Skip to content
This repository was archived by the owner on Aug 12, 2025. It is now read-only.

[Snyk] Upgrade yargs from 13.2.1 to 13.3.0#36

Open
snyk-bot wants to merge 1 commit into
mainfrom
snyk-upgrade-164c430c81ea52a2cd0f46fbd649ed95
Open

[Snyk] Upgrade yargs from 13.2.1 to 13.3.0#36
snyk-bot wants to merge 1 commit into
mainfrom
snyk-upgrade-164c430c81ea52a2cd0f46fbd649ed95

Conversation

@snyk-bot

Copy link
Copy Markdown

Snyk has created this PR to upgrade yargs from 13.2.1 to 13.3.0.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
  • The recommended version is 3 versions ahead of your current version.
  • The recommended version was released 9 months ago, on 2019-06-10.

The recommended version fixes:

Severity Issue Exploit Maturity
Prototype Pollution
SNYK-JS-YARGSPARSER-560381
Proof of Concept
Release notes
Package name: yargs
  • 13.3.0 - 2019-06-10

    Bug Fixes

    • deps: yargs-parser update addressing several parsing bugs (#1357) (e230d5b)

    Features

    • i18n: swap out os-locale dependency for simple inline implementation (#1356) (4dfa19b)
    • support defaultDescription for positional arguments (812048c)
  • 13.2.4 - 2019-05-13

    chore(release): 13.2.4

  • 13.2.2 - 2019-03-06

    chore(release): 13.2.2

  • 13.2.1 - 2019-02-18

    chore(release): 13.2.1

from yargs GitHub release notes
Commit messages
Package name: yargs
  • 59739e6 chore: release 13.3.0 (#1358)
  • e230d5b fix(deps): yargs-parser update addressing several parsing bugs (#1357)
  • 4dfa19b feat(i18n): swap out os-locale dependency for simple inline implementation (#1356)
  • 812048c feat: support defaultDescription for positional arguments
  • a6e67f1 chore(release): 13.2.4
  • fc13476 chore: update standard-verison dependency
  • bf46813 fix(i18n): rename unclear 'implication failed' to 'missing dependent arguments' (#1317)
  • a3a5d05 docs: fix a broken link to MS Terminology Search (#1341)
  • b4f8018 build: add .versionrc that hides test/build
  • 0c39183 chore(release): 13.2.3
  • 08e0746 chore: update deps (#1340)
  • 843e939 docs: make `--no-` boolean prefix easier to find in the docs (#1338)
  • 84cac07 docs: restore removed changelog of v13.2.0 (#1337)
  • b20db65 fix(deps): upgrade cliui for compatibility with latest chalk. (#1330)
  • c294d1b test: accept differently formatted output (#1327)
  • ac3f10c chore: move .hbs templates into .js to facilitate webpacking (#1320)
  • 0295132 fix: address issues with dutch translation (#1316)
  • 9f2468e doc: clarify parserConfiguration object structure (#1309)
  • e7f2937 chore(release): 13.2.2
  • edd0bb5 test: correct test description
  • 03a9523 chore: forgoing dropping Node 6 until yargs@14 (#1308)
  • 14920d1 docs: remove --save option as it isn't required anymore (#1301)

Compare


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant