[Snyk] Security upgrade react-syntax-highlighter from 15.5.0 to 16.0.0#31
[Snyk] Security upgrade react-syntax-highlighter from 15.5.0 to 16.0.0#31
Conversation
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-PRISMJS-9055448
Phylum OSS Supply Chain Risk Analysis - FAILEDThis repository analyzes the risk of new dependencies. An If you see this comment, one or more dependencies have failed Phylum's risk analysis. Package:
|
|
Important Review skippedIgnore keyword(s) in the title. Please check the settings in the CodeRabbit UI or the You can disable this status message by setting the ✨ Finishing touches🧪 Generate unit tests (beta)
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
Snyk has created this PR to fix 1 vulnerabilities in the npm dependencies of this project.
Snyk changed the following file(s):
package.jsonpackage-lock.jsonVulnerabilities that will be fixed with an upgrade:
SNYK-JS-PRISMJS-9055448
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
👩💻 Set who automatically gets assigned
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Arbitrary Code Injection
Note
Bumps
react-syntax-highlighterto16.0.0and updates associated highlighting libraries and type packages via lockfile refresh.react-syntax-highlighterfrom^15.xto^16.0.0inpackage.jsonandpackage-lock.json.prismjs→1.30.0,refractor→5.x(adds@types/prismjs, updates tohastscript@9,parse-entities@4).highlightjs-vue@^1.0.0anddecode-named-character-reference.@types/hast@3,@types/unist@3,property-information@7, token/character utilities to latest major versions).Written by Cursor Bugbot for commit 400d9ac. This will update automatically on new commits. Configure here.