cloudfoundry / switchboard

Golang TCP Proxy
Apache License 2.0
33 stars 9 forks source link

[Snyk] Upgrade react from 0.12.2 to 0.14.10 #16

Closed snyk-bot closed 3 years ago

snyk-bot commented 3 years ago

Snyk has created this PR to upgrade react from 0.12.2 to 0.14.10.

merge advice :information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Cross-site Scripting (XSS)
npm:react:20150318
569/1000
Why? Has a fix available, CVSS 7.1
No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: react
  • 0.14.10 - 2020-10-14
  • 0.14.9 - 2017-04-12
  • 0.14.8 - 2016-03-29
  • 0.14.7 - 2016-01-28
  • 0.14.6 - 2016-01-06
  • 0.14.5 - 2015-12-29
  • 0.14.4 - 2015-12-29
  • 0.14.3 - 2015-11-19
  • 0.14.2 - 2015-11-02
  • 0.14.1 - 2015-10-28
  • 0.14.0 - 2015-10-07
  • 0.14.0-rc1 - 2015-09-10
  • 0.14.0-beta3 - 2015-08-03
  • 0.14.0-beta2 - 2015-07-31
  • 0.14.0-beta1 - 2015-07-03
  • 0.14.0-alpha3 - 2015-05-27
  • 0.14.0-alpha2 - 2015-05-20
  • 0.14.0-alpha1 - 2015-05-11
  • 0.13.3 - 2015-05-08
  • 0.13.2 - 2015-04-18
  • 0.13.1 - 2015-03-17
  • 0.13.0 - 2015-03-10
  • 0.13.0-rc2 - 2015-03-03
  • 0.13.0-rc1 - 2015-02-22
  • 0.13.0-beta.2 - 2015-02-14
  • 0.13.0-beta.1 - 2015-01-28
  • 0.13.0-alpha.2 - 2015-01-16
  • 0.13.0-alpha.1 - 2014-12-23
  • 0.12.2 - 2014-12-18
from react GitHub release notes

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

cf-gitbot commented 3 years ago

We have created an issue in Pivotal Tracker to manage this:

https://www.pivotaltracker.com/story/show/179126023

The labels on this github issue will be updated when the story is started.