Skip to content

[Snyk] Upgrade @sentry/cli from 2.33.0 to 2.33.1#619

Closed
mezotv wants to merge 1 commit intomainfrom
snyk-upgrade-e753d9e87658c47d6694377e51375ff1
Closed

[Snyk] Upgrade @sentry/cli from 2.33.0 to 2.33.1#619
mezotv wants to merge 1 commit intomainfrom
snyk-upgrade-e753d9e87658c47d6694377e51375ff1

Conversation

@mezotv
Copy link
Member

@mezotv mezotv commented Aug 24, 2024

snyk-top-banner

Snyk has created this PR to upgrade @sentry/cli from 2.33.0 to 2.33.1.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 1 version ahead of your current version.

  • The recommended version was released on 22 days ago.

Release notes
Package name: @sentry/cli
  • 2.33.1 - 2024-08-02

    Security fix

    This release contains a fix for a bug where auth tokens would, under the following circumstances, be logged to stdout:

    • The auth token was passed as a command line argument to Sentry CLI (via --auth-token)
    • The log level was set to info or debug
      • The default log level is warn, so users using the default log level were unaffected by this bug

    We now redact the --auth-token argument and anything else that looks like it might be an auth token when logging the arguments that the Sentry CLI was called with (see #2115 and #2118 for details).

    Other fixes & improvements

  • 2.33.0 - 2024-07-23

    Various fixes & improvements

from @sentry/cli GitHub release notes

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

Snyk has created this PR to upgrade @sentry/cli from 2.33.0 to 2.33.1.

See this package in npm:
@sentry/cli

See this project in Snyk:
https://app.snyk.io/org/mezotv/project/10b5e464-bfc2-4dd4-a34c-5741b71d6ddb?utm_source=github&utm_medium=referral&page=upgrade-pr
@mezotv mezotv closed this Sep 15, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants