Skip to content

Conversation

nerdy-tech-com-gitub
Copy link
Owner

snyk-top-banner

Snyk has created this PR to upgrade puppeteer from 21.4.1 to 24.22.0.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 108 versions ahead of your current version.

  • The recommended version was released 22 days ago.

⚠️ Warning: This PR contains major version upgrade(s), and may be a breaking change.

Issues fixed by the recommended upgrade:

Issue Score Exploit Maturity
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-SEMVER-3247795
159 Proof of Concept
critical severity Arbitrary Command Injection
SNYK-JS-SYSTEMINFORMATION-5914637
159 No Known Exploit
high severity Improper Link Resolution Before File Access ('Link Following')
SNYK-JS-TARFS-10293725
159 No Known Exploit
high severity Symlink Attack
SNYK-JS-TARFS-9535930
159 Mature
high severity Denial of Service (DoS)
SNYK-JS-WS-7266574
159 Proof of Concept
high severity Denial of Service (DoS)
SNYK-JS-WS-7266574
159 Proof of Concept
high severity Excessive Platform Resource Consumption within a Loop
SNYK-JS-BRACES-6838727
159 Proof of Concept
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-CROSSSPAWN-8303230
159 Proof of Concept
high severity Server-side Request Forgery (SSRF)
SNYK-JS-IP-12704893
159 Proof of Concept
high severity Server-side Request Forgery (SSRF)
SNYK-JS-IP-12761655
159 Proof of Concept
high severity Server-side Request Forgery (SSRF)
SNYK-JS-IP-6240864
159 Proof of Concept
high severity Server-side Request Forgery (SSRF)
SNYK-JS-IP-12704893
159 Proof of Concept
high severity Server-side Request Forgery (SSRF)
SNYK-JS-IP-12761655
159 Proof of Concept
high severity Server-side Request Forgery (SSRF)
SNYK-JS-IP-6240864
159 Proof of Concept
high severity Code Injection
SNYK-JS-LODASH-1040724
159 Proof of Concept
high severity Prototype Poisoning
SNYK-JS-QS-3153490
159 Proof of Concept
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-SEMVER-3247795
159 Proof of Concept
medium severity Arbitrary Code Injection
SNYK-JS-SYSTEMINFORMATION-8547981
159 Proof of Concept
medium severity Symlink Following
SNYK-JS-TARFS-13045213
159 No Known Exploit
medium severity Symlink Attack
SNYK-JS-TMP-11501554
159 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-UAPARSERJS-3244450
159 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-WS-1296835
159 Proof of Concept
medium severity Improper Authentication
SNYK-JS-JSONWEBTOKEN-3180022
159 No Known Exploit
medium severity Improper Restriction of Security Token Assignment
SNYK-JS-JSONWEBTOKEN-3180024
159 No Known Exploit
medium severity Denial of Service (DoS)
SNYK-JS-JSZIP-1251497
159 Proof of Concept
medium severity Arbitrary File Write via Archive Extraction (Zip Slip)
SNYK-JS-JSZIP-3188562
159 No Known Exploit
medium severity Open Redirect
SNYK-JS-KOA-10944994
159 Proof of Concept
low severity Regular Expression Denial of Service (ReDoS)
npm:debug:20170905
159 Proof of Concept
critical severity Incomplete List of Disallowed Inputs
SNYK-JS-BABELTRAVERSE-5962462
159 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-HTTPCACHESEMANTICS-3248783
159 Proof of Concept
medium severity Server-Side Request Forgery (SSRF)
SNYK-JS-IP-7148531
159 Proof of Concept
medium severity Server-Side Request Forgery (SSRF)
SNYK-JS-IP-7148531
159 Proof of Concept
medium severity Use of a Broken or Risky Cryptographic Algorithm
SNYK-JS-JSONWEBTOKEN-3180026
159 No Known Exploit
medium severity Inefficient Regular Expression Complexity
SNYK-JS-MICROMATCH-6838728
159 No Known Exploit
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-MINIMATCH-3050818
159 No Known Exploit
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-PATHPARSE-1077067
159 Proof of Concept
low severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-BRACEEXPANSION-9789073
159 Proof of Concept
critical severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-KOA-8720152
159 No Known Exploit
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-LODASH-1018905
159 Proof of Concept
low severity Cross-site Scripting (XSS)
SNYK-JS-KOA-9679272
159 Proof of Concept
Release notes
Package name: puppeteer
  • 24.22.0 - 2025-09-17

    24.22.0 (2025-09-17)

    Miscellaneous Chores

    • puppeteer: Synchronize puppeteer versions

    Dependencies

    • The following workspace dependencies were updated
      • dependencies
        • puppeteer-core bumped from 24.21.0 to 24.22.0
  • 24.21.0 - 2025-09-15
  • 24.20.0 - 2025-09-10
  • 24.19.0 - 2025-09-04
  • 24.18.0 - 2025-09-01
  • 24.17.1 - 2025-08-28
  • 24.17.0 - 2025-08-20
  • 24.16.2 - 2025-08-14
  • 24.16.1 - 2025-08-11
  • 24.16.0 - 2025-08-06
  • 24.15.0 - 2025-07-23
  • 24.14.0 - 2025-07-16
  • 24.13.0 - 2025-07-15
  • 24.12.1 - 2025-07-09
  • 24.12.0 - 2025-07-07
  • 24.11.2 - 2025-07-01
  • 24.11.1 - 2025-06-28
  • 24.11.0 - 2025-06-27
  • 24.10.2 - 2025-06-18
  • 24.10.1 - 2025-06-12
  • 24.10.0 - 2025-06-02
  • 24.9.0 - 2025-05-20
  • 24.8.2 - 2025-05-08
  • 24.8.1 - 2025-05-06
  • 24.8.0 - 2025-05-02
  • 24.7.2 - 2025-04-24
  • 24.7.1 - 2025-04-23
  • 24.7.0 - 2025-04-22
  • 24.6.1 - 2025-04-09
  • 24.6.0 - 2025-04-03
  • 24.5.0 - 2025-04-01
  • 24.4.0 - 2025-03-06
  • 24.3.1 - 2025-03-03
  • 24.3.0 - 2025-02-24
  • 24.2.1 - 2025-02-14
  • 24.2.0 - 2025-02-05
  • 24.1.1 - 2025-01-23
  • 24.1.0 - 2025-01-15
  • 24.0.0 - 2025-01-10
  • 23.11.1 - 2024-12-19
  • 23.11.0 - 2024-12-18
  • 23.10.4 - 2024-12-12
  • 23.10.3 - 2024-12-10
  • 23.10.2 - 2024-12-09
  • 23.10.1 - 2024-12-04
  • 23.10.0 - 2024-12-03
  • 23.9.0 - 2024-11-21
  • 23.8.0 - 2024-11-13
  • 23.7.1 - 2024-11-07
  • 23.7.0 - 2024-11-04
  • 23.6.1 - 2024-10-28
  • 23.6.0 - 2024-10-16
  • 23.5.3 - 2024-10-11
  • 23.5.2 - 2024-10-10
  • 23.5.1 - 2024-10-07
  • 23.5.0 - 2024-10-02
  • 23.4.1 - 2024-09-25
  • 23.4.0 - 2024-09-18
  • 23.3.1 - 2024-09-16
  • 23.3.0 - 2024-09-04
  • 23.2.2 - 2024-09-03
  • 23.2.1 - 2024-08-29
  • 23.2.0 - 2024-08-26
  • 23.1.1 - 2024-08-21
  • 23.1.0 - 2024-08-14
  • 23.0.2 - 2024-08-08
  • 23.0.1 - 2024-08-07
  • 23.0.0 - 2024-08-07
  • 22.15.0 - 2024-07-31
  • 22.14.0 - 2024-07-25
  • 22.13.1 - 2024-07-17
  • 22.13.0 - 2024-07-11
  • 22.12.1 - 2024-06-26
  • 22.12.0 - 2024-06-21
  • 22.11.2 - 2024-06-18
  • 22.11.1 - 2024-06-17
  • 22.11.0 - 2024-06-12
  • 22.10.1 - 2024-06-11
  • 22.10.0 - 2024-05-24
  • 22.9.0 - 2024-05-16
  • 22.8.2 - 2024-05-15
  • 22.8.1 - 2024-05-13
  • 22.8.0 - 2024-05-06
  • 22.7.1 - 2024-04-25
  • 22.7.0 - 2024-04-23
  • 22.6.5 - 2024-04-15
  • 22.6.4 - 2024-04-11
  • 22.6.3 - 2024-04-05
  • 22.6.2 - 2024-04-02
  • 22.6.1 - 2024-03-25
  • 22.6.0 - 2024-03-20
  • 22.5.0 - 2024-03-15
  • 22.4.1 - 2024-03-08
  • 22.4.0 - 2024-03-05
  • 22.3.0 - 2024-02-26
  • 22.2.0 - 2024-02-22
  • 22.1.0 - 2024-02-17
  • 22.0.0 - 2024-02-05
  • 21.11.0 - 2024-02-02
  • 21.10.0 - 2024-01-29
  • 21.9.0 - 2024-01-24
  • 21.8.0 - 2024-01-24
  • 21.7.0 - 2024-01-04
  • 21.6.1 - 2023-12-13
  • 21.6.0 - 2023-12-06
  • 21.5.2 - 2023-11-15
  • 21.5.1 - 2023-11-09
  • 21.5.0 - 2023-11-02
  • 21.4.1 - 2023-10-24
from puppeteer GitHub release notes

Important

  • Warning: This PR contains a major version upgrade, and may be a breaking change.
  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

Snyk has created this PR to upgrade puppeteer from 21.4.1 to 24.22.0.

See this package in npm:
puppeteer

See this project in Snyk:
https://app.snyk.io/org/nerds-github/project/b402c2a4-88c2-41a8-ad24-ce2c2c83a779?utm_source=github&utm_medium=referral&page=upgrade-pr
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants