-02
  • 20.8.0 - 2023-09-30
  • 20.7.2 - 2023-09-29
  • 20.7.1 - 2023-09-27
  • 20.7.0 - 2023-09-25
  • 20.6.5 - 2023-09-24
  • 20.6.4 - 2023-09-23
  • 20.6.3 - 2023-09-20
  • 20.6.2 - 2023-09-16
  • 20.6.1 - 2023-09-15
  • 20.6.0 - 2023-09-08
  • 20.5.9 - 2023-09-02
  • 20.5.8 - 2023-09-01
  • 20.5.7 - 2023-08-28
  • 20.5.6 - 2023-08-24
  • 20.5.5 - 2023-08-24
  • 20.5.4 - 2023-08-23
  • 20.5.3 - 2023-08-22
  • 20.5.2 - 2023-08-22
  • 20.5.1 - 2023-08-18
  • 20.5.0 - 2023-08-13
  • 20.4.10 - 2023-08-11
  • 20.4.9 - 2023-08-08
  • 20.4.8 - 2023-08-05
  • 20.4.7 - 2023-08-04
  • 20.4.6 - 2023-08-02
  • 20.4.5 - 2023-07-25
  • 20.4.4 - 2023-07-22
  • 20.4.3 - 2023-07-21
  • 20.4.2 - 2023-07-12
  • 20.4.1 - 2023-07-07
  • 20.4.0 - 2023-07-05
  • 20.3.3 - 2023-06-30
  • 20.3.2 - 2023-06-26
  • 20.3.1 - 2023-06-13
  • 20.3.0 - 2023-06-10
  • 20.2.6 - 2023-06-10
  • 20.2.5 - 2023-05-26
  • 20.2.4 - 2023-05-25
  • 20.2.3 - 2023-05-21
  • 20.2.2 - 2023-05-21
  • 20.2.1 - 2023-05-18
  • 20.2.0 - 2023-05-17
  • 20.1.7 - 2023-05-16
  • 20.1.6 - 2023-05-16
  • 20.1.5 - 2023-05-16
  • 20.1.4 - 2023-05-13
  • 20.1.3 - 2023-05-11
  • 20.1.2 - 2023-05-10
  • 20.1.1 - 2023-05-08
  • 20.1.0 - 2023-05-05
  • 20.0.0 - 2023-05-05
  • 18.19.50 - 2024-09-04
  • 18.19.49 - 2024-09-04
  • 18.19.48 - 2024-09-01
  • 18.19.47 - 2024-08-28
  • 18.19.46 - 2024-08-26
  • 18.19.45 - 2024-08-19
  • 18.19.44 - 2024-08-09
  • 18.19.43 - 2024-08-02
  • 18.19.42 - 2024-07-23
  • 18.19.41 - 2024-07-18
  • 18.19.40 - 2024-07-16
  • 18.19.39 - 2024-06-22
  • 18.19.38 - 2024-06-20
  • 18.19.37 - 2024-06-19
  • 18.19.36 - 2024-06-17
  • 18.19.35 - 2024-06-17
  • 18.19.34 - 2024-06-03
  • 18.19.33 - 2024-05-08
  • 18.19.32 - 2024-05-06
  • 18.19.31 - 2024-04-09
  • 18.19.30 - 2024-04-05
  • 18.19.29 - 2024-04-02
  • 18.19.28 - 2024-03-30
  • 18.19.27 - 2024-03-30
  • 18.19.26 - 2024-03-19
  • 18.19.25 - 2024-03-18
  • 18.19.24 - 2024-03-13
  • 18.19.23 - 2024-03-11
  • 18.19.22 - 2024-03-06
  • 18.19.21 - 2024-02-29
  • 18.19.20 - 2024-02-28
  • 18.19.19 - 2024-02-27
  • 18.19.18 - 2024-02-22
  • 18.19.17 - 2024-02-15
  • 18.19.16 - 2024-02-15
  • 18.19.15 - 2024-02-08
  • 18.19.14 - 2024-02-01
  • 18.19.13 - 2024-02-01
  • 18.19.12 - 2024-01-31
  • 18.19.11 - 2024-01-30
  • 18.19.10 - 2024-01-26
  • 18.19.9 - 2024-01-24
  • 18.19.8 - 2024-01-17
  • 18.19.7 - 2024-01-15
  • 18.19.6 - 2024-01-09
  • 18.19.5 - 2024-01-07
  • 18.19.4 - 2023-12-30
  • 18.19.3 - 2023-12-07
  • 18.19.2 - 2023-12-03
  • 18.19.1 - 2023-12-01
  • 18.19.0 - 2023-11-30
  • 18.18.14 - 2023-11-29
  • 18.18.13 - 2023-11-23
  • 18.18.12 - 2023-11-22
  • 18.18.11 - 2023-11-21
  • 18.18.10 - 2023-11-18
  • 18.18.9 - 2023-11-07
  • 18.18.8 - 2023-10-31
  • 18.18.7 - 2023-10-25
  • 18.18.6 - 2023-10-18
  • 18.18.5 - 2023-10-12
  • 18.18.4 - 2023-10-06
  • 18.18.3 - 2023-10-02
  • 18.18.2 - 2023-10-02
  • 18.18.1 - 2023-09-29
  • 18.18.0 - 2023-09-25
  • 18.17.19 - 2023-09-23
  • 18.17.18 - 2023-09-20
  • 18.17.17 - 2023-09-16
  • 18.17.16 - 2023-09-15
  • 18.17.15 - 2023-09-08
  • 18.17.14 - 2023-09-02
  • 18.17.13 - 2023-09-01
  • 18.17.12 - 2023-08-28
  • 18.17.11 - 2023-08-24
  • 18.17.10 - 2023-08-24
  • 18.17.9 - 2023-08-23
  • 18.17.8 - 2023-08-22
  • 18.17.7 - 2023-08-22
  • 18.17.6 - 2023-08-18
  • 18.17.5 - 2023-08-11
  • 18.17.4 - 2023-08-08
  • 18.17.3 - 2023-08-05
  • 18.17.2 - 2023-08-04
  • 18.17.1 - 2023-07-25
  • 18.17.0 - 2023-07-22
  • 18.16.20 - 2023-07-21
  • 18.16.19 - 2023-06-30
  • 18.16.18 - 2023-06-13
  • 18.16.17 - 2023-06-10
  • 18.16.16 - 2023-05-26
  • 18.16.15 - 2023-05-25
  • 18.16.14 - 2023-05-21
  • 18.16.13 - 2023-05-18
  • 18.16.12 - 2023-05-16
  • 18.16.11 - 2023-05-16
  • 18.16.10 - 2023-05-16
  • 18.16.9 - 2023-05-13
  • 18.16.8 - 2023-05-11
  • 18.16.7 - 2023-05-10
  • 18.16.6 - 2023-05-08
  • 18.16.5 - 2023-05-05
  • 18.16.4 - 2023-05-05
  • 18.16.3 - 2023-04-29
  • 18.16.2 - 2023-04-27
  • 18.16.1 - 2023-04-25
  • 18.16.0 - 2023-04-23
  • 18.15.13 - 2023-04-21
  • 18.15.12 - 2023-04-19
  • 18.15.11 - 2023-03-28
  • 18.15.10 - 2023-03-25
  • 18.15.9 - 2023-03-25
  • 18.15.8 - 2023-03-24
  • 18.15.7 - 2023-03-24
  • 18.15.6 - 2023-03-23
  • 18.15.5 - 2023-03-20
  • 18.15.4 - 2023-03-20
  • 18.15.3 - 2023-03-14
  • 18.15.2 - 2023-03-13
  • 18.15.1 - 2023-03-13
  • 18.15.0 - 2023-03-09
  • 18.14.6 - 2023-03-03
  • 18.14.5 - 2023-03-03
  • 18.14.4 - 2023-03-02
  • 18.14.3 - 2023-03-02
  • 18.14.2 - 2023-02-26
  • 18.14.1 - 2023-02-23
  • 18.14.0 - 2023-02-17
  • 18.13.0 - 2023-02-07
  • 18.11.19 - 2023-02-04
  • 18.11.18 - 2022-12-26
  • 18.11.17 - 2022-12-17
  • 18.11.16 - 2022-12-16
  • 18.11.15 - 2022-12-13
  • 18.11.14 - 2022-12-13
  • 18.11.13 - 2022-12-10
  • 18.11.12 - 2022-12-08
  • 18.11.11 - 2022-12-05
  • 18.11.10 - 2022-11-30
  • 18.11.9 - 2022-11-01
  • 18.11.8 - 2022-10-30
  • 18.11.7 - 2022-10-26
  • 18.11.6 - 2022-10-26
