Skip to content

Conversation

@takawiramundure
Copy link
Owner

snyk-top-banner

Snyk has created this PR to upgrade multiple dependencies.

👯 The following dependencies are linked and will therefore be updated together.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.

Name Versions Released on

@nuxtjs/axios
from 5.9.3 to 5.13.6 | 22 versions ahead of your current version | 3 years ago
on 2021-06-02
bootstrap
from 4.4.1 to 4.6.2 | 7 versions ahead of your current version | 2 years ago
on 2022-07-19
bootstrap-vue
from 2.2.0 to 2.23.1 | 36 versions ahead of your current version | 2 years ago
on 2022-10-26
nuxt
from 2.11.0 to 2.18.1 | 40 versions ahead of your current version | 3 months ago
on 2024-06-28

Issues fixed by the recommended upgrade:

Issue Score Exploit Maturity
high severity Remote Code Execution (RCE)
SNYK-JS-SHELLQUOTE-1766506
479 No Known Exploit
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-SSRI-1246392
479 Proof of Concept
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-SSRI-1246392
479 Proof of Concept
high severity Asymmetric Resource Consumption (Amplification)
SNYK-JS-BODYPARSER-7926860
479 No Known Exploit
high severity Improper Input Validation
SNYK-JS-FOLLOWREDIRECTS-6141137
479 Proof of Concept
high severity Improper Input Validation
SNYK-JS-FOLLOWREDIRECTS-6141137
479 Proof of Concept
high severity Improper Verification of Cryptographic Signature
SNYK-JS-BROWSERIFYSIGN-6037026
479 No Known Exploit
high severity Prototype Pollution
SNYK-JS-INI-1048974
479 Proof of Concept
high severity Server-side Request Forgery (SSRF)
SNYK-JS-IP-6240864
479 Proof of Concept
high severity Denial of Service (DoS)
SNYK-JS-DECODEURICOMPONENT-3149970
479 Proof of Concept
high severity Remote Code Execution (RCE)
SNYK-JS-EJS-2803307
479 Proof of Concept
high severity Cryptographic Issues
SNYK-JS-ELLIPTIC-571484
479 Proof of Concept
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-AXIOS-1579269
479 Proof of Concept
high severity Arbitrary File Overwrite
SNYK-JS-TAR-1536528
479 No Known Exploit
high severity Arbitrary File Overwrite
SNYK-JS-TAR-1536531
479 No Known Exploit
high severity Arbitrary File Write
SNYK-JS-TAR-1579147
479 No Known Exploit
high severity Arbitrary File Write
SNYK-JS-TAR-1579152
479 No Known Exploit
high severity Arbitrary File Write
SNYK-JS-TAR-1579155
479 No Known Exploit
high severity Path Traversal
SNYK-JS-WEBPACKDEVMIDDLEWARE-6476555
479 Proof of Concept
high severity Denial of Service (DoS)
SNYK-JS-WS-7266574
479 Proof of Concept
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-NTHCHECK-1586032
479 Proof of Concept
high severity Prototype Poisoning
SNYK-JS-QS-3153490
479 Proof of Concept
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-SEMVER-3247795
479 Proof of Concept
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-SEMVER-3247795
479 Proof of Concept
high severity Prototype Pollution
SNYK-JS-LOADERUTILS-3043105
479 No Known Exploit
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-SEMVER-3247795
479 Proof of Concept
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-SEMVER-3247795
479 Proof of Concept
high severity Arbitrary Code Injection
SNYK-JS-SERIALIZEJAVASCRIPT-570062
479 Proof of Concept
high severity Prototype Pollution
SNYK-JS-LOADERUTILS-3043105
479 No Known Exploit
high severity Prototype Pollution
SNYK-JS-Y18N-1021887
479 Proof of Concept
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-UAPARSERJS-1023599
479 Proof of Concept
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-UAPARSERJS-610226
479 Proof of Concept
high severity Code Injection
SNYK-JS-LODASH-1040724
479 Proof of Concept
high severity Prototype Pollution
SNYK-JS-LODASH-567746
479 Proof of Concept
high severity Prototype Pollution
SNYK-JS-LODASH-608086
479 Proof of Concept
high severity Prototype Pollution
SNYK-JS-LODASH-6139239
479 Proof of Concept
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-ACORN-559469
479 No Known Exploit
high severity Prototype Pollution
SNYK-JS-AJV-584908
479 No Known Exploit
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-ANSIHTML-1296849
479 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-LOADERUTILS-3105943
479 No Known Exploit
medium severity Uncontrolled Resource Consumption ('Resource Exhaustion')
SNYK-JS-TAR-6476909
479 Proof of Concept
medium severity Open Redirect
SNYK-JS-EXPRESS-6474509
479 No Known Exploit
medium severity Cross-site Scripting
SNYK-JS-EXPRESS-7926867
479 No Known Exploit
medium severity Information Exposure
SNYK-JS-FOLLOWREDIRECTS-2332181
479 Proof of Concept
medium severity Information Exposure
SNYK-JS-FOLLOWREDIRECTS-6444610
479 Proof of Concept
medium severity Information Exposure
SNYK-JS-FOLLOWREDIRECTS-2332181
479 Proof of Concept
medium severity Information Exposure
SNYK-JS-FOLLOWREDIRECTS-6444610
479 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-COLORSTRING-1082939
479 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-HTMLMINIFIER-3091181
479 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-HTMLMINIFIER-3091181
479 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-ISSVG-1085627
479 Proof of Concept
medium severity Arbitrary Code Injection
SNYK-JS-EJS-1049328
479 Proof of Concept
medium severity Cryptographic Issues
SNYK-JS-ELLIPTIC-1064899
479 No Known Exploit
low severity Cross-site Scripting
SNYK-JS-SERVESTATIC-7926865
479 No Known Exploit
critical severity Incomplete List of Disallowed Inputs
SNYK-JS-BABELTRAVERSE-5962462
479 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-BROWSERSLIST-1090194
479 Proof of Concept
medium severity Denial of Service (DoS)
SNYK-JS-HTTPPROXY-569139
479 Proof of Concept
medium severity Prototype Pollution
SNYK-JS-DOTPROP-543489
479 Proof of Concept
medium severity Improper Control of Dynamically-Managed Code Resources
SNYK-JS-EJS-6689533
479 No Known Exploit
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-POSTCSS-1255640
479 Proof of Concept
medium severity Server-Side Request Forgery (SSRF)
SNYK-JS-AXIOS-1038255
479 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-WS-1296835
479 Proof of Concept
medium severity Prototype Pollution
SNYK-JS-MINIMIST-559764
479 Proof of Concept
medium severity Prototype Pollution
SNYK-JS-MINIMIST-559764
479 Proof of Concept
medium severity Information Exposure
SNYK-JS-NODEFETCH-2342118
479 No Known Exploit
medium severity Denial of Service
SNYK-JS-NODEFETCH-674311
479 No Known Exploit
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-PATHPARSE-1077067
479 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-PATHTOREGEXP-7925106
479 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-POSTCSS-1090595
479 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-ISSVG-1243891
479 Proof of Concept
medium severity Prototype Pollution
SNYK-JS-JSON5-3182856
479 Proof of Concept
medium severity Prototype Pollution
SNYK-JS-JSON5-3182856
479 Proof of Concept
medium severity Prototype Pollution
SNYK-JS-JSON5-3182856
479 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-LOADERUTILS-3042992
479 No Known Exploit
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-LOADERUTILS-3105943
479 No Known Exploit
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-LOADERUTILS-3042992
479 No Known Exploit
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-TERSER-2806366
479 No Known Exploit
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-UAPARSERJS-1072471
479 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-UGLIFYJS-1727251
479 No Known Exploit
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-UGLIFYJS-1727251
479 No Known Exploit
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-LODASH-1018905
479 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-MINIMATCH-3050818
479 No Known Exploit
low severity Information Exposure
SNYK-JS-FOLLOWREDIRECTS-2396346
479 No Known Exploit
low severity Information Exposure
SNYK-JS-FOLLOWREDIRECTS-2396346
479 No Known Exploit
critical severity Improper Verification of Cryptographic Signature
SNYK-JS-ELLIPTIC-7577916
479 Proof of Concept
critical severity Improper Verification of Cryptographic Signature
SNYK-JS-ELLIPTIC-7577917
479 Proof of Concept
critical severity Improper Verification of Cryptographic Signature
SNYK-JS-ELLIPTIC-7577918
479 Proof of Concept
low severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-TAR-1536758
479 No Known Exploit
low severity Prototype Pollution
SNYK-JS-MINIMIST-2429795
479 Proof of Concept
low severity Validation Bypass
SNYK-JS-KINDOF-537849
479 Proof of Concept
low severity Cross-site Scripting
SNYK-JS-SEND-7926862
479 No Known Exploit
low severity Regular Expression Denial of Service (ReDoS)
npm:debug:20170905
479 Proof of Concept
low severity Regular Expression Denial of Service (ReDoS)
npm:debug:20170905
479 Proof of Concept
low severity Prototype Pollution
SNYK-JS-MINIMIST-2429795
479 Proof of Concept
Release notes
Package name: @nuxtjs/axios from @nuxtjs/axios GitHub release notes
Package name: bootstrap

Snyk has created this PR to upgrade:
  - @nuxtjs/axios from 5.9.3 to 5.13.6.
    See this package in npm: https://www.npmjs.com/package/@nuxtjs/axios
  - bootstrap from 4.4.1 to 4.6.2.
    See this package in npm: https://www.npmjs.com/package/bootstrap
  - bootstrap-vue from 2.2.0 to 2.23.1.
    See this package in npm: https://www.npmjs.com/package/bootstrap-vue
  - nuxt from 2.11.0 to 2.18.1.
    See this package in npm: https://www.npmjs.com/package/nuxt

See this project in Snyk:
https://app.snyk.io/org/takawiramundure/project/106377ad-f313-40be-9456-91d640bb1d91?utm_source=github&utm_medium=referral&page=upgrade-pr
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

3 participants