jtimberlake / pacbot

PacBot (