-
Notifications
You must be signed in to change notification settings - Fork 0
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[Snyk] Security upgrade cspell from 6.31.2 to 8.15.0 #17
base: main
Are you sure you want to change the base?
Conversation
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-MICROMATCH-6838728
👋 I'm here to help you review your pull request. When you're ready for me to perform a review, you can comment anywhere on this pull request with this command: As a reminder, here are some helpful tips on how we can collaborate together:
|
PR summaryThis Pull Request aims to upgrade the SuggestionBefore merging, it is advisable to test the application thoroughly to ensure that the upgrade does not introduce any breaking changes or compatibility issues, given that this is a major version upgrade. Additionally, reviewing the changelog of the Disclaimer: This comment was entirely generated using AI. Be aware that the information provided may be incorrect. Current plan usage: 62.25% Have feedback or need help? |
Snyk has created this PR to fix 1 vulnerabilities in the npm dependencies of this project.
Snyk changed the following file(s):
eng/common/spelling/package.json
Vulnerabilities that will be fixed with an upgrade:
SNYK-JS-MICROMATCH-6838728
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Inefficient Regular Expression Complexity
Description by Korbit AI
What change is being made?
Upgrade the
cspell
dependency from version 6.12.0 to 8.15.0 in thepackage.json
file.Why are these changes being made?
This upgrade addresses security vulnerabilities identified in the older version of
cspell
, ensuring the project remains secure and up-to-date with the latest features and fixes provided in the newer version.