Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Snyk] Upgrade @nuxt/content from 1.11.1 to 1.15.1 #5

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

snyk-bot
Copy link

Snyk has created this PR to upgrade @nuxt/content from 1.11.1 to 1.15.1.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 6 versions ahead of your current version.
  • The recommended version was released 8 months ago, on 2021-11-17.

The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Regular Expression Denial of Service (ReDoS)
SNYK-JS-PRISMJS-1585202
482/1000
Why? Proof of Concept exploit, CVSS 7.5
Proof of Concept
Regular Expression Denial of Service (ReDoS)
SNYK-JS-PRISMJS-1314893
482/1000
Why? Proof of Concept exploit, CVSS 7.5
No Known Exploit
Regular Expression Denial of Service (ReDoS)
SNYK-JS-PRISMJS-1076581
482/1000
Why? Proof of Concept exploit, CVSS 7.5
Proof of Concept
Cross-site Scripting (XSS)
SNYK-JS-PRISMJS-2404333
482/1000
Why? Proof of Concept exploit, CVSS 7.5
No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: @nuxt/content
  • 1.15.1 - 2021-11-17

    Bug Fixes

  • 1.15.0 - 2021-10-21

    Bug Fixes

    • content: add missing :is="tag" to nuxt-content-container (ef7b18d)
    • content: merge class and style attribute (#905) (d905ffe)
    • content: prevent editor extending on typing (#933) (d4dce1e)
    • content: update type definition for QueryBuilder.fetch() (#825) (4cc224e)
    • terminal time log information display error (#891) (1f12dd5)

    Features

  • 1.14.0 - 2021-03-02

    🚀 Features

    • Pass document data to remark plugins (#782) (ed56f5a)

    🐛 Bug Fixes

    • Avoid using commonjs for runtime (vite support) (#805) (8de3e12)
    • Handle readable ended request (#790) (7660d0f)
    • Remove flatmap to support node v10 (#770) (21635e2)
    • Disable pathPrefix for nuxt 2.15 Support (#804) (a93dcf4)
  • 1.13.1 - 2021-02-10

    🐛 Bug Fixes

  • 1.13.0 - 2021-02-10
  • 1.12.0 - 2021-01-29
  • 1.11.1 - 2020-11-25
from @nuxt/content GitHub release notes
Commit messages
Package name: @nuxt/content
  • a543339 chore: release
  • 18c8c50 fix(content): export `FetchReturn` type (#987)
  • 689c023 fix(docs): fix a typo (#986)
  • e029fe9 chore: add plausible
  • aa0b196 chore: release
  • b9ac01b chore: update `@ nuxt/content-theme-docs` version in docs and template
  • 5ea83a4 chore: remove unused file
  • e2657a0 chore: release
  • 6515436 docs: upgrade highlightjs to 11.x (#979)
  • ef7b18d fix(content): add missing `:is="tag"` to `nuxt-content-container`
  • 9b6823a test: update highlighter snapshot
  • 83d697b chore(ci): update node version to 14.x
  • 17b4bbc chore: update monorepo
  • 0464079 chore: maintain lockfile
  • 9d7f3a0 feat(content): support `useCache` option (#772)
  • d4dce1e fix(content): prevent editor extending on typing (#933)
  • 7d1aa87 docs: rename `example-multiselect` component (#926)
  • 4cc224e fix(content): update type definition for `QueryBuilder.fetch()` (#825)
  • 1f4a5d2 fix(theme-docs): allow overriding theme components (#963)
  • a5a32aa docs: update codesandbox embed example (#942)
  • 30ae21d docs: improve styling (#922)
  • d905ffe fix(content): merge class and style attribute (#905)
  • d2fa9df docs: update middleware url (#976)
  • 10f186d Allow "tag" prop to change the root div (#971)

Compare


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant