Skip to content

Conversation

@zachjonesnoel
Copy link
Owner

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade aws-amplify from 4.3.15 to 4.3.27.

merge advice
ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 77 versions ahead of your current version.
  • The recommended version was released 25 days ago, on 2022-07-07.

The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Regular Expression Denial of Service (ReDoS)
SNYK-JS-NODEFETCH-2964180
554/1000
Why? Proof of Concept exploit, Recently disclosed, CVSS 7.5
Proof of Concept
Information Exposure
SNYK-JS-FOLLOWREDIRECTS-2332181
554/1000
Why? Proof of Concept exploit, Recently disclosed, CVSS 7.5
Proof of Concept
Information Exposure
SNYK-JS-FOLLOWREDIRECTS-2396346
554/1000
Why? Proof of Concept exploit, Recently disclosed, CVSS 7.5
No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: aws-amplify
  • 4.3.27 - 2022-07-07
  • 4.3.27-unstable.7 - 2022-07-06
  • 4.3.27-unstable.6 - 2022-07-01
  • 4.3.27-unstable.5 - 2022-06-30
  • 4.3.27-unstable.4 - 2022-06-30
  • 4.3.27-unstable.3 - 2022-06-29
  • 4.3.27-auto-sign-in.11 - 2022-07-28
  • 4.3.27-auto-sign-in.10 - 2022-07-28
  • 4.3.27-auth-hotfix.5 - 2022-07-14
  • 4.3.27-auth-hotfix.4 - 2022-06-25
  • 4.3.26 - 2022-06-18
  • 4.3.26-unstable.7 - 2022-06-18
  • 4.3.26-unstable.1 - 2022-06-16
  • 4.3.25 - 2022-06-15
  • 4.3.25-unstable.14 - 2022-06-14
  • 4.3.25-unstable.13 - 2022-06-14
  • 4.3.25-unstable.12 - 2022-06-13
  • 4.3.25-unstable.11 - 2022-06-10
  • 4.3.25-unstable.10 - 2022-06-10
  • 4.3.25-unstable.9 - 2022-06-09
  • 4.3.25-unstable.2 - 2022-06-03
  • 4.3.25-unstable.1 - 2022-06-01
  • 4.3.25-geo.14 - 2022-06-15
  • 4.3.25-geo.13 - 2022-06-14
  • 4.3.24 - 2022-05-24
  • 4.3.23 - 2022-05-23
  • 4.3.23-unstable.4 - 2022-05-20
  • 4.3.23-unstable.3 - 2022-05-17
  • 4.3.23-unstable.1 - 2022-05-16
  • 4.3.22 - 2022-05-12
  • 4.3.22-unstable.3 - 2022-05-10
  • 4.3.22-unstable.2 - 2022-05-06
  • 4.3.22-unstable.1 - 2022-05-06
  • 4.3.21 - 2022-05-03
  • 4.3.21-unstable.9 - 2022-05-03
  • 4.3.21-unstable.8 - 2022-05-03
  • 4.3.21-unstable.7 - 2022-05-02
  • 4.3.21-unstable.6 - 2022-04-28
  • 4.3.21-unstable.5 - 2022-04-27
  • 4.3.21-unstable.4 - 2022-04-21
  • 4.3.21-unstable.2 - 2022-04-19
  • 4.3.21-unstable.1 - 2022-04-15
  • 4.3.21-beta.8 - 2022-04-22
  • 4.3.20 - 2022-04-14
  • 4.3.20-unstable.6 - 2022-04-13
  • 4.3.20-unstable.5 - 2022-04-13
  • 4.3.20-unstable.3 - 2022-04-07
  • 4.3.20-unstable.1 - 2022-04-06
  • 4.3.19 - 2022-04-04
  • 4.3.19-unstable.10 - 2022-04-04
  • 4.3.19-unstable.9 - 2022-04-04
  • 4.3.19-unstable.8 - 2022-04-04
  • 4.3.19-unstable.7 - 2022-04-04
  • 4.3.19-geo.19 - 2022-04-04
  • 4.3.19-geo.18 - 2022-04-01
  • 4.3.19-geo.17 - 2022-03-31
  • 4.3.19-geo.11 - 2022-03-30
  • 4.3.19-geo.7 - 2022-03-29
  • 4.3.18 - 2022-03-28
  • 4.3.18-unstable.4 - 2022-03-28
  • 4.3.18-unstable.2 - 2022-03-23
  • 4.3.17 - 2022-03-22
  • 4.3.17-unstable.3 - 2022-03-22
  • 4.3.17-unstable.2 - 2022-03-18
  • 4.3.17-unstable.1 - 2022-03-11
  • 4.3.17-api-logging.5 - 2022-03-18
  • 4.3.17-api-logging.4 - 2022-03-18
  • 4.3.17-api-logging.2 - 2022-03-12
  • 4.3.16 - 2022-03-10
  • 4.3.16-unstable.6 - 2022-03-10
  • 4.3.16-unstable.5 - 2022-03-09
  • 4.3.16-unstable.3 - 2022-03-02
  • 4.3.16-unstable.1 - 2022-03-01
  • 4.3.16-geo.4 - 2022-03-07
  • 4.3.16-geo.3 - 2022-03-01
  • 4.3.16-cloud-logging.8 - 2022-04-20
  • 4.3.16-cloud-logging.7 - 2022-03-02
  • 4.3.15 - 2022-02-28
from aws-amplify GitHub release notes
Commit messages
Package name: aws-amplify
  • d3c993f chore(release): Publish [ci skip]
  • 704dfb3 chore: preparing release
  • de0441b fix(amazon-cognito-identity-js): Missing cognito user challenge name … (#10047)
  • 870ec87 fix: pin vue version (#10052)
  • b454b5c chore(CODEOWNERS): update geo category codeowners (#10048)
  • 3dd9035 fix(analytics): Buffer limit should be adhered to (#10015)
  • 11b537c fix: Update Auth to import JS using named export (#10033)
  • fb1f02c fix: decrease error handler verbosity on self recovering errors (#10030)
  • 9cca114 ci: canaries rn workaround (#10020)
  • 5e82649 chore(release): update version.ts [ci skip]
  • f206bf6 chore(release): Publish [ci skip]
  • b339298 chore: preparing release
  • eb73ad7 Revert "fix: decrease error handler verbosity on self recovering errors (#9987)" (#10004)
  • 8fb868f fix: update geo integ tests to use chrome due to issue with CRA Jest dependency when using Node 16.5.x (#10003)
  • 8b6728d inc timeouts to stabilize observequery unit tests which are flakey in circleci
  • b5c6825 fix: remove comments
  • 67316d7 fix: update axios
  • 67ccf09 fix: decrease error handler verbosity on self recovering errors (#9987)
  • e6e7b13 ci: canaries - improve retry command (#9996)
  • 0fb173d chore(release): update version.ts [ci skip]
  • d436444 chore(release): Publish [ci skip]
  • 97f98fc chore: preparing release
  • 88b6a1e fix: Add module declaration files for datastore-storage-adapter (#9922)
  • ca2a11b fix(@ aws-amplify/datastore): adds missing fields to items sent through observe/observeQuery (#9973)

Compare


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants