[Snyk] Upgrade: , , , react, react-dom, babel-loader, bootstrap, react-bootstrap, react-pro-sidebar, react-redux, react-router-dom, react-scripts, redux, redux-form, redux-saga #128
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Snyk has created this PR to upgrade multiple dependencies.
👯 The following dependencies are linked and will therefore be updated together.ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
@fortawesome/fontawesome-svg-core
from 1.2.32 to 1.2.36 | 3 versions ahead of your current version | 3 years ago
on 2021-08-04
@fortawesome/free-solid-svg-icons
from 5.15.1 to 5.15.4 | 3 versions ahead of your current version | 3 years ago
on 2021-08-04
@fortawesome/react-fontawesome
from 0.1.11 to 0.2.2 | 11 versions ahead of your current version | 4 months ago
on 2024-05-22
react
from 16.13.1 to 16.14.0 | 1 version ahead of your current version | 4 years ago
on 2020-10-14
react-dom
from 16.13.1 to 16.14.0 | 1 version ahead of your current version | 4 years ago
on 2020-10-14
babel-loader
from 8.1.0 to 8.3.0 | 7 versions ahead of your current version | 2 years ago
on 2022-11-03
bootstrap
from 4.5.2 to 4.6.2 | 4 versions ahead of your current version | 2 years ago
on 2022-07-19
react-bootstrap
from 1.3.0 to 1.6.8 | 16 versions ahead of your current version | 9 months ago
on 2023-12-22
react-pro-sidebar
from 0.4.4 to 0.7.1 | 4 versions ahead of your current version | 3 years ago
on 2021-09-23
react-redux
from 7.2.1 to 7.2.9 | 8 versions ahead of your current version | 2 years ago
on 2022-09-23
react-router-dom
from 5.2.0 to 5.3.4 | 6 versions ahead of your current version | 2 years ago
on 2022-10-02
react-scripts
from 3.4.1 to 3.4.4 | 3 versions ahead of your current version | 4 years ago
on 2020-10-20
redux
from 4.0.5 to 4.2.1 | 7 versions ahead of your current version | 2 years ago
on 2023-01-28
redux-form
from 8.3.6 to 8.3.10 | 4 versions ahead of your current version | a year ago
on 2023-03-28
redux-saga
from 1.1.3 to 1.3.0 | 5 versions ahead of your current version | 9 months ago
on 2024-01-02
Issues fixed by the recommended upgrade:
SNYK-JS-BODYPARSER-7926860
SNYK-JS-DNSPACKET-1293563
SNYK-JS-ES5EXT-6095076
SNYK-JS-OBJECTPATH-1017036
SNYK-JS-OBJECTPATH-1585658
SNYK-JS-FOLLOWREDIRECTS-6141137
SNYK-JS-IP-6240864
SNYK-JS-LODASHES-2434285
SNYK-JS-SERIALIZEJAVASCRIPT-570062
SNYK-JS-ASYNC-2441827
SNYK-JS-LODASHES-2434283
SNYK-JS-LODASHES-2434284
SNYK-JS-URLPARSE-2407770
SNYK-JS-YARGSPARSER-560381
SNYK-JS-EVENTSOURCE-2823375
SNYK-JS-EXPRESS-6474509
SNYK-JS-EXPRESS-7926867
SNYK-JS-FOLLOWREDIRECTS-2332181
SNYK-JS-OBJECTPATH-1569453
SNYK-JS-FOLLOWREDIRECTS-6444610
SNYK-JS-LODASHES-2434289
SNYK-JS-PATHTOREGEXP-7925106
SNYK-JS-PATHTOREGEXP-7925106
SNYK-JS-SOCKJS-575261
SNYK-JS-URLPARSE-2412697
SNYK-JS-URLPARSE-1078283
SNYK-JS-URLPARSE-1533425
SNYK-JS-URLPARSE-2401205
SNYK-JS-URLPARSE-2407759
SNYK-JS-FOLLOWREDIRECTS-2396346
SNYK-JS-MINIMIST-2429795
SNYK-JS-SEND-7926862
SNYK-JS-SERVESTATIC-7926865
Release notes
Package name: @fortawesome/fontawesome-svg-core
Package name: @fortawesome/free-solid-svg-icons
Package name: @fortawesome/react-fontawesome
Fixed
Changed
Added
Fixed
Added
Changed
Added
Fixed
Fixed
Added
Fixed
Package name: react
React
React DOM
componentWillReceiveProps
,shouldComponentUpdate
, and so on). (@ gaearon in #18330)Artifacts
Package name: react-dom
React
React DOM
componentWillReceiveProps
,shouldComponentUpdate
, and so on). (@ gaearon in #18330)Artifacts
Package name: babel-loader
New features
Full Changelog: v8.2.5...v8.3.0
What's Changed
inputSourceMap
loader option by @ alan-agius4 in #896New Contributors
Full Changelog: v8.2.4...v8.2.5
What's Changed
Thanks @ loveDstyle, @ stianjensen and @ pathmapper for your first PRs!
This release fixes compatibility with Node.js 17
Thanks @ Reptarsrage!
8.2.2
@ ava/babel
todevDependencies
#881 (@ jvasseur)mkdirp
withmake-dir
47958ca (@ JLHwung)Package name: bootstrap
Highlights
color-adjust
withprint-color-adjust
in our Sass files as part of the Autoprefixer v10.4.6 issues. This should quiet the issues folks have seen from that dependency change. If you're using our distribution CSS files, likebootstrap.min.css
, you may still see the warning.small
and.small
to compute to a whole pixel value (was12.8px
and now is14px
).role
attributes.What's Changed
color-adjust
withprint-color-adjust
by @ AdrianCurtin in #36283role="group"
from some split drop* buttons by @ julien-deramond in #36254accessibility.md
by @ patrickhlauke in #36492New Contributors
Full Changelog: v4.6.1...v4.6.2
What's changed
divide()
function by @ mdo in #34571moz-focusring
by @ kremit in #32821SAFE_URL_PATTERN
regex for use with test method of regexes by @ nikonthethird in #33153sms
in theSAFE_URL_PATTERN
for sanitizer by @ XhmikosR in #35074select.form-control
by @ mdo in #33206add()
&subtract()
by @ ffoodd in #34047add()
andsubtract()
by @ ffoodd in #34432aria-haspopup
from dropdowns by @ patrickhlauke in #33624.dropdown-item
wrapped in<li>
tags by @ cpsievert in #33649vertical-align
in spinners by @ XhmikosR in #338070.x
with negative margins in utilities by @ k-utsumi in #33593thead
rule by @ coliff in #34426show
event disabling modals with fade class from being displayed again by @ alpadev in #34087