[Snyk] Security upgrade react-scripts from 4.0.3 to 5.0.0 #27
8 new issues (0 max.) of at least minor severity.
Annotations
Check failure on line 1836 in yarn.lock
codacy-production / Codacy Static Code Analysis
yarn.lock#L1836
Insecure dependency @babel/[email protected] (CVE-2023-45133: babel: arbitrary code execution) (update to 7.23.2)
Check warning on line 3870 in yarn.lock
codacy-production / Codacy Static Code Analysis
yarn.lock#L3870
Insecure dependency [email protected] (CVE-2021-23364: browserslist: parsing of invalid queries could result in Regular Expression Denial of Service (ReDoS)) (update to 4.16.5)
Check failure on line 7377 in yarn.lock
codacy-production / Codacy Static Code Analysis
yarn.lock#L7377
Insecure dependency [email protected] (CVE-2022-37599: loader-utils: regular expression denial of service in interpolateName.js) (update to 2.0.4)
Check failure on line 7621 in yarn.lock
codacy-production / Codacy Static Code Analysis
yarn.lock#L7621
Insecure dependency [email protected] (CVE-2022-3517: nodejs-minimatch: ReDoS via the braceExpand function) (update to 3.0.5)
Check failure on line 7649 in yarn.lock
codacy-production / Codacy Static Code Analysis
yarn.lock#L7649
Insecure dependency [email protected] (CVE-2021-44906: minimist: prototype pollution) (update to 1.2.6)
Check warning on line 8713 in yarn.lock
codacy-production / Codacy Static Code Analysis
yarn.lock#L8713
Insecure dependency [email protected] (CVE-2023-44270: An issue was discovered in PostCSS before 8.4.31. The vulnerability af ...) (update to 8.4.31)
Check failure on line 9466 in yarn.lock
codacy-production / Codacy Static Code Analysis
yarn.lock#L9466
Insecure dependency [email protected] (CVE-2022-25883: nodejs-semver: Regular expression denial of service) (update to 5.7.2)
Check failure on line 9481 in yarn.lock
codacy-production / Codacy Static Code Analysis
yarn.lock#L9481
Insecure dependency [email protected] (CVE-2022-25883: nodejs-semver: Regular expression denial of service) (update to 7.5.2)