Skip to content
This repository has been archived by the owner on Jan 16, 2025. It is now read-only.

devDeps: react-scripts v2 #81

Draft
wants to merge 2 commits into
base: main
Choose a base branch
from
Draft

Conversation

legobeat
Copy link

@socket-security
Copy link

Updated dependencies detected. Learn more about Socket for GitHub ↗︎

Packages Version New capabilities Transitives Size Publisher
react-scripts 1.1.5...2.1.8 shell, environment +795/-442 91.6 MB iansu

@socket-security
Copy link

🚨 Potential security issues detected. Learn more about Socket for GitHub ↗︎

To accept the risk, merge this PR and you will not be notified again.

Issue Package Version Note Source
Bin script confusion fsevents 1.2.4
Critical CVE fsevents 1.2.4
Known Malware fsevents 1.2.4
  • Note: This package downloads prebuilt artifacts from a domain which has been compromised. Your system may be infected if you installed this package prior to April 27, 2023
Network access fsevents 1.2.4
Shell access fsevents 1.2.4
Bin script confusion rimraf 2.7.1
Bin script confusion rc 1.2.8
  • Bin Script: rc
Bin script confusion nopt 4.0.3
Bin script confusion semver 5.7.2
Bin script confusion semver 6.3.1
Bin script confusion semver 7.5.4
Bin script confusion detect-libc 1.0.3
Shell access detect-libc 1.0.3
Bin script confusion node-pre-gyp 0.10.3
Bin script confusion mkdirp 0.5.1
Bin script confusion mkdirp 0.5.6
Bin script confusion needle 2.9.1
Critical CVE immer 1.10.0
CVE immer 1.10.0
CVE serialize-javascript 1.9.1
Mild CVE serialize-javascript 1.9.1
CVE terser 3.17.0
Deprecated hoek 4.2.1
  • Reason: This version has been deprecated in accordance with the hapi support policy (hapi.im/support). Please upgrade to the latest version to get the best features, bug fixes, and security patches. If you are unable to upgrade at this time, paid support is available for older versions (hapi.im/commercial).
Deprecated joi 11.4.0
  • Reason: This version has been deprecated in accordance with the hapi support policy (hapi.im/support). Please upgrade to the latest version to get the best features, bug fixes, and security patches. If you are unable to upgrade at this time, paid support is available for older versions (hapi.im/commercial).
Deprecated topo 2.0.2
  • Reason: This version has been deprecated in accordance with the hapi support policy (hapi.im/support). Please upgrade to the latest version to get the best features, bug fixes, and security patches. If you are unable to upgrade at this time, paid support is available for older versions (hapi.im/commercial).
Deprecated html-webpack-plugin 4.0.0-alpha.2
  • Reason: please switch to a stable version
Deprecated request-promise-native 1.0.9
Deprecated left-pad 1.3.0
  • Reason: use String.prototype.padStart()
Deprecated kleur 2.0.2
Mild CVE browserslist 4.4.1
Network access rxjs 6.6.7
Network access whatwg-fetch 3.0.0
Network access workbox-background-sync 3.6.3
Network access workbox-core 3.6.3
Network access workbox-precaching 3.6.3
Network access workbox-routing 3.6.3
Network access default-gateway 2.7.2
Network access ws 5.2.3
New author css-loader 1.0.0
New author webpack-log 2.0.0
New author capture-exit 1.2.0
New author postcss-value-parser 3.3.1
New author @babel/plugin-syntax-import-meta 7.10.4
New author @babel/plugin-syntax-logical-assignment-operators 7.10.4
New author @babel/plugin-syntax-numeric-separator 7.10.4
New author @babel/plugin-syntax-dynamic-import 7.2.0
New author @babel/plugin-transform-react-constant-elements 7.2.0
New author @babel/plugin-transform-react-display-name 7.2.0
New author @babel/plugin-transform-runtime 7.2.0
New author for-each 0.3.3
New author istanbul-lib-coverage 1.2.1
New author istanbul-lib-hook 1.2.2
New author istanbul-lib-report 1.1.5
New author istanbul-lib-source-maps 1.2.6
New author istanbul-reports 1.5.1
New author postcss-font-variant 4.0.1
New author postcss-color-gray 5.0.0
New author unique-slug 2.0.2
New author figgy-pudding 3.5.2
New author handlebars 4.7.8
New author anymatch 3.1.3
New author postcss-selector-matches 4.0.0
New author postcss-media-minmax 4.0.0
New author cssnano-util-raw-cache 4.0.1
  • New Author:

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant