profile
viewpoint
If you are wondering where the data of this site comes from, please visit https://api.github.com/users/schnittstabil/events. GitMemory does not store any data, but only uses NGINX to cache data for a period of time. The idea behind GitMemory is simply to give users a better reading experience.

middlewares/awesome-psr15-middlewares 278

A curated list of awesome PSR-15 HTTP Middleware resources

schnittstabil/csrf-tokenservice 15

Stateless CSRF (Cross-Site Request Forgery) token service :meat_on_bone:

schnittstabil/csrf-twig-helpers 5

CSRF (Cross-Site Request Forgery) protection helpers for the Twig templating engine :cactus:

middlewares/ideas 4

Need a Middleware or looking for ideas?

schnittstabil/caesar-salad 4

Caesar, Vigenere and ROT Cipher.

schnittstabil/composer-extra 2

Get namespaced configuration from composer.json `extra`

schnittstabil/array_some 1

Checks whether some element resp. key in an array passes a test implemented by a callback function

schnittstabil/broccoli-es6-module-jstransform 1

[Deprecated] Transpile ES6 modules to CommonJS with es6-module-jstransform.

schnittstabil/caesar-ciphers 1

[Deprecated] Multiple implementations of the Caesar Cipher

schnittstabil/caesar-salad-cli 1

Caesar, Vigenere and ROT Ciphers

release sindresorhus/System-Color-Picker

v1.3.0

released time in 10 hours

release sindresorhus/active-win

v7.2.0

released time in 18 hours

release sindresorhus/ky

v0.28.1

released time in a day

release sindresorhus/unused-filename

v3.0.0

released time in 2 days

release sindresorhus/srcset

v4.0.0

released time in 2 days

PR opened schnittstabil/mediatum

[Snyk] Security upgrade pillow from 6.2.2 to 8.2.0

<h3>Snyk has created this PR to fix one or more vulnerable packages in the pip dependencies of this project.</h3>

Changes included in this PR

  • Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
    • requirements.txt

<details> <summary>⚠️ <b>Warning</b></summary>

sympy 1.5.1 requires mpmath, which is not installed.
reportlab 3.5.59 requires pillow, which is not installed.

</details>

Vulnerabilities that will be fixed

By pinning:
Severity Priority Score (*) Issue Upgrade Breaking Change Exploit Maturity
high severity 661/1000 <br/> Why? Recently disclosed, Has a fix available, CVSS 7.5 Out-of-bounds Read <br/>SNYK-PYTHON-PILLOW-1292150 pillow: <br> 6.2.2 -> 8.2.0 <br> No No Known Exploit
high severity 661/1000 <br/> Why? Recently disclosed, Has a fix available, CVSS 7.5 Out-of-bounds Read <br/>SNYK-PYTHON-PILLOW-1292151 pillow: <br> 6.2.2 -> 8.2.0 <br> No No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Some vulnerabilities couldn't be fully fixed and so Snyk will still find them when the project is tested again. This may be because the vulnerability existed within more than one direct dependency, but not all of the effected dependencies could be upgraded.

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: <img src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiI5OTBlODMwMy1jNWRmLTRmYmUtODQ2Ny0yZTExNmNiN2YxMDkiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6Ijk5MGU4MzAzLWM1ZGYtNGZiZS04NDY3LTJlMTE2Y2I3ZjEwOSJ9fQ==" width="0" height="0"/> 🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic

+1 -0

0 comment

1 changed file

pr created time in 2 days

startedschnittstabil/lnk-cli

started time in 2 days

release sindresorhus/slugify

v2.1.0

released time in 3 days

startedlabrador-kennel/styled-byte-stream

started time in 3 days

startedZeeZide/CodeEditor

started time in 3 days

startedkarwa/swift-url

started time in 4 days

release xojs/xo

v0.40.1

released time in 4 days

pull request commentsindresorhus/cpy

Implement recursive and flat copy

@Idered @sindresorhus I'd love to have the copying folders structure feature! Any way I can help?

Idered

comment created time in 5 days

startedcasid/jusecase-inject

started time in 5 days

release sindresorhus/eslint-plugin-unicorn

v32.0.1

released time in 6 days

release sindresorhus/normalize-newline

v4.1.0

released time in 6 days

release xojs/eslint-config-xo-typescript

v0.41.1

released time in 6 days

release sindresorhus/Pasteboard-Viewer

v2.0.0

released time in 7 days

release xojs/xo

v0.40.0

released time in 7 days

release sindresorhus/eslint-plugin-unicorn

v32.0.0

released time in 7 days

release xojs/eslint-config-xo-typescript

v0.41.0

released time in 7 days

release sindresorhus/modify-values

v2.1.0

released time in 7 days

startedsindresorhus/swiftui

started time in 8 days

release sindresorhus/electron-util

v0.16.0

released time in 8 days

release sindresorhus/capture-website-cli

v2.0.0

released time in 8 days

release sindresorhus/capture-website

v2.0.0

released time in 8 days

release sindresorhus/type-fest

v1.1.1

released time in 8 days

release sindresorhus/fast-cli

v3.0.1

released time in 8 days

release sindresorhus/fast-cli

v3.0.0

released time in 8 days

release sindresorhus/open

v8.0.8

released time in 8 days