City-of-Helsinki / drupal-helfi-platform

The Helsinki Drupal platform version 4. Frequent updates are made on the codebase and documented on the changelog.
6 stars 1 forks source link

[Snyk] Upgrade eslint from 8.34.0 to 8.52.0 #189

Closed anmipa closed 11 months ago

anmipa commented 11 months ago

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade eslint from 8.34.0 to 8.52.0.

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
- The recommended version is **18 versions** ahead of your current version. - The recommended version was released **a month ago**, on 2023-10-20. The recommended version fixes: Severity | Issue | PriorityScore (*) | Exploit Maturity | :-------------------------:|:-------------------------|-------------------------|:------------------------- | Regular Expression Denial of Service (ReDoS)
[SNYK-JS-WORDWRAP-3149973](https://snyk.io/vuln/SNYK-JS-WORDWRAP-3149973) | **292/1000**
**Why?** Proof of Concept exploit, CVSS 3.7 | Proof of Concept (*) Note that the real score may have changed since the PR was raised.
Release notes
Package name: eslint
  • 8.52.0 - 2023-10-20

    Features

    • 70648ee feat: report-unused-disable-directive to report unused eslint-enable (#17611) (Yosuke Ota)

    Bug Fixes

    • 5de9637 fix: Ensure shared references in rule configs are separated (#17666) (Nicholas C. Zakas)
    • dcfe573 fix: add preceding semicolon in suggestions of no-object-constructor (#17649) (Francesco Trotta)

    Documentation

    • 476d58a docs: Add note about invalid CLI flags when using flat config. (#17664) (Nicholas C. Zakas)
    • 660ed3a docs: Plugin flat config migration guide (#17640) (Nicholas C. Zakas)
    • a58aa20 docs: fix examples for several rules (#17645) (Milos Djermanovic)
    • 179929b docs: Remove trailing newline from the code of Playground links (#17641) (Francesco Trotta)
    • f8e5c30 docs: Update README (GitHub Actions Bot)
    • b7ef2f3 docs: Enable pretty code formatter output (#17635) (Nicholas C. Zakas)
    • 0bcb9a8 docs: Fix syntax errors in rule examples (#17633) (Francesco Trotta)
    • 61b9083 docs: Make no-continue example code work (#17643) (Zhongyuan Zhou)
    • 9fafe45 docs: upgrade to 11ty 2.0 (#17632) (Percy Ma)
    • ff8e4bf docs: Update README (GitHub Actions Bot)
    • fab249a docs: Update README (GitHub Actions Bot)
    • 392305b docs: Update no-irregular-whitespace and fix examples (#17626) (Francesco Trotta)
    • 6b8acfb docs: Add real whitespace to no-trailing-spaces examples (#17630) (Francesco Trotta)
    • 1000187 docs: Fix examples in unicode-bom (#17631) (Francesco Trotta)
    • 000290c docs: Update README (GitHub Actions Bot)

    Chores

    • 6d1f0c2 chore: upgrade @ eslint/js@8.52.0 (#17671) (Milos Djermanovic)
    • d63d4fe chore: package.json update for @ eslint/js release (ESLint Jenkins)
    • f30cefe test: fix FlatESLint tests for caching (#17658) (Milos Djermanovic)
    • ef650cb test: update tests for no-promise-executor-return (#17661) (Milos Djermanovic)
  • 8.51.0 - 2023-10-06

    Features

    • 0a9c433 feat: Add --no-warn-ignored CLI option for flat config (#17569) (Domantas Petrauskas)
    • 977e67e feat: logical-assignment-operators to report expressions with 3 operands (#17600) (Yosuke Ota)

    Bug Fixes

    • f976b2f fix: make rule severity case-sensitive in flat config (#17619) (Milos Djermanovic)
    • 0edfe36 fix: Ensure crash error messages are not duplicated (#17584) (Nicholas C. Zakas)
    • dd79abc fix: eslint-disable to be able to parse quoted rule names (#17612) (Yosuke Ota)
    • d2f6801 fix: Ensure correct code path for && followed by ?? (#17618) (Nicholas C. Zakas)

    Documentation

    • ee5be81 docs: default to sourceType: "module" in rule examples (#17615) (Francesco Trotta)
    • 1aa26df docs: Add more examples for multiline-ternary (#17610) (George Ashiotis)
    • 47d0b44 docs: Update README (GitHub Actions Bot)
    • dbf831e docs: use generated og image (#17601) (Percy Ma)
    • 1866da5 docs: Update README (GitHub Actions Bot)

    Chores

    • 1ef39ea chore: upgrade @ eslint/js@8.51.0 (#17624) (Milos Djermanovic)
    • f8c7403 chore: package.json update for @ eslint/js release (ESLint Jenkins)
    • 2665552 test: fix flat config linter tests to use Linter in flat config mode (#17616) (Milos Djermanovic)
    • 7b77bcc chore: Refactor CodePathState (#17510) (Nicholas C. Zakas)
    • bc77c9a chore: Document and refactor ForkContext (#17566) (Nicholas C. Zakas)
    • 24e1f14 chore: Refactor and document CodePath (#17558) (Nicholas C. Zakas)
  • 8.50.0 - 2023-09-22
    Read more
  • 8.49.0 - 2023-09-08
    Read more
  • 8.48.0 - 2023-08-25

    Features

    • 1fbb3b0 feat: correct update direction in for-direction (#17483) (Francesco Trotta)
    • d73fbf2 feat: rule tester do not create empty valid or invalid test suites (#17475) (fnx)
    • ee2f718 feat: Allow void in rule no-promise-executor-return (#17282) (nopeless)

    Bug Fixes

    • 7234f6a fix: update RuleTester JSDoc and deprecations (#17496) (Jonas Berlin)

    Documentation

    • 7a51d77 docs: no-param-reassign mention strict mode (#17494) (Stephen Hardy)
    • 9cd7ac2 docs: add fetch script to package.json conventions (#17459) (Nitin Kumar)
    • cab21e6 docs: advice for inline disabling of rules (#17458) (Ashish Yadav)
    • 056499d docs: fix example of flat config from plugin (#17482) (Francesco Trotta)
    • 9e9edf9 docs: update documentation URL in error message (#17465) (Nitin Kumar)

    Chores

    • 8dd3cec chore: upgrade @ eslint/js@8.48.0 (#17501) (Milos Djermanovic)
    • 6d0496e chore: package.json update for @ eslint/js release (ESLint Jenkins)
    • 9d4216d chore: Refactor and document CodePathSegment (#17474) (Nicholas C. Zakas)
  • 8.47.0 - 2023-08-11
    Read more
  • 8.46.0 - 2023-07-28
    Read more
  • 8.45.0 - 2023-07-14
    Read more
  • 8.44.0 - 2023-06-30
    Read more
  • 8.43.0 - 2023-06-16
    Read more
  • 8.42.0 - 2023-06-02
  • 8.41.0 - 2023-05-19
  • 8.40.0 - 2023-05-05
  • 8.39.0 - 2023-04-21
  • 8.38.0 - 2023-04-07
  • 8.37.0 - 2023-03-28
  • 8.36.0 - 2023-03-10
  • 8.35.0 - 2023-02-26
  • 8.34.0 - 2023-02-10
from eslint GitHub release notes
Commit messages
Package name: eslint
  • 331cf62 8.52.0
  • 7dc28ed Build: changelog update for 8.52.0
  • 6d1f0c2 chore: upgrade @ eslint/js@8.52.0 (#17671)
  • d63d4fe chore: package.json update for @ eslint/js release
  • 476d58a docs: Add note about invalid CLI flags when using flat config. (#17664)
  • 5de9637 fix: Ensure shared references in rule configs are separated (#17666)
  • f30cefe test: fix FlatESLint tests for caching (#17658)
  • ef650cb test: update tests for no-promise-executor-return (#17661)
  • 70648ee feat: report-unused-disable-directive to report unused eslint-enable (#17611)
  • dcfe573 fix: add preceding semicolon in suggestions of `no-object-constructor` (#17649)
  • 660ed3a docs: Plugin flat config migration guide (#17640)
  • a58aa20 docs: fix examples for several rules (#17645)
  • 179929b docs: Remove trailing newline from the code of Playground links (#17641)
  • f8e5c30 docs: Update README
  • b7ef2f3 docs: Enable pretty code formatter output (#17635)
  • 0bcb9a8 docs: Fix syntax errors in rule examples (#17633)
  • 61b9083 docs: Make no-continue example code work (#17643)
  • 9fafe45 docs: upgrade to 11ty 2.0 (#17632)
  • ff8e4bf docs: Update README
  • fab249a docs: Update README
  • 392305b docs: Update `no-irregular-whitespace` and fix examples (#17626)
  • 6b8acfb docs: Add real whitespace to `no-trailing-spaces` examples (#17630)
  • 1000187 docs: Fix examples in `unicode-bom` (#17631)
  • 000290c docs: Update README
Compare

**Note:** *You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.* For more information: 🧐 [View latest project report](https://app.snyk.io/org/anmipa/project/096c5418-ada8-4435-a7f6-d9c4488cc81f?utm_source=github&utm_medium=referral&page=upgrade-pr) 🛠 [Adjust upgrade PR settings](https://app.snyk.io/org/anmipa/project/096c5418-ada8-4435-a7f6-d9c4488cc81f/settings/integration?utm_source=github&utm_medium=referral&page=upgrade-pr) 🔕 [Ignore this dependency or unsubscribe from future upgrade PRs](https://app.snyk.io/org/anmipa/project/096c5418-ada8-4435-a7f6-d9c4488cc81f/settings/integration?pkg=eslint&utm_source=github&utm_medium=referral&page=upgrade-pr#auto-dep-upgrades)
sonarcloud[bot] commented 11 months ago

Kudos, SonarCloud Quality Gate passed!    Quality Gate passed

Bug A 0 Bugs
Vulnerability A 0 Vulnerabilities
Security Hotspot A 0 Security Hotspots
Code Smell A 0 Code Smells

No Coverage information No Coverage information
0.0% 0.0% Duplication

khalima commented 11 months ago

Issue already fixed in: https://github.com/City-of-Helsinki/drupal-helfi-platform/pull/195/files#diff-c52fb613f03eafa4c91a9778760933a707cc663de1e8830bdf5e003da102738aR32