[Snyk] Upgrade eslint from 7.17.0 to 7.21.0 #4
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Snyk has created this PR to upgrade eslint from 7.17.0 to 7.21.0.
ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
The recommended version fixes:
SNYK-JS-LODASH-1040724
Why? Proof of Concept exploit, CVSS 7.2
SNYK-JS-LODASH-1018905
Why? Proof of Concept exploit, CVSS 7.2
SNYK-JS-ELLIPTIC-1064899
Why? Proof of Concept exploit, CVSS 7.2
SNYK-JS-COLORSTRING-1082939
Why? Proof of Concept exploit, CVSS 7.2
SNYK-JS-AXIOS-1038255
Why? Proof of Concept exploit, CVSS 7.2
(*) Note that the real score may have changed since the PR was raised.
Release notes
Package name: eslint
-
7.21.0 - 2021-02-27
-
7.20.0 - 2021-02-12
-
7.19.0 - 2021-01-31
-
7.18.0 - 2021-01-15
-
7.17.0 - 2021-01-02
from eslint GitHub release notes3cd5440Upgrade: @ eslint/eslintrc to 0.4.0 (#14147) (Brandon Mills)c0b8c71Upgrade: Puppeteer to 7.1.0 (#14122) (Tim van der Lippe)08ae31eNew: Implement cacheStrategy (refs eslint/rfcs#63) (#14119) (Manu Chambon)5e51fd2Update: do not ignore symbolic links (fixes #13551, fixes #13615) (#14126) (Pig Fang)87c43a5Chore: improve a few comments and fix typos (#14125) (Tobias Nießen)e19c51eSponsors: Sync README with website (ESLint Jenkins)b8aea99Fix: pluralize 'line' to 'lines' in max-lines-per-function description (#14115) (Trevin Hofmann)f5b53e2Sponsors: Sync README with website (ESLint Jenkins)eee1213Sponsors: Sync README with website (ESLint Jenkins)5c4d7eaSponsors: Sync README with website (ESLint Jenkins)f4ac3b0Docs: fix sibling selector descriptions (#14099) (Milos Djermanovic)9d6063aFix: Crash with esquery when using JSX (fixes #13639) (#14072) (Yosuke Ota)a0871f1Docs: Triage process (#14014) (Nicholas C. Zakas)ad90761Update: add enforceForJSX option to no-unused-expressions rule (#14012) (Duncan Beevers)d6c84afFix:--initautoconfig shouldn't add deprecated rules (fixes #14017) (#14060) (Milos Djermanovic)9b277a1Fix: Support ENOTDIR error code in the folder existence checking utility (#13973) (Constantine Genchevsky)7aeb127Upgrade: pin @ babel/[email protected] (#14067) (Milos Djermanovic)b4e2af5Docs: Add more fields to bug report template (#14039) (Nicholas C. Zakas)96f1d49Sponsors: Sync README with website (ESLint Jenkins)cb27b0aBuild: package.json update for eslint-config-eslint release (ESLint Jenkins)4cab165Sponsors: Sync README with website (ESLint Jenkins)ce7f061Update: add shadowed variable loc to message in no-shadow (fixes #13646) (#13841) (t-mangoe)c60e23fUpdate: fixletlogic in for-in and for-of loops in no-extra-parens (#14011) (Milos Djermanovic)d76e8f6Fix: no-useless-rename invalid autofix with parenthesized identifiers (#14032) (Milos Djermanovic)5800d92Docs: Clarify stylistic rule update policy (#14052) (Brandon Mills)0ccf6d2Docs: remove configuring.md (#14036) (Milos Djermanovic)65bb0abChore: Clean up new issue workflow (#14040) (Nicholas C. Zakas)e1da90fFix: nested indenting for offsetTernaryExpressions: true (fixes #13971) (#13972) (Chris Brody)1a078b9Update: check ternary:even if?was reported in space-infix-ops (#13963) (Milos Djermanovic)fb27422Fix: extend prefer-const fixer range to whole declaration (fixes #13899) (#14033) (Nitin Kumar)e0b05c7Docs: add a correct example to no-unsafe-optional-chaining (refs #14029) (#14050) (armin yahya)46e836dSponsors: Sync README with website (ESLint Jenkins)3fc4fa4Docs: update configuring links (#14038) (Milos Djermanovic)8561c21Docs: fix broken links in configuring/README.md (#14046) (Milos Djermanovic)1c309ebUpdate: fix no-invalid-regexp false negatives with no flags specified (#14018) (Milos Djermanovic)f6602d5Docs: Reorganize Configuration Documentation (#13837) (klkhan)c753b44Sponsors: Sync README with website (ESLint Jenkins)a4fdb70Docs: Fixed Typo (#14007) (Yash Singh)f7ca481Docs: Explain why we disable lock files (refs eslint/tsc-meetings#234) (#14006) (Brandon Mills)Read more
Read more
Commit messages
Package name: eslint
Compare
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.
For more information:
🧐 View latest project report
🛠 Adjust upgrade PR settings
🔕 Ignore this dependency or unsubscribe from future upgrade PRs