DEV-REPO-URIEL / AsafFindingBugs

0 stars 0 forks source link

Update dependency jquery to v3.5.0 #10

Open dev-mend-for-github-com[bot] opened 1 year ago

dev-mend-for-github-com[bot] commented 1 year ago

This PR contains the following updates:

Package Type Update Change
jquery (source) dependencies minor 3.2.1 -> 3.5.0

By merging this PR, the issue #4 will be automatically resolved and closed:

Severity CVSS Score CVE
Medium Medium 6.9 CVE-2020-11022
Medium Medium 6.9 CVE-2020-11023
Medium Medium 6.1 CVE-2019-11358

Release Notes

jquery/jquery (jquery) ### [`v3.5.0`](https://togithub.com/jquery/jquery/releases/tag/3.5.0): jQuery 3.5.0 Released! [Compare Source](https://togithub.com/jquery/jquery/compare/3.4.1...3.5.0) See the blog post: https://blog.jquery.com/2020/04/10/jquery-3-5-0-released/ and the upgrade guide: https://jquery.com/upgrade-guide/3.5/ **NOTE:** Despite being a minor release, this update includes a breaking change that we had to make to fix [a security issue](https://togithub.com/advisories/GHSA-gxr4-xjj5-5px2) ( [`CVE-2020-11022`](https://nvd.nist.gov/vuln/detail/CVE-2020-11022)). Please follow the blog post & the upgrade guide for more details. ### [`v3.4.1`](https://togithub.com/jquery/jquery/compare/3.4.0...3.4.1) [Compare Source](https://togithub.com/jquery/jquery/compare/3.4.0...3.4.1) ### [`v3.4.0`](https://togithub.com/jquery/jquery/compare/3.3.1...3.4.0) [Compare Source](https://togithub.com/jquery/jquery/compare/3.3.1...3.4.0) ### [`v3.3.1`](https://togithub.com/jquery/jquery/compare/3.3.0...3.3.1) [Compare Source](https://togithub.com/jquery/jquery/compare/3.3.0...3.3.1) ### [`v3.3.0`](https://togithub.com/jquery/jquery/compare/3.2.1...3.3.0) [Compare Source](https://togithub.com/jquery/jquery/compare/3.2.1...3.3.0)

dev-mend-for-github-com[bot] commented 1 year ago

⚠ Artifact update problem

Renovate failed to update an artifact related to this branch. You probably do not want to merge this PR as-is.

♻ Renovate will retry this branch, including artifacts, only when one of the following happens:

The artifact failure details are included below:

File name: package-lock.json
No /opt/buildpack/tools/npm/8.19.4/bin defined - aborting