[Snyk] Security upgrade minimatch from 10.0.3 to 10.2.1#8036
[Snyk] Security upgrade minimatch from 10.0.3 to 10.2.1#8036rubenfiszel wants to merge 1 commit intomainfrom
Conversation
…nerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-MINIMATCH-15309438
Deploying windmill with
|
| Latest commit: |
bcd78f1
|
| Status: | ✅ Deploy successful! |
| Preview URL: | https://772dcc74.windmill.pages.dev |
| Branch Preview URL: | https://snyk-fix-a856df98f2081e9ca6c.windmill.pages.dev |
|
Claude finished @rubenfiszel's task in 1m 36s —— View job Review: [Snyk] Security upgrade minimatch from 10.0.3 to 10.2.1
SummaryThis is an automated Snyk security fix that upgrades Changes
Code Impact
deployUiSettings.include_path.every((x) => !minimatch(path, x))This performs glob pattern matching on workspace deploy UI settings paths. The Assessment
LGTM. This is a straightforward, low-risk security patch. The lock file diff is noisy due to npm metadata regeneration, but the actual functional change is just the minimatch version bump and its transitive dependency update. Testing InstructionsThe |
Snyk has created this PR to fix 1 vulnerabilities in the npm dependencies of this project.
Snyk changed the following file(s):
frontend/package.jsonfrontend/package-lock.jsonVulnerabilities that will be fixed with an upgrade:
SNYK-JS-MINIMATCH-15309438
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Regular Expression Denial of Service (ReDoS)