DEV-REPO-URIEL / AsafFindingBugs

0 stars 0 forks source link

Update dependency jquery to v3.5.0 #10

Open dev-mend-for-github-com[bot] opened 1 year ago

dev-mend-for-github-com[bot] commented 1 year ago

This PR contains the following updates:

Package Type Update Change
jquery (source) dependencies minor 3.2.1 -> 3.5.0

This PR resolves the vulnerabilities described in Issue #4


Version 3.2.1 | Risk Change | Critical | High | Medium | Low | | --- | --- | --- | --- | --- | | N/A | 0 | 0 | 3 | 0 |
Version 3.5.0 | Risk Change | Critical | High | Medium | Low | | --- | --- | --- | --- | --- | | -100% | 0 (--) | 0 (--) | 0 (-3 ) | 0 (--) |
Version 3.7.0 | Risk Change | Critical | High | Medium | Low | | --- | --- | --- | --- | --- | | -100% | 0 (--) | 0 (--) | 0 (-3 ) | 0 (--) |

Mend ensures you have the greatest risk reduction ("Recommended Fix"-highlighted in green) by removing as many vulnerabilities as possible. Click to see how we calculate risk reduction.


Release Notes

jquery/jquery (jquery) ### [`v3.5.0`](https://redirect.github.com/jquery/jquery/releases/tag/3.5.0): jQuery 3.5.0 Released! [Compare Source](https://redirect.github.com/jquery/jquery/compare/3.4.1...3.5.0) See the blog post: https://blog.jquery.com/2020/04/10/jquery-3-5-0-released/ and the upgrade guide: https://jquery.com/upgrade-guide/3.5/ **NOTE:** Despite being a minor release, this update includes a breaking change that we had to make to fix [a security issue](https://redirect.github.com/advisories/GHSA-gxr4-xjj5-5px2) ( [`CVE-2020-11022`](https://nvd.nist.gov/vuln/detail/CVE-2020-11022)). Please follow the blog post & the upgrade guide for more details. ### [`v3.4.1`](https://redirect.github.com/jquery/jquery/compare/3.4.0...3.4.1) [Compare Source](https://redirect.github.com/jquery/jquery/compare/3.4.0...3.4.1) ### [`v3.4.0`](https://redirect.github.com/jquery/jquery/compare/3.3.1...3.4.0) [Compare Source](https://redirect.github.com/jquery/jquery/compare/3.3.1...3.4.0) ### [`v3.3.1`](https://redirect.github.com/jquery/jquery/compare/3.3.0...3.3.1) [Compare Source](https://redirect.github.com/jquery/jquery/compare/3.3.0...3.3.1) ### [`v3.3.0`](https://redirect.github.com/jquery/jquery/compare/3.2.1...3.3.0) [Compare Source](https://redirect.github.com/jquery/jquery/compare/3.2.1...3.3.0)

dev-mend-for-github-com[bot] commented 1 year ago

⚠ Artifact update problem

Renovate failed to update an artifact related to this branch. You probably do not want to merge this PR as-is.

♻ Renovate will retry this branch, including artifacts, only when one of the following happens:

The artifact failure details are included below:

File name: package-lock.json
No /opt/buildpack/tools/npm/8.19.4/bin defined - aborting