Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Snyk] Upgrade nodemon from 2.0.19 to 2.0.20 #13

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

ashea29
Copy link
Owner

@ashea29 ashea29 commented Feb 15, 2023

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade nodemon from 2.0.19 to 2.0.20.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 1 version ahead of your current version.
  • The recommended version was released 5 months ago, on 2022-09-16.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

Snyk has created this PR to upgrade nodemon from 2.0.19 to 2.0.20.

See this package in npm:


See this project in Snyk:
https://app.snyk.io/org/ashea29/project/b687ab56-ab91-44e8-9edb-8bf07d1d2c0c?utm_source=github&utm_medium=referral&page=upgrade-pr
@socket-security
Copy link

Socket Security Pull Request Report

Dependency issues detected: If you merge this pull request, you will not be alerted to the instances of these issues again.

⚠️ URL strings

Package contains fragments of external URLs or IP addresses, which may indicate that it covertly exfiltrates data.

Avoid using packages that make connections to the network, since this helps to leak data.

Package URL Fragment Location Source
[email protected] (upgraded) https://git.io/fNOAG lib/monitor/run.js package.json
[email protected] (upgraded) paulmillr/chokidar#229 lib/monitor/watch.js package.json
⚠️ Environment variable access

Package accesses environment variables, which may be a sign of credential stuffing or data theft.

Packages should be clear about which environment variables they access, and care should be taken to ensure they only access environment variables they claim to.