  • 18.11.5 - 2022-10-24
  • 18.11.4 - 2022-10-23
  • 18.11.3 - 2022-10-20
  • 18.11.2 - 2022-10-18
  • 18.11.1 - 2022-10-18
  • 18.11.0 - 2022-10-14
  • 18.8.5 - 2022-10-12
  • 18.8.4 - 2022-10-10
  • 18.8.3 - 2022-10-06
  • 18.8.2 - 2022-10-04
  • 18.8.1 - 2022-10-03
  • 18.8.0 - 2022-10-02
  • 18.7.23 - 2022-09-26
  • 18.7.22 - 2022-09-26
  • 18.7.21 - 2022-09-25
  • 18.7.20 - 2022-09-24
  • 18.7.19 - 2022-09-23
  • 18.7.18 - 2022-09-13
  • 18.7.17 - 2022-09-12
  • 18.7.16 - 2022-09-07
  • 18.7.15 - 2022-09-05
  • 18.7.14 - 2022-08-29
  • 18.7.13 - 2022-08-24
  • 18.7.12 - 2022-08-24
  • 18.7.11 - 2022-08-23
  • 18.7.10 - 2022-08-22
  • 18.7.9 - 2022-08-21
  • 18.7.8 - 2022-08-19
  • 18.7.7 - 2022-08-19
  • 18.7.6 - 2022-08-16
  • 18.7.5 - 2022-08-15
  • 18.7.4 - 2022-08-15
  • 18.7.3 - 2022-08-13
  • 18.7.2 - 2022-08-12
  • 18.7.1 - 2022-08-10
  • 18.7.0 - 2022-08-10
  • 18.6.5 - 2022-08-08
  • 18.6.4 - 2022-08-04
  • 18.6.3 - 2022-07-30
  • 18.6.2 - 2022-07-28
  • 18.6.1 - 2022-07-25
  • 18.6.0 - 2022-07-24
  • 18.0.6 - 2022-07-17
  • 18.0.5 - 2022-07-15
  • 18.0.4 - 2022-07-13
  • 18.0.3 - 2022-07-06
  • 18.0.2 - 2022-07-05
  • 18.0.1 - 2022-07-03
  • 18.0.0 - 2022-06-15
  • 17.0.45 - 2022-06-15
  • 17.0.44 - 2022-06-15
  • 17.0.43 - 2022-06-14
  • 17.0.42 - 2022-06-10
  • 17.0.41 - 2022-06-07
  • 17.0.40 - 2022-06-05
  • 17.0.39 - 2022-06-03
  • 17.0.38 - 2022-05-31
  • 17.0.37 - 2022-05-31
  • 17.0.36 - 2022-05-28
  • 17.0.35 - 2022-05-19
  • 17.0.34 - 2022-05-16
  • 17.0.33 - 2022-05-12
  • 17.0.32 - 2022-05-10
  • 17.0.31 - 2022-05-01
  • 17.0.30 - 2022-04-28
  • 17.0.29 - 2022-04-26
  • 17.0.28 - 2022-04-26
  • 17.0.27 - 2022-04-25
  • 17.0.26 - 2022-04-24
  • 17.0.25 - 2022-04-18
  • 17.0.24 - 2022-04-14
  • 17.0.23 - 2022-03-23
  • 17.0.22 - 2022-03-21
  • 17.0.21 - 2022-02-23
  • 17.0.20 - 2022-02-23
  • 17.0.19 - 2022-02-21
  • 17.0.18 - 2022-02-14
  • 17.0.17 - 2022-02-10
  • 17.0.16 - 2022-02-07
  • 17.0.15 - 2022-02-04
  • 17.0.14 - 2022-02-01
  • 17.0.13 - 2022-01-27
  • 17.0.12 - 2022-01-25
  • 17.0.11 - 2022-01-25
  • 17.0.10 - 2022-01-18
  • 17.0.9 - 2022-01-17
  • 17.0.8 - 2022-01-04
  • 17.0.7 - 2022-01-03
  • 17.0.6 - 2022-01-01
  • 17.0.5 - 2021-12-26
  • 17.0.4 - 2021-12-23
  • 17.0.3 - 2021-12-23
  • 17.0.2 - 2021-12-20
  • 17.0.1 - 2021-12-19
  • 17.0.0 - 2021-12-15
  • 16.18.108 - 2024-09-04
from @types/node GitHub release notes
Package name: c8
  • 10.1.2 - 2024-06-13

