TAMULib / weaver-components

Custom Web Components for the Weaver UI
MIT License
0 stars 1 forks source link

[Snyk] Upgrade tinymce from 6.2.0 to 6.3.1 #521

Closed snyk-bot closed 1 year ago

snyk-bot commented 1 year ago

Snyk has created this PR to upgrade tinymce from 6.2.0 to 6.3.1.

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Cross-site Scripting (XSS)
SNYK-JS-TINYMCE-3166281
484/1000
Why? Has a fix available, CVSS 5.4
No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: tinymce
  • 6.3.1 - 2022-12-06

    TINY-9404: Prepare for TinyMCE 6.3.1 release (#8327)

  • 6.3.0 - 2022-11-23
    • @ ephox/acid@5.0.7
    • @ ephox/agar@7.3.1
    • @ ephox/alloy@12.0.1
    • @ ephox/boss@6.0.7
    • @ ephox/boulder@7.1.3
    • @ ephox/bridge@4.2.1
    • @ ephox/darwin@8.0.8
    • @ ephox/dragster@7.0.7
    • @ ephox/jax@7.0.7
    • @ ephox/katamari-assertions@4.0.7
    • @ ephox/katamari@9.1.3
    • @ ephox/mcagar@8.2.1
    • @ tinymce/oxide-icons-default@2.1.3
    • @ tinymce/oxide@2.3.1
    • @ ephox/phoenix@8.0.7
    • @ ephox/polaris@6.0.7
    • @ ephox/porkbun@7.0.7
    • @ ephox/robin@10.0.7
    • @ ephox/sand@6.0.7
    • @ ephox/snooker@11.0.8
    • @ ephox/sugar@9.1.3
  • 6.2.0 - 2022-09-08
from tinymce GitHub release notes

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs