Deivdson / DesafioStrategi

0 stars 0 forks source link

[Snyk] Upgrade antd from 5.15.3 to 5.15.4 #35

Open Deivdson opened 5 months ago

Deivdson commented 5 months ago

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade antd from 5.15.3 to 5.15.4.

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
- The recommended version is **1 version** ahead of your current version. - The recommended version was released **21 days ago**, on 2024-03-25. The recommended version fixes: Severity | Issue | PriorityScore (*) | Exploit Maturity | :-------------------------:|:-------------------------|-------------------------|:------------------------- | Information Exposure
[SNYK-JS-FOLLOWREDIRECTS-6444610](https://snyk.io/vuln/SNYK-JS-FOLLOWREDIRECTS-6444610) | **432/1000**
**Why?** Proof of Concept exploit, CVSS 6.5 | Proof of Concept (*) Note that the real score may have changed since the PR was raised.
Release notes
Package name: antd
  • 5.15.4 - 2024-03-25
    • 💄 Fix QRCode that custom style would be overrided by internal style. #48053 @ li-jia-nan
    • 💄 Fix Radio disabled hover style. #47972 @ madocto
    • 🐞 Fix Watermark sometime repeat re-render when browser set scale. #47895
    • TypeScript
      • 🤖 Affix Export AffixRef interface. #47982 @ li-jia-nan
      • 🤖 MISC: Fix GetRef ts util can not get correct ref type for some component. #47983

    • 💄 修复 QRCode 组件自定义样式会被内部样式覆盖的问题。#48053 @ li-jia-nan
    • 💄 修复 Radio 禁用状态 hover 样式。#47972 @ madocto
    • 🐞 修复 Watermark 在特定屏幕缩放下会不断重复渲染的问题。#47895
    • TypeScript
      • 🤖 Affix 导出 AffixRef 类型。#47982 @ li-jia-nan
      • 🤖 MISC: 修复 GetRef 工具类型不能正确获得某些组件 ref 类型的问题。#47983
  • 5.15.3 - 2024-03-16
    • 💄 Unify Modal, Drawer, notification and Tour close button style. #47909
    • 🐞 Fix Badge and text node align style under Space. #47908
    • 💄 Fix Upload file list actions wrap style. #47898
    • 🐞 Fix Typography config the ellipsis.symbol exceed the single line height will make ellipsis rows not correct issue. #47889
    • 🐞 Fix DatePicker component height not correct when customize controlHeight. #47874
    • 🐞 Fix DatePicker with multiple selector collapse for cross the line. #47821
    • 🐞 TimePicker revert and add warning for onSelect API which is already removed in v4 but not update in English documentation. #47878
    • 💄 Darken the Empty text color to make it readable. #47268 @ evgmol

    • 💄 统一 Modal、Drawer、notification 和 Tour 关闭按钮的样式,并增大 Modal 和 Drawer 关闭按钮的交互区域使其更容易点击。#47909
    • 🐞 修复 Badge 和文本元素在 Space 下排版不对齐的问题。#47908
    • 💄 修复 Upload 列表行动点换行的问题。#47898
    • 🐞 修复 Typography 配置的 ellipsis.symbol 超出单行高度时,省略行数不正确的问题。#47889
    • 🐞 修复 DatePicker 配置自定义 controlHeight 时展示高度不正确的问题。#47874
    • 🐞 修复 DatePicker 设置 multiple 多选换行时行与行之间没有间隙的问题。#47821
    • 💄 调深 Empty 文本色彩使其更清晰可读一些。#47268 @ evgmol
from antd GitHub release notes
Commit messages
Package name: antd
  • 1eb139a docs: add 5.15.4 chaneglog (#48057)
  • dc9e457 demo: Update demo with Space.Compact wrap (#48067)
  • 0177a70 docs: 修复 menu openKeys 计算问题 (#47859)
  • 030cb17 docs: fix anchor flick when has popover (#48064)
  • 7393623 fix: adjust the order of QRCode style prop (#48053)
  • a4bf443 docs: Add FAQ to popconfirm (#48055)
  • 87debac chore: rename variables `merge` => `merged` (#48048)
  • 611993b type: fix master CI fail again (#48045)
  • 212b1ee type: fix master CI fail (#48044)
  • 15532f9 docs: add docs edit link in meta (#48034)
  • 72a7d86 docs: fix twoToneColor description (#48011)
  • a3077e4 test: rm unnecessary async (#48033)
  • e17cd4a test: keep spaces (#47024)
  • ff00aed chore: update size-limit (#48028)
  • 8d839c3 chore(deps-dev): bump the dev-dependencies group with 5 updates (#48030)
  • 8920427 chore(deps): bump the dependencies group with 2 updates (#48029)
  • 0a67b32 docs: update Upload FAQ about Mac Chrome bug (#48021)
  • dfd0106 site: rewrite inline-style => cssinjs (#48018)
  • 20561d6 docs: Fix component doc alignment & support import usage (#48004)
  • be1d14d docs: text optimize (#48012)
  • d8982a6 docs: colorpicker text optimize (#48008)
  • 505da69 site: update site scrollbar style (#48000)
  • f6ca160 chore(deps-dev): bump the dev-dependencies group with 3 updates (#48006)
  • b3728ba docs: more info about valuePropName (#48003)
Compare

**Note:** *You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.* For more information: 🧐 [View latest project report](https://app.snyk.io/org/deivdson/project/4dc3fa28-a380-4f45-b601-f1498bef1456?utm_source=github&utm_medium=referral&page=upgrade-pr) 🛠 [Adjust upgrade PR settings](https://app.snyk.io/org/deivdson/project/4dc3fa28-a380-4f45-b601-f1498bef1456/settings/integration?utm_source=github&utm_medium=referral&page=upgrade-pr) 🔕 [Ignore this dependency or unsubscribe from future upgrade PRs](https://app.snyk.io/org/deivdson/project/4dc3fa28-a380-4f45-b601-f1498bef1456/settings/integration?pkg=antd&utm_source=github&utm_medium=referral&page=upgrade-pr#auto-dep-upgrades)
sonarcloud[bot] commented 5 months ago

Quality Gate Passed Quality Gate passed

Issues
0 New issues
0 Accepted issues

Measures
0 Security Hotspots
No data about Coverage
0.0% Duplication on New Code

See analysis details on SonarCloud