Skip to content
This repository was archived by the owner on Sep 2, 2025. It is now read-only.

[Snyk] Upgrade @actions/github from 6.0.0 to 6.0.1#3

Open
kksagar6592 wants to merge 1 commit intomainfrom
snyk-upgrade-2c5fd2986190d76c8881febc4e4c76b9
Open

[Snyk] Upgrade @actions/github from 6.0.0 to 6.0.1#3
kksagar6592 wants to merge 1 commit intomainfrom
snyk-upgrade-2c5fd2986190d76c8881febc4e4c76b9

Conversation

@kksagar6592
Copy link

snyk-top-banner

Snyk has created this PR to upgrade @actions/github from 6.0.0 to 6.0.1.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 1 version ahead of your current version.

  • The recommended version was released 4 months ago.

Issues fixed by the recommended upgrade:

Issue Score Exploit Maturity
high severity Insecure Randomness
SNYK-JS-UNDICI-8641354
452 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-OCTOKITENDPOINT-8730856
452 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-OCTOKITPLUGINPAGINATEREST-8730855
452 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-OCTOKITREQUEST-8730853
452 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-OCTOKITREQUESTERROR-8730854
452 Proof of Concept
low severity Missing Release of Memory after Effective Lifetime
SNYK-JS-UNDICI-10176064
452 Proof of Concept
Release notes
Package name: @actions/github
  • 6.0.1 - 2025-05-07
  • 6.0.0 - 2023-10-10
from @actions/github GitHub release notes

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

Snyk has created this PR to upgrade @actions/github from 6.0.0 to 6.0.1.

See this package in npm:
@actions/github

See this project in Snyk:
https://app.snyk.io/org/kksagar6592/project/e80ea6de-e700-41c3-91b0-86d1c2f22322?utm_source=github&utm_medium=referral&page=upgrade-pr
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Development

Successfully merging this pull request may close these issues.

2 participants