Package ENV Vars Location Source
[email protected] (upgraded) lib/monitor/run.js package.json
[email protected] (upgraded) lib/monitor/run.js package.json
[email protected] (upgraded) lib/monitor/run.js package.json
[email protected] (upgraded) lib/monitor/run.js package.json
[email protected] (upgraded) lib/monitor/run.js package.json
[email protected] (upgraded) lib/monitor/run.js package.json
[email protected] (upgraded) lib/monitor/watch.js package.json
[email protected] (upgraded) lib/monitor/watch.js package.json
[email protected] (upgraded) lib/spawn.js package.json
[email protected] (upgraded) lib/spawn.js package.json
[email protected] (upgraded) lib/spawn.js package.json
[email protected] (upgraded) lib/utils/index.js package.json
[email protected] (upgraded) lib/utils/index.js package.json
[email protected] (upgraded) lib/utils/index.js package.json
[email protected] (upgraded) lib/utils/index.js package.json
[email protected] (added) postcss.config.cjs package.json
[email protected] (added) postcss.config.cjs package.json
[email protected] (added) index.js package.json via [email protected]
[email protected] (added) index.js package.json via [email protected]
[email protected] (added) index.js package.json via [email protected]
[email protected] (added) picocolors.js package.json via @csstools/[email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected]
[email protected] (added) picocolors.js package.json via @csstools/[email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected]
[email protected] (added) picocolors.js package.json via @csstools/[email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected]
[email protected] (added) picocolors.js package.json via @csstools/[email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected]
[email protected] (added) picocolors.js package.json via @csstools/[email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected]
[email protected] (added) lib/lazy-result.js package.json via @csstools/[email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected]
[email protected] (added) lib/lazy-result.js package.json via @csstools/[email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected]
[email protected] (added) lib/lazy-result.js package.json via @csstools/[email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected]
[email protected] (added) lib/lazy-result.js package.json via @csstools/[email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected]
[email protected] (added) lib/no-work-result.js package.json via @csstools/[email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected]
[email protected] (added) lib/no-work-result.js package.json via @csstools/[email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected]
[email protected] (added) lib/parse.js package.json via @csstools/[email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected]
[email protected] (added) lib/parse.js package.json via @csstools/[email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected]
[email protected] (added) lib/postcss.js package.json via @csstools/[email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected]
[email protected] (added) lib/postcss.js package.json via @csstools/[email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected]
[email protected] (added) lib/postcss.js package.json via @csstools/[email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected]
[email protected] (added) lib/postcss.js package.json via @csstools/[email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected]
[email protected] (added) lib/processor.js package.json via @csstools/[email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected]
[email protected] (added) lib/processor.js package.json via @csstools/[email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected]
[email protected] (added) index.js package.json
[email protected] (added) index.js package.json
[email protected] (added) src/index.js package.json via [email protected]
[email protected] (added) src/index.js package.json via [email protected]
[email protected] (added) src/index.js package.json via [email protected]
[email protected] (added) src/index.js package.json via [email protected]
[email protected] (added) lib/formatter.js package.json via [email protected]
[email protected] (added) lib/formatter.js package.json via [email protected]
[email protected] (added) lib/formatter.js package.json via [email protected]
[email protected] (added) lib/formatter.js package.json via [email protected]
[email protected] (added) readable.js package.json via [email protected], [email protected]
[email protected] (added) readable.js package.json via [email protected], [email protected]
[email protected] (added) writable.js package.json via [email protected], [email protected]
[email protected] (added) writable.js package.json via [email protected], [email protected]
[email protected] (added) readable.js package.json via [email protected]
[email protected] (added) readable.js package.json via [email protected]
[email protected] (added) lib/homedir.js package.json via [email protected], [email protected]
[email protected] (added) lib/homedir.js package.json via [email protected], [email protected]
[email protected] (added) lib/homedir.js package.json via [email protected], [email protected]
[email protected] (added) lib/homedir.js package.json via [email protected], [email protected]
[email protected] (added) lib/homedir.js package.json via [email protected], [email protected]
[email protected] (added) lib/homedir.js package.json via [email protected], [email protected]
[email protected] (added) lib/homedir.js package.json via [email protected], [email protected]
[email protected] (added) lib/homedir.js package.json via [email protected], [email protected]
[email protected] (added) lib/homedir.js package.json via [email protected], [email protected]
[email protected] (added) lib/homedir.js package.json via [email protected], [email protected]
[email protected] (added) lib/homedir.js package.json via [email protected], [email protected]
[email protected] (added) lib/homedir.js package.json via [email protected], [email protected]
[email protected] (added) lib/homedir.js package.json via [email protected], [email protected]
[email protected] (added) lib/homedir.js package.json via [email protected], [email protected]
[email protected] (added) lib/homedir.js package.json via [email protected], [email protected]
[email protected] (added) lib/homedir.js package.json via [email protected], [email protected]
[email protected] (added) build/index.js package.json via [email protected]
[email protected] (added) build/index.js package.json via [email protected]
[email protected] (added) index.js package.json via [email protected]
[email protected] (added) tools/node.js package.json
[email protected] (added) index.js package.json via [email protected]
[email protected] (added) index.js package.json via [email protected]
[email protected] (added) lib/last-run.js package.json via [email protected]
[email protected] (added) lib/last-run.js package.json via [email protected]
[email protected] (added) config-path.js package.json via [email protected]
[email protected] (added) index.js package.json via [email protected]
[email protected] (added) which.js package.json via [email protected]
[email protected] (added) which.js package.json via [email protected]
[email protected] (added) which.js package.json via [email protected]
[email protected] (added) which.js package.json via [email protected]
[email protected] (added) which.js package.json via [email protected]
[email protected] (added) which.js package.json via [email protected]
[email protected] (added) which.js package.json via [email protected]
[email protected] (added) which.js package.json via [email protected]
[email protected] (added) browser/dist/warnings-df54cb69.js package.json via [email protected]
[email protected] (added) dist/warnings-1000a372.js package.json via [email protected]
[email protected] (added) dist/compose/composer.js package.json via [email protected]
[email protected] (added) dist/compose/composer.js package.json via [email protected]
[email protected] (added) dist/parse/parser.js package.json via [email protected]
[email protected] (added) dist/parse/parser.js package.json via [email protected]
[email protected] (added) lib/platform-shims/esm.mjs package.json via [email protected], [email protected]
[email protected] (added) lib/platform-shims/esm.mjs package.json via [email protected], [email protected]
[email protected] (added) yargs.js package.json via [email protected]
[email protected] (added) yargs.js package.json via [email protected]
[email protected] (added) yargs.js package.json via [email protected]
[email protected] (added) yargs.js package.json via [email protected]
[email protected] (added) yargs.js package.json via [email protected]
[email protected] (added) yargs.js package.json via [email protected]
⚠️ Unclear license

Package contains a reference to a license without a matching LICENSE file.

Add a LICENSE file that matches the license field in package.json. https://docs.npmjs.com/cli/v8/configuring-npm/package-json#license

Package Possible License Source
[email protected] (upgraded) MIT package.json
[email protected] (added) MIT package.json via [email protected], [email protected]
[email protected] (added) MIT package.json via [email protected]
[email protected] (added) MIT package.json via [email protected]
[email protected] (added) MIT package.json via [email protected]
[email protected] (added) MIT package.json via [email protected], [email protected]
[email protected] (added) MIT package.json via [email protected]
[email protected] (added) MIT package.json via [email protected]
[email protected] (added) MIT package.json via [email protected]
[email protected] (added) MIT package.json via [email protected]
[email protected] (added) MIT package.json
[email protected] (added) MIT package.json via [email protected]
[email protected] (added) MIT package.json via [email protected]
[email protected] (added) MIT package.json via [email protected]
[email protected] (added) MIT package.json via [email protected]
[email protected] (added) MIT package.json via [email protected]
[email protected] (added) MIT package.json via [email protected]
[[email protected]](https://socket.dev/npm/package/parse-json/overview/

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants