Skip to content
This repository has been archived by the owner on Nov 27, 2020. It is now read-only.

[Snyk] Security upgrade notifications-node-client from 4.6.0 to 4.9.0 #37

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

snyk-bot
Copy link

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

Changes included in this PR

  • Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
    • package.json
    • package-lock.json

Vulnerabilities that will be fixed

With an upgrade:
Severity Priority Score (*) Issue Breaking Change Exploit Maturity
high severity 405/1000
Why? CVSS 8.1
Prototype Pollution
SNYK-JS-AJV-584908
No No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Commit messages
Package name: notifications-node-client The new version differs by 117 commits.
  • cff5295 Merge pull request #124 from alphagov/document-letter-contact-block
  • 4097ad6 Add letter_contact_block to the template responses
  • 729dcf3 Merge pull request #123 from alphagov/snyk-fix-dbbb05e241bcae1433740ec85d4c1fb1
  • 66f1665 fix: package.json to reduce vulnerabilities
  • bb8b750 Merge pull request #121 from alphagov/update-temporary-failure-description
  • 9b21838 Update content
  • 5e0ff1d Update temporary failure description
  • 8e4f177 Merge pull request #118 from alphagov/iscsv
  • 41e6ea3 Update variable name for `prepareUpload` to be more accurate
  • f682703 Add isCsv argument to prepareUpload function
  • 91aec89 Merge pull request #119 from alphagov/update-status-tables
  • 923f7ea Fix links
  • badb54c Merge pull request #120 from alphagov/guest-list
  • 4fd6e74 Rename whitelist to guest list
  • f3e61df Remove status table and add links
  • df8fad9 Update the status table for multiple messages
  • 54d8297 Update status tables
  • 87d1b0f Merge pull request #115 from alphagov/concourse-test-pr-113
  • b58ed1f Merge pull request #116 from alphagov/add-repo-to-package-json
  • a9efcfb Add repository to package.json
  • 678a40d BAU: remove __dirname global call from api client
  • 7241423 Merge pull request #112 from alphagov/test-pass-postcode-validation
  • d5915d4 Add new error to the docs
  • c464fcd Update documentation

See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:
🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant