Open
Conversation
Snyk has created this PR to upgrade prompt from 1.1.0 to 1.3.0. See this package in npm: prompt See this project in Snyk: https://app.snyk.io/org/mikr13/project/57521539-278b-42e8-9b34-51cc78f04622?utm_source=github&utm_medium=referral&page=upgrade-pr
There was a problem hiding this comment.
Pull Request Overview
This pull request updates dependency versions in the project, specifically upgrading the prompt library from version 1.2.0 to 1.3.0 and the development dependency snyk from 1.742.0 to 1.1300.1. The changes include updating both package.json and the corresponding package-lock.json file with all transitive dependency updates.
Key Changes
- Upgraded
promptfrom ^1.2.0 to ^1.3.0 - Upgraded
snykfrom ^1.742.0 to ^1.1300.1 (dev dependency) - Updated package-lock.json with new dependency tree reflecting the changes
Reviewed Changes
Copilot reviewed 1 out of 2 changed files in this pull request and generated no comments.
| File | Description |
|---|---|
| package.json | Updated version constraints for prompt (^1.3.0) and snyk (^1.1300.1) dependencies |
| package-lock.json | Updated lockfile with new resolved versions and dependency trees for prompt 1.3.0 and snyk 1.1300.1 |
💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Snyk has created this PR to upgrade prompt from 1.1.0 to 1.3.0.
ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
The recommended version is 4 versions ahead of your current version.
The recommended version was released 4 years ago.
Issues fixed by the recommended upgrade:
SNYK-JS-ANSIREGEX-1583908
SNYK-JS-ANSIREGEX-1583908
SNYK-JS-ASYNC-2441827
SNYK-JS-AXIOS-1579269
SNYK-JS-AXIOS-6032459
SNYK-JS-BRACES-6838727
SNYK-JS-CROSSSPAWN-8303230
SNYK-JS-CROSSSPAWN-8303230
SNYK-JS-FOLLOWREDIRECTS-6141137
SNYK-JS-LODASHSET-1320032
SNYK-JS-PARSELINKHEADER-1582783
SNYK-JS-SEMVER-3247795
SNYK-JS-SEMVER-3247795
SNYK-JS-SEMVER-3247795
SNYK-JS-SNYKGRADLEPLUGIN-8248487
SNYK-JS-SNYKPHPPLUGIN-8248485
SNYK-JS-SSH2-1656673
SNYK-JS-TAR-1579152
SNYK-JS-TAR-1579155
SNYK-JS-UTILE-8706797
SNYK-JS-AXIOS-12613773
SNYK-JS-AXIOS-6124857
SNYK-JS-AXIOS-9292519
SNYK-JS-AXIOS-9403194
SNYK-JS-FOLLOWREDIRECTS-2332181
SNYK-JS-FOLLOWREDIRECTS-6444610
SNYK-JS-GOT-2932019
SNYK-JS-GOT-2932019
SNYK-JS-HTTPCACHESEMANTICS-3248783
SNYK-JS-I-1726768
SNYK-JS-INFLIGHT-6095116
SNYK-JS-JSZIP-3188562
SNYK-JS-JSZIP-3188562
SNYK-JS-MICROMATCH-6838728
SNYK-JS-MICROMATCH-6838728
SNYK-JS-MINIMATCH-3050818
SNYK-JS-SNYK-3037342
SNYK-JS-SNYK-3038622
SNYK-JS-SNYK-3111871
SNYK-JS-SNYKDOCKERPLUGIN-3039679
SNYK-JS-SNYKGOPLUGIN-3037316
SNYK-JS-SNYKGRADLEPLUGIN-3038624
SNYK-JS-SNYKMVNPLUGIN-3038623
SNYK-JS-SNYKPYTHONPLUGIN-3039677
SNYK-JS-SNYKSBTPLUGIN-3038626
SNYK-JS-SNYKSNYKCOCOAPODSPLUGIN-3038625
SNYK-JS-SNYKSNYKHEXPLUGIN-3039680
SNYK-JS-TAR-6476909
SNYK-JS-TMP-11501554
SNYK-JS-TMP-11501554
SNYK-JS-TMP-11501554
SNYK-JS-XML2JS-5414874
SNYK-JS-BRACEEXPANSION-9789073
SNYK-JS-FOLLOWREDIRECTS-2396346
SNYK-JS-SNYK-10497607
npm:utile:20180614
Release notes
Package name: prompt
-
1.3.0 - 2022-04-11
-
1.2.2 - 2022-02-17
-
1.2.1 - 2022-01-10
-
1.2.0 - 2021-08-25
-
1.1.0 - 2020-12-21
from prompt GitHub release notes1.1.0
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.
For more information: