[Snyk] Fix for 2 vulnerabilities#13
Conversation
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-AXIOS-15965856 - https://snyk.io/vuln/SNYK-JS-AXIOS-15969258
|
This update includes major version bumps for two packages, introducing significant breaking changes and a high degree of uncertainty. Top 2 Most Impactful Upgrades
typewriter-effect (HIGH)This is a two-major-version upgrade from v7 to v9. No specific changelog or release notes detailing the breaking changes between these versions could be located. Given the significant version jump and the lack of migration documentation, there is a high risk of breaking changes. Recommendation: Developers must carefully review the package's current documentation to understand the new API and thoroughly test its implementation. It is unknown what has changed between versions 7, 8, and 9. Source: Package documentation browser-sync (MEDIUM)The upgrade to version 3.0.0 introduces a key breaking change and likely drops support for older Node.js versions.
Recommendation: Verify if your project uses the Source: GitHub Releases
|
✅ Snyk checks have passed. No issues have been found so far.
💻 Catch issues earlier using the plugins for VS Code, JetBrains IDEs, Visual Studio, and Eclipse. |
Snyk has created this PR to fix 2 vulnerabilities in the npm dependencies of this project.
Snyk changed the following file(s):
package.jsonpackage-lock.jsonVulnerabilities that will be fixed with an upgrade:
SNYK-JS-AXIOS-15965856
SNYK-JS-AXIOS-15969258
Breaking Change Risk
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Learn about vulnerability in an interactive lesson of Snyk Learn.