    10.1.2 (2024-06-13)

    Bug Fixes

    • deps: make monocart-coverage-reports an optional with meta defined (3b91fda)
  • 10.1.1 - 2024-06-11

    10.1.1 (2024-06-11)

    Bug Fixes

    • stop installing monocart-coverage-reports (#535) (13979a7)
  • 10.1.0 - 2024-06-11

    10.1.0 (2024-06-11)

    Features

  • 10.0.0 - 2024-06-10

    10.0.0 (2024-06-10)

    ⚠ BREAKING CHANGES

    • deps: Node 18 is now the minimum supported Node.js version

    Bug Fixes

    • deps: update test-exclude with new glob / minimatch (#531) (e33cf30)
  • 9.1.0 - 2024-01-12

    9.1.0 (2024-01-11)

    Features

    • support passing reporter options from config (#459) (88db5db)

    Bug Fixes

    • refactor: remove stale check for createDynamicModule (5e18365)
  • 9.0.0 - 2024-01-03

    9.0.0 (2024-01-03)

    ⚠ BREAKING CHANGES

    • build: minimum Node.js version is now 14.14.0

    Features

    • build: minimum Node.js version is now 14.14.0 (2cdc86b)
    • deps: update foreground-child to promise API (#512) (b46b640)
    • deps: use Node.js built in rm (2cdc86b)
  • 8.0.1 - 2023-07-25

    8.0.1 (2023-07-25)

    Bug Fixes

  • 8.0.0 - 2023-06-13

    8.0.0 (2023-06-05)

    ⚠ BREAKING CHANGES

    • dropped Node 10 support (#475)

    Miscellaneous Chores

  • 7.14.0 - 2023-05-28

    7.14.0 (2023-05-26)

    Features

    • added a new CLI arg --merge-async to asynchronously and incrementally merge process coverage files to avoid OOM due to heap exhaustion (#469) (45f2f84)
from c8 GitHub release notes
Package name: rimraf from rimraf GitHub release notes
Package name: rollup

Snyk has created this PR to upgrade:
  - @rollup/plugin-commonjs from 25.0.8 to 26.0.1.
    See this package in npm: https://www.npmjs.com/package/@rollup/plugin-commonjs
  - @types/node from 16.18.108 to 22.5.2.
    See this package in npm: https://www.npmjs.com/package/@types/node
  - c8 from 7.14.0 to 10.1.2.
    See this package in npm: https://www.npmjs.com/package/c8
  - rimraf from 5.0.10 to 6.0.1.
    See this package in npm: https://www.npmjs.com/package/rimraf
  - rollup from 3.29.5 to 4.21.2.
    See this package in npm: https://www.npmjs.com/package/rollup
  - typescript from 4.9.5 to 5.5.4.
    See this package in npm: https://www.npmjs.com/package/typescript
  - vitest from 0.31.4 to 2.0.5.
    See this package in npm: https://www.npmjs.com/package/vitest

See this project in Snyk:
https://app.snyk.io/org/leonardoadame/project/30c4d01a-dbce-4ff8-a4a3-78e49c26e2d5?utm_source=github&utm_medium=referral&page=upgrade-pr
Copy link

stackblitz bot commented Sep 22, 2024

Review PR in StackBlitz Codeflow Run & review this pull request in StackBlitz Codeflow.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

Security finding in c8 versions 6, 7, and 8
2 participants