[Snyk] Security upgrade undici from 7.27.2 to 7.29.1 - #13237
Conversation
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-UNDICI-19635218 - https://snyk.io/vuln/SNYK-JS-UNDICI-19635210 - https://snyk.io/vuln/SNYK-JS-UNDICI-19635216 - https://snyk.io/vuln/SNYK-JS-UNDICI-19635206 - https://snyk.io/vuln/SNYK-JS-UNDICI-19635208 - https://snyk.io/vuln/SNYK-JS-UNDICI-19635222
|
This upgrade from undici Key Changes:
Assessment: The risk is assessed as medium. While primarily consisting of security patches and bug fixes, the change to stricter cookie parsing could potentially affect applications that rely on the previous, more lenient behavior. Verification is recommended to ensure that interactions with servers providing Source: GitHub Releases
|
Snyk has created this PR to fix 6 vulnerabilities in the npm dependencies of this project.
Snyk changed the following file(s):
binary/package.jsonVulnerabilities that will be fixed with an upgrade:
SNYK-JS-UNDICI-19635218
SNYK-JS-UNDICI-19635210
SNYK-JS-UNDICI-19635216
SNYK-JS-UNDICI-19635206
SNYK-JS-UNDICI-19635208
SNYK-JS-UNDICI-19635222
Breaking Change Risk
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Allocation of Resources Without Limits or Throttling
🦉 Uncaught Exception