[Snyk] Fix for 6 vulnerabilities - #198
Conversation
…-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-MINIMATCH-15353387 - https://snyk.io/vuln/SNYK-JS-MINIMATCH-15353389 - https://snyk.io/vuln/SNYK-JS-ANGULARBUILD-15357312 - https://snyk.io/vuln/SNYK-JS-ANGULARDEVKITBUILDANGULAR-15357315 - https://snyk.io/vuln/SNYK-JS-SCHEMATICSANGULAR-15357313 - https://snyk.io/vuln/SNYK-JS-ANGULARCORE-15353393
|
This is a complex and high-risk upgrade, advancing across two major versions of the Angular framework from v18 to v20 for the CLI and from v18 to v19 for Core and other packages. This update introduces significant breaking changes that will require code refactoring, dependency updates, and thorough testing. Key Breaking Changes (v18 → v19):
Key Breaking Changes (v19 → v20):
ng-packagr v18 → v19:
Recommendation: This upgrade cannot be performed passively. It requires a dedicated migration effort. Use the official
|
⛔ Snyk checks have failed. 1 issues have been found so far.
💻 Catch issues earlier using the plugins for VS Code, JetBrains IDEs, Visual Studio, and Eclipse. |
|
Secrets found in the following files: chargebee-js-angular/package-lock.json
|
Snyk has created this PR to fix 6 vulnerabilities in the npm dependencies of this project.
Snyk changed the following file(s):
chargebee-js-angular/package.jsonchargebee-js-angular/package-lock.jsonVulnerabilities that will be fixed with an upgrade:
SNYK-JS-MINIMATCH-15353387
SNYK-JS-MINIMATCH-15353389
SNYK-JS-ANGULARBUILD-15357312
SNYK-JS-ANGULARDEVKITBUILDANGULAR-15357315
SNYK-JS-SCHEMATICSANGULAR-15357313
SNYK-JS-ANGULARCORE-15353393
Breaking Change Risk
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Server-side Request Forgery (SSRF)
🦉 Cross-site Scripting (XSS)
🦉 Regular Expression Denial of Service (ReDoS)