chore(deps): update dependency node-fetch to v2.6.7 [security]#230
chore(deps): update dependency node-fetch to v2.6.7 [security]#230renovate[bot] wants to merge 1 commit into
Pull Request #230 Alerts: Complete with warnings WARNING: Free tier size exceeded
| Report | Status | Message |
|---|---|---|
| PR #230 Alerts | Found 4 project alerts |
Pull request alerts notify when new issues are detected between the diff of the pull request and it's target branch.
Details
Warning
Review the following alerts detected in dependencies.
According to your organization's Security Policy, it is recommended to resolve "Warn" alerts. Learn more about Socket for GitHub.
| Action | Severity | Alert (click "▶" to expand/collapse) |
|---|---|---|
| Warn | Critical CVE: Prototype pollution in webpack npm
|
|
| Warn | Critical CVE: Prototype pollution in webpack npm
|
|
| Warn | Critical CVE: Prototype Pollution in npm
|
|
| Warn | Critical CVE: Cross-realm object access in Webpack 5CVE: GHSA-hc6q-2mpp-qw7j Cross-realm object access in Webpack 5 (CRITICAL) Affected versions: >= 5.0.0 < 5.76.0 Patched version: 5.76.0 From: ℹ Read more on: This package | This alert | What is a critical CVE?
|