Skip to content
This repository has been archived by the owner on May 11, 2021. It is now read-only.

[Snyk] Security upgrade @next/bundle-analyzer from 8.1.0 to 9.0.0 #21

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

snyk-bot
Copy link

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

Changes included in this PR

  • Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
    • package.json

Vulnerabilities that will be fixed

With an upgrade:
Severity Issue Breaking Change Exploit Maturity
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-ACORN-559469
Yes No Known Exploit
Commit messages
Package name: @next/bundle-analyzer The new version differs by 250 commits.
  • 66bf56f v9.0.0
  • 6cc7205 Add UPGRADING doc (#7773)
  • 9f65e50 v8.1.1-canary.70
  • 264fc01 API routes documentation (#7562)
  • b0b1c32 Experimentalize `public/` (#7771)
  • f204935 Fix serverless loader for API routes (#7767)
  • e995c73 [typings] Allow getInitialProps to be sync (#7763)
  • cc49756 v8.1.1-canary.69
  • 270d548 Remove old docs (#7760)
  • 6fa17b3 Improve automatic prerendering warning (#7759)
  • 80b46c1 Update to have default pageProps of {} instead of null (#7734)
  • 7f3bdb1 v8.1.1-canary.68
  • 7ac8dcb Add deprecation message for next/dynamic modules (#7750)
  • b60985b Revert "fix(Link): Set focus back to the body element (#7693)" (#7753)
  • defde85 fix(Link): Set focus back to the body element (#7693)
  • 87acbdb Http methods update for static files and pages (#7721)
  • 12f1a63 Expose next function type (#7726)
  • e00a2c5 v8.1.1-canary.67
  • a60da57 Clarify params and query merging (#7744)
  • b2a9670 Make `exportTrailingSlash` stable (#7746)
  • e36d7b3 Add example route event code (#7745)
  • f8097e5 Add next-server/types to package.json files (#7740)
  • 6a507fa v8.1.1-canary.66
  • a785ff7 Bring down bundle size (#7743)

See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:

馃 View latest project report

馃洜 Adjust project settings

馃摎 Read more about Snyk's upgrade and patch logic

The following vulnerabilities are fixed with an upgrade:
- https://snyk.io/vuln/SNYK-JS-ACORN-559469
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

1 participant