Skip to content

Conversation

@nerdy-tech-com-gitub
Copy link
Owner

snyk-top-banner

Snyk has created this PR to upgrade puppeteer from 21.4.1 to 24.29.0.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 121 versions ahead of your current version.

  • The recommended version was released 22 days ago.

⚠️ Warning: This PR contains major version upgrade(s), and may be a breaking change.

Issues fixed by the recommended upgrade:

Issue Score Exploit Maturity
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-SEMVER-3247795
159 Proof of Concept
critical severity Arbitrary Command Injection
SNYK-JS-SYSTEMINFORMATION-5914637
159 No Known Exploit
high severity Improper Link Resolution Before File Access ('Link Following')
SNYK-JS-TARFS-10293725
159 No Known Exploit
high severity Symlink Attack
SNYK-JS-TARFS-9535930
159 Mature
medium severity Arbitrary Code Injection
SNYK-JS-SYSTEMINFORMATION-8547981
159 Proof of Concept
critical severity Incomplete List of Disallowed Inputs
SNYK-JS-BABELTRAVERSE-5962462
159 Proof of Concept
high severity Denial of Service (DoS)
SNYK-JS-WS-7266574
159 Proof of Concept
high severity Denial of Service (DoS)
SNYK-JS-WS-7266574
159 Proof of Concept
high severity Excessive Platform Resource Consumption within a Loop
SNYK-JS-BRACES-6838727
159 Proof of Concept
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-CROSSSPAWN-8303230
159 Proof of Concept
high severity Server-side Request Forgery (SSRF)
SNYK-JS-IP-12704893
159 Proof of Concept
high severity Server-side Request Forgery (SSRF)
SNYK-JS-IP-12761655
159 Proof of Concept
high severity Server-side Request Forgery (SSRF)
SNYK-JS-IP-6240864
159 Proof of Concept
high severity Server-side Request Forgery (SSRF)
SNYK-JS-IP-12704893
159 Proof of Concept
high severity Server-side Request Forgery (SSRF)
SNYK-JS-IP-12761655
159 Proof of Concept
high severity Server-side Request Forgery (SSRF)
SNYK-JS-IP-6240864
159 Proof of Concept
high severity Code Injection
SNYK-JS-LODASH-1040724
159 Proof of Concept
high severity Prototype Poisoning
SNYK-JS-QS-3153490
159 Proof of Concept
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-SEMVER-3247795
159 Proof of Concept
medium severity Symlink Following
SNYK-JS-TARFS-13045213
159 No Known Exploit
medium severity Symlink Attack
SNYK-JS-TMP-11501554
159 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-UAPARSERJS-3244450
159 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-WS-1296835
159 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-HTTPCACHESEMANTICS-3248783
159 Proof of Concept
medium severity Server-Side Request Forgery (SSRF)
SNYK-JS-IP-7148531
159 Proof of Concept
medium severity Server-Side Request Forgery (SSRF)
SNYK-JS-IP-7148531
159 Proof of Concept
medium severity Improper Authentication
SNYK-JS-JSONWEBTOKEN-3180022
159 No Known Exploit
medium severity Improper Restriction of Security Token Assignment
SNYK-JS-JSONWEBTOKEN-3180024
159 No Known Exploit
medium severity Use of a Broken or Risky Cryptographic Algorithm
SNYK-JS-JSONWEBTOKEN-3180026
159 No Known Exploit
medium severity Prototype Pollution
SNYK-JS-JSYAML-13961110
159 No Known Exploit
medium severity Denial of Service (DoS)
SNYK-JS-JSZIP-1251497
159 Proof of Concept
medium severity Arbitrary File Write via Archive Extraction (Zip Slip)
SNYK-JS-JSZIP-3188562
159 No Known Exploit
medium severity Open Redirect
SNYK-JS-KOA-10944994
159 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-LODASH-1018905
159 Proof of Concept
medium severity Inefficient Regular Expression Complexity
SNYK-JS-MICROMATCH-6838728
159 No Known Exploit
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-MINIMATCH-3050818
159 No Known Exploit
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-PATHPARSE-1077067
159 Proof of Concept
low severity Regular Expression Denial of Service (ReDoS)
npm:debug:20170905
159 Proof of Concept
low severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-BRACEEXPANSION-9789073
159 Proof of Concept
critical severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-KOA-8720152
159 No Known Exploit
low severity Cross-site Scripting (XSS)
SNYK-JS-KOA-9679272
159 Proof of Concept
Release notes
Package name: puppeteer
  • 24.29.0 - 2025-11-05

    24.29.0 (2025-11-05)

    ♻️ Chores

    • puppeteer: Synchronize puppeteer versions

    Dependencies

    • The following workspace dependencies were updated
      • dependencies
        • puppeteer-core bumped from 24.28.0 to 24.29.0
  • 24.28.0 - 2025-11-03

    24.28.0 (2025-11-03)

    ♻️ Chores

    • puppeteer: Synchronize puppeteer versions

    Dependencies

    • The following workspace dependencies were updated
      • dependencies
        • @ puppeteer/browsers bumped from 2.10.12 to 2.10.13
        • puppeteer-core bumped from 24.27.0 to 24.28.0
  • 24.27.0 - 2025-10-29
  • 24.26.1 - 2025-10-23
  • 24.26.0 - 2025-10-21
  • 24.25.0 - 2025-10-15
  • 24.24.1 - 2025-10-13
  • 24.24.0 - 2025-10-10
  • 24.23.1 - 2025-10-10
  • 24.23.0 - 2025-10-01
  • 24.22.3 - 2025-09-24
  • 24.22.2 - 2025-09-23
  • 24.22.1 - 2025-09-23
  • 24.22.0 - 2025-09-17
  • 24.21.0 - 2025-09-15
  • 24.20.0 - 2025-09-10
  • 24.19.0 - 2025-09-04
  • 24.18.0 - 2025-09-01
  • 24.17.1 - 2025-08-28
  • 24.17.0 - 2025-08-20
  • 24.16.2 - 2025-08-14
  • 24.16.1 - 2025-08-11
  • 24.16.0 - 2025-08-06
  • 24.15.0 - 2025-07-23
  • 24.14.0 - 2025-07-16
  • 24.13.0 - 2025-07-15
  • 24.12.1 - 2025-07-09
  • 24.12.0 - 2025-07-07
  • 24.11.2 - 2025-07-01
  • 24.11.1 - 2025-06-28
  • 24.11.0 - 2025-06-27
  • 24.10.2 - 2025-06-18
  • 24.10.1 - 2025-06-12
  • 24.10.0 - 2025-06-02
  • 24.9.0 - 2025-05-20
  • 24.8.2 - 2025-05-08
  • 24.8.1 - 2025-05-06
  • 24.8.0 - 2025-05-02
  • 24.7.2 - 2025-04-24
  • 24.7.1 - 2025-04-23
  • 24.7.0 - 2025-04-22
  • 24.6.1 - 2025-04-09
  • 24.6.0 - 2025-04-03
  • 24.5.0 - 2025-04-01
  • 24.4.0 - 2025-03-06
  • 24.3.1 - 2025-03-03
  • 24.3.0 - 2025-02-24
  • 24.2.1 - 2025-02-14
  • 24.2.0 - 2025-02-05
  • 24.1.1 - 2025-01-23
  • 24.1.0 - 2025-01-15
  • 24.0.0 - 2025-01-10
  • 23.11.1 - 2024-12-19
  • 23.11.0 - 2024-12-18
  • 23.10.4 - 2024-12-12
  • 23.10.3 - 2024-12-10
  • 23.10.2 - 2024-12-09
  • 23.10.1 - 2024-12-04
  • 23.10.0 - 2024-12-03
  • 23.9.0 - 2024-11-21
  • 23.8.0 - 2024-11-13
  • 23.7.1 - 2024-11-07
  • 23.7.0 - 2024-11-04
  • 23.6.1 - 2024-10-28
  • 23.6.0 - 2024-10-16
  • 23.5.3 - 2024-10-11
  • 23.5.2 - 2024-10-10
  • 23.5.1 - 2024-10-07
  • 23.5.0 - 2024-10-02
  • 23.4.1 - 2024-09-25
  • 23.4.0 - 2024-09-18
  • 23.3.1 - 2024-09-16
  • 23.3.0 - 2024-09-04
  • 23.2.2 - 2024-09-03
  • 23.2.1 - 2024-08-29
  • 23.2.0 - 2024-08-26
  • 23.1.1 - 2024-08-21
  • 23.1.0 - 2024-08-14
  • 23.0.2 - 2024-08-08
  • 23.0.1 - 2024-08-07
  • 23.0.0 - 2024-08-07
  • 22.15.0 - 2024-07-31
  • 22.14.0 - 2024-07-25
  • 22.13.1 - 2024-07-17
  • 22.13.0 - 2024-07-11
  • 22.12.1 - 2024-06-26
  • 22.12.0 - 2024-06-21
  • 22.11.2 - 2024-06-18
  • 22.11.1 - 2024-06-17
  • 22.11.0 - 2024-06-12
  • 22.10.1 - 2024-06-11
  • 22.10.0 - 2024-05-24
  • 22.9.0 - 2024-05-16
  • 22.8.2 - 2024-05-15
  • 22.8.1 - 2024-05-13
  • 22.8.0 - 2024-05-06
  • 22.7.1 - 2024-04-25
  • 22.7.0 - 2024-04-23
  • 22.6.5 - 2024-04-15
  • 22.6.4 - 2024-04-11
  • 22.6.3 - 2024-04-05
  • 22.6.2 - 2024-04-02
  • 22.6.1 - 2024-03-25
  • 22.6.0 - 2024-03-20
  • 22.5.0 - 2024-03-15
  • 22.4.1 - 2024-03-08
  • 22.4.0 - 2024-03-05
  • 22.3.0 - 2024-02-26
  • 22.2.0 - 2024-02-22
  • 22.1.0 - 2024-02-17
  • 22.0.0 - 2024-02-05
  • 21.11.0 - 2024-02-02
  • 21.10.0 - 2024-01-29
  • 21.9.0 - 2024-01-24
  • 21.8.0 - 2024-01-24
  • 21.7.0 - 2024-01-04
  • 21.6.1 - 2023-12-13
  • 21.6.0 - 2023-12-06
  • 21.5.2 - 2023-11-15
  • 21.5.1 - 2023-11-09
  • 21.5.0 - 2023-11-02
  • 21.4.1 - 2023-10-24
from puppeteer GitHub release notes

Important

  • Warning: This PR contains a major version upgrade, and may be a breaking change.
  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

Snyk has created this PR to upgrade puppeteer from 21.4.1 to 24.29.0.

See this package in npm:
puppeteer

See this project in Snyk:
https://app.snyk.io/org/nerds-github/project/b402c2a4-88c2-41a8-ad24-ce2c2c83a779?utm_source=github&utm_medium=referral&page=upgrade-pr
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

3 participants