forked from getredash/redash
-
Notifications
You must be signed in to change notification settings - Fork 1
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[Snyk] Upgrade hoist-non-react-statics from 3.3.0 to 3.3.2 #44
Closed
change-snyk
wants to merge
44
commits into
v10.1.x
from
snyk-upgrade-6ad97d04f7852d406e9416ec664e72e1
Closed
[Snyk] Upgrade hoist-non-react-statics from 3.3.0 to 3.3.2 #44
change-snyk
wants to merge
44
commits into
v10.1.x
from
snyk-upgrade-6ad97d04f7852d406e9416ec664e72e1
Conversation
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-CRYPTOGRAPHY-1022152 - https://snyk.io/vuln/SNYK-PYTHON-HTTPLIB2-1065795 - https://snyk.io/vuln/SNYK-PYTHON-HTTPLIB2-569758 - https://snyk.io/vuln/SNYK-PYTHON-HTTPLIB2-570767 - https://snyk.io/vuln/SNYK-PYTHON-JINJA2-1012994 - https://snyk.io/vuln/SNYK-PYTHON-PASSLIB-569603 - https://snyk.io/vuln/SNYK-PYTHON-PYSAML2-1063038 - https://snyk.io/vuln/SNYK-PYTHON-PYSAML2-1063039 - https://snyk.io/vuln/SNYK-PYTHON-PYYAML-550022 - https://snyk.io/vuln/SNYK-PYTHON-PYYAML-559098 - https://snyk.io/vuln/SNYK-PYTHON-PYYAML-590151 - https://snyk.io/vuln/SNYK-PYTHON-SQLPARSE-1584201 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-1014645 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-1533435 - https://snyk.io/vuln/SNYK-PYTHON-WTFORMS-40581
Snyk has created this PR to upgrade plotly.js from 1.52.3 to 1.58.5. See this package in npm: https://www.npmjs.com/package/plotly.js See this project in Snyk: https://app.snyk.io/org/change.org-pilot/project/21809d95-9079-4b64-aefe-a3a048f65fe2?utm_source=github&utm_medium=referral&page=upgrade-pr
Snyk has created this PR to upgrade dompurify from 2.0.17 to 2.3.6. See this package in npm: https://www.npmjs.com/package/dompurify See this project in Snyk: https://app.snyk.io/org/change.org-pilot/project/21809d95-9079-4b64-aefe-a3a048f65fe2?utm_source=github&utm_medium=referral&page=upgrade-pr
Snyk has created this PR to upgrade axios from 0.19.2 to 0.26.1. See this package in npm: https://www.npmjs.com/package/axios See this project in Snyk: https://app.snyk.io/org/change.org-pilot/project/21809d95-9079-4b64-aefe-a3a048f65fe2?utm_source=github&utm_medium=referral&page=upgrade-pr
Snyk has created this PR to upgrade moment from 2.24.0 to 2.29.1. See this package in npm: https://www.npmjs.com/package/moment See this project in Snyk: https://app.snyk.io/org/change.org-pilot/project/21809d95-9079-4b64-aefe-a3a048f65fe2?utm_source=github&utm_medium=referral&page=upgrade-pr
Snyk has created this PR to upgrade antd from 4.4.3 to 4.19.3. See this package in npm: https://www.npmjs.com/package/antd See this project in Snyk: https://app.snyk.io/org/change.org-pilot/project/f3427373-8b4d-4d25-970c-004f1246bfac?utm_source=github&utm_medium=referral&page=upgrade-pr
Snyk has created this PR to upgrade dompurify from 2.0.7 to 2.3.6. See this package in npm: https://www.npmjs.com/package/dompurify See this project in Snyk: https://app.snyk.io/org/change.org-pilot/project/f3427373-8b4d-4d25-970c-004f1246bfac?utm_source=github&utm_medium=referral&page=upgrade-pr
Snyk has created this PR to upgrade react-ace from 9.1.1 to 9.5.0. See this package in npm: https://www.npmjs.com/package/react-ace See this project in Snyk: https://app.snyk.io/org/change.org-pilot/project/f3427373-8b4d-4d25-970c-004f1246bfac?utm_source=github&utm_medium=referral&page=upgrade-pr
…e0c5557 [Snyk] Fix for 15 vulnerabilities
The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-CRYPTOGRAPHY-1070544
The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-CRYPTOGRAPHY-1070544
…4e2e8b43616 [Snyk] Upgrade plotly.js from 1.52.3 to 1.58.5
…02b78adecec [Snyk] Upgrade dompurify from 2.0.17 to 2.3.6
…696bb3f5cfd [Snyk] Upgrade axios from 0.19.2 to 0.26.1
…e4aced52d5b [Snyk] Upgrade moment from 2.24.0 to 2.29.1
…bb0adde40e5 [Snyk] Upgrade antd from 4.4.3 to 4.19.3
…80b777670dc [Snyk] Upgrade dompurify from 2.0.7 to 2.3.6
…7de371e557f [Snyk] Upgrade query-string from 6.9.0 to 6.14.1
…a792e3d58ed [Snyk] Upgrade react-ace from 9.1.1 to 9.5.0
…075869f [Snyk] Security upgrade cryptography from 3.2 to 3.3.2
…5915fb3 [Snyk] Security upgrade cryptography from 3.2 to 3.3.2
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-AXIOS-1579269 - https://snyk.io/vuln/SNYK-JS-MOMENT-2440688
…2d37411 [Snyk] Fix for 2 vulnerabilities
Error popped up after updating some security dependencies, removing this tag fixed the error.
