[Snyk] Security upgrade react-router-dom from 5.3.0 to 6.30.2 #250
Pull Request #250 Alerts: Complete with warnings WARNING: Free tier size exceeded
| Report | Status | Message |
|---|---|---|
| PR #250 Alerts | Found 6 project alerts |
Pull request alerts notify when new issues are detected between the diff of the pull request and it's target branch.
Details
Warning
Review the following alerts detected in dependencies.
According to your organization's Security Policy, it is recommended to resolve "Warn" alerts. Learn more about Socket for GitHub.
| Action | Severity | Alert (click "▶" to expand/collapse) |
|---|---|---|
| Warn | Critical CVE: Elliptic's private key extraction in ECDSA upon signing a malformed input (e.g. a string)Affected versions: < 6.6.1 Patched version: 6.6.1 From: package-lock.json → ℹ Read more on: This package | This alert | What is a critical CVE?
|
|
| Warn | Critical CVE: npm
|
|
| Warn | Critical CVE: npm
|
|
| Warn | Critical CVE: Prototype Pollution in npm
|