[Snyk] Fix for 4 vulnerabilities - #164
davehorton wants to merge 1 commit into
Conversation
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-BRACEEXPANSION-20244948 - https://snyk.io/vuln/SNYK-JS-BRACEEXPANSION-20244950 - https://snyk.io/vuln/SNYK-JS-BRACEEXPANSION-20244952 - https://snyk.io/vuln/SNYK-JS-GRPCGRPCJS-20251010
|
This release includes a major version upgrade for @google-cloud/text-to-speech@6.4.0 → @google-cloud/text-to-speech@7.0.0Risk: Medium This is a major version upgrade. The primary breaking change is the drop of support for Node.js versions older than 18.x.
Recommendation: Source: Package documentation and release notes pattern in the @grpc/grpc-js@1.14.3 → @grpc/grpc-js@1.14.5Risk: Low This is a patch upgrade that includes bug fixes and minor improvements. No breaking changes are expected. Source: Package documentation.
|
Snyk has created this PR to fix 4 vulnerabilities in the npm dependencies of this project.
Snyk changed the following file(s):
package.jsonpackage-lock.jsonVulnerabilities that will be fixed with an upgrade:
SNYK-JS-BRACEEXPANSION-20244948
SNYK-JS-BRACEEXPANSION-20244950
SNYK-JS-BRACEEXPANSION-20244952
SNYK-JS-GRPCGRPCJS-20251010
Breaking Change Risk
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Uncontrolled Recursion
🦉 Regular Expression Denial of Service (ReDoS)