The newer version doesn’t use the html5 namespace any more. https://stackoverflow.com/questions/70068407/modulenotfounderror-no-module-named-wtforms-fields-html5
This has been removed in the newer release. For python3 compatibility it is always just `str`.
Snyk has created this PR to upgrade @ant-design/icons from 4.2.1 to 4.7.0. See this package in npm: https://www.npmjs.com/package/@ant-design/icons See this project in Snyk: https://app.snyk.io/org/change.org/project/f3427373-8b4d-4d25-970c-004f1246bfac?utm_source=github&utm_medium=referral&page=upgrade-pr
Snyk has created this PR to upgrade use-debounce from 3.1.0 to 3.4.3. See this package in npm: https://www.npmjs.com/package/use-debounce See this project in Snyk: https://app.snyk.io/org/change.org/project/f3427373-8b4d-4d25-970c-004f1246bfac?utm_source=github&utm_medium=referral&page=upgrade-pr
Snyk has created this PR to upgrade axios from 0.21.3 to 0.26.1. See this package in npm: https://www.npmjs.com/package/axios See this project in Snyk: https://app.snyk.io/org/change.org/project/f3427373-8b4d-4d25-970c-004f1246bfac?utm_source=github&utm_medium=referral&page=upgrade-pr
The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-PYJWT-2840625
The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-PYJWT-2840625
…1615a82 [Snyk] Security upgrade pyjwt from 1.7.1 to 2.4.0
…2352db1 [Snyk] Security upgrade pyjwt from 1.7.1 to 2.4.0
…50a594e18a9 [Snyk] Upgrade @ant-design/icons from 4.2.1 to 4.7.0
…530a5d717fd [Snyk] Upgrade use-debounce from 3.1.0 to 3.4.3
…02fd43e4323 [Snyk] Upgrade axios from 0.21.3 to 0.26.1
Snyk has created this PR to upgrade antd from 4.19.3 to 4.20.2. See this package in npm: https://www.npmjs.com/package/antd See this project in Snyk: https://app.snyk.io/org/change.org/project/f3427373-8b4d-4d25-970c-004f1246bfac?utm_source=github&utm_medium=referral&page=upgrade-pr
Snyk has created this PR to upgrade react-virtualized from 9.21.2 to 9.22.3. See this package in npm: https://www.npmjs.com/package/react-virtualized See this project in Snyk: https://app.snyk.io/org/change.org/project/f3427373-8b4d-4d25-970c-004f1246bfac?utm_source=github&utm_medium=referral&page=upgrade-pr
Snyk has created this PR to upgrade mousetrap from 1.6.2 to 1.6.5. See this package in npm: https://www.npmjs.com/package/mousetrap See this project in Snyk: https://app.snyk.io/org/change.org/project/f3427373-8b4d-4d25-970c-004f1246bfac?utm_source=github&utm_medium=referral&page=upgrade-pr
…3fe1d34be86 [Snyk] Upgrade antd from 4.19.3 to 4.20.2
…b533fc36918 [Snyk] Upgrade react-virtualized from 9.21.2 to 9.22.3
…a4465517fee [Snyk] Upgrade mousetrap from 1.6.2 to 1.6.5
Snyk has created this PR to upgrade hoist-non-react-statics from 3.3.0 to 3.3.2. See this package in npm: https://www.npmjs.com/package/hoist-non-react-statics See this project in Snyk: https://app.snyk.io/org/change.org/project/f3427373-8b4d-4d25-970c-004f1246bfac?utm_source=github&utm_medium=referral&page=upgrade-pr
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR was automatically created by Snyk using the credentials of a real user.
Snyk has created this PR to upgrade hoist-non-react-statics from 3.3.0 to 3.3.2.
ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
Release notes
Package name: hoist-non-react-statics
v3.3.2
v3.3.1
v3.3.0
Commit messages
Package name: hoist-non-react-statics
Compare
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.
For more information:
🧐 View latest project report
🛠 Adjust upgrade PR settings
🔕 Ignore this dependency or unsubscribe from future upgrade PRs