[Snyk] Security upgrade azure-pipelines-task-lib from 3.0.6-preview.1 to 3.1.0 - #8
newf-bgreet wants to merge 1 commit into
Conversation
…ependency-check-build-task/package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-QS-19432019
|
This is a minor version upgrade from a preview release ( There is no specific changelog available in the official documentation that details the changes between these exact versions. Upgrades from a preview version to a stable version can sometimes introduce breaking changes as APIs are finalized. Recommendation: Due to the lack of detailed release notes for this specific transition, the risk is assessed as medium. Developers should perform thorough testing of their custom pipeline tasks to ensure compatibility after the upgrade. Source: Package documentation
|
Snyk has created this PR to fix 1 vulnerabilities in the npm dependencies of this project.
Snyk changed the following file(s):
src/Tasks/dependency-check-build-task/package.jsonsrc/Tasks/dependency-check-build-task/package-lock.jsonVulnerabilities that will be fixed with an upgrade:
SNYK-JS-QS-19432019
Breaking Change Risk
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Uncaught Exception