Skip to content

Conversation

@Trickery710
Copy link
Owner

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade copy-webpack-plugin from 4.4.3 to 11.0.0.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


Warning: This is a major version upgrade, and may be a breaking change.

  • The recommended version is 44 versions ahead of your current version.
  • The recommended version was released 8 months ago, on 2022-05-17.

The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Regular Expression Denial of Service (ReDoS)
SNYK-JS-SSRI-1246392
696/1000
Why? Proof of Concept exploit, Has a fix available, CVSS 7.5
Proof of Concept
Arbitrary Code Injection
SNYK-JS-SERIALIZEJAVASCRIPT-570062
696/1000
Why? Proof of Concept exploit, Has a fix available, CVSS 7.5
Proof of Concept
Cross-site Scripting (XSS)
SNYK-JS-SERIALIZEJAVASCRIPT-536840
696/1000
Why? Proof of Concept exploit, Has a fix available, CVSS 7.5
No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: copy-webpack-plugin
  • 11.0.0 - 2022-05-17

    11.0.0 (2022-05-17)

    ⚠ BREAKING CHANGES

    • minimum supported Node.js version is 14.15.0
  • 10.2.4 - 2022-01-31

    10.2.4 (2022-01-31)

    Bug Fixes

  • 10.2.3 - 2022-01-29

    10.2.3 (2022-01-29)

    Bug Fixes

  • 10.2.2 - 2022-01-28

    10.2.2 (2022-01-28)

    Bug Fixes

  • 10.2.1 - 2022-01-20

    10.2.1 (2022-01-20)

    Bug Fixes

  • 10.2.0 - 2021-12-16

    10.2.0 (2021-12-16)

    Features

    • removed cjs wrapper and generated types in commonjs format (export = and namespaces used in types), now you can directly use exported types (#654) (5901006)
  • 10.1.0 - 2021-12-10

    10.1.0 (2021-12-10)

    Features

  • 10.0.0 - 2021-11-17

    10.0.0 (2021-11-17)

    ⚠ BREAKING CHANGES

    • minimum supported Node.js version is 12.20.0
    • update globby to 12.0.2 version
  • 9.1.0 - 2021-11-11

    9.1.0 (2021-11-11)

    Features

    • output helpful descriptions and links on errors (#625) (396bed6)

    Bug Fixes

    • compatibility with Node.js 17 (20af0c7)
  • 9.0.1 - 2021-06-25

    9.0.1 (2021-06-25)

    Chore

    • update serialize-javascript
  • 9.0.0 - 2021-05-21
  • 8.1.1 - 2021-04-06
  • 8.1.0 - 2021-03-22
  • 8.0.0 - 2021-03-04
  • 7.0.0 - 2020-12-10
  • 6.4.1 - 2020-12-16
  • 6.4.0 - 2020-12-07
  • 6.3.2 - 2020-11-19
  • 6.3.1 - 2020-11-13
  • 6.3.0 - 2020-11-03
  • 6.2.1 - 2020-10-09
  • 6.2.0 - 2020-10-02
  • 6.1.1 - 2020-09-18
  • 6.1.0 - 2020-08-31
  • 6.0.4 - 2020-08-29
  • 6.0.3 - 2020-06-30
  • 6.0.2 - 2020-06-03
  • 6.0.1 - 2020-05-16
  • 6.0.0 - 2020-05-15
  • 5.1.2 - 2020-08-27
  • 5.1.1 - 2019-12-12
  • 5.1.0 - 2019-12-09
  • 5.0.5 - 2019-11-06
  • 5.0.4 - 2019-07-26
  • 5.0.3 - 2019-04-24
  • 5.0.2 - 2019-03-22
  • 5.0.1 - 2019-03-11
  • 5.0.0 - 2019-02-20
  • 4.6.0 - 2018-10-31
  • 4.5.4 - 2018-10-18
  • 4.5.3 - 2018-10-10
  • 4.5.2 - 2018-06-26
  • 4.5.1 - 2018-03-09
  • 4.5.0 - 2018-03-02
  • 4.4.3 - 2018-03-01
from copy-webpack-plugin GitHub release notes
Commit messages
Package name: copy-webpack-plugin
  • f3b2c24 chore(release): 11.0.0
  • 8424ca8 chore(deps): regenerate lock file (#693)
  • 675c676 build: drop node v12 (#691)
  • a2b1f19 chore: update gitub actions (#692)
  • 238c062 chore: upgrade dependencies to the latest version (#688)
  • e27006e ci: remove node v17 (#687)
  • e50d708 chore: add node 18 to workflow (#686)
  • f1a91e6 ci: don't install webpack again (#680)
  • 64cf06f docs: add path string to options signature (#683)
  • 4b18a6b docs: improve readme
  • b68abd8 chore(deps): bump minimist from 1.2.5 to 1.2.6 (#678)
  • e378d8c chore: upgrade dependencies to the latest version (#677)
  • e2274da chore: replace deprecated String.prototype.substr() (#675)
  • bfc6ad5 chore: upgrade dependencies to the latest version (#673)
  • ad265b4 ci: add a job to check `types` (#672)
  • be043ec chore: upgrade dependencies (#667)
  • b66cc95 chore: fix types and test (#668)
  • 18b1ea5 chore(release): 10.2.4
  • a1c2308 fix: types (#666)
  • 9a5a4c4 chore(release): 10.2.3
  • fd095fb fix: async `to` support
  • b54ce95 chore(release): 10.2.2
  • f58470e fix: types (#664)
  • 796dd64 docs(readme): added pnpm and yarn (#662)

Compare


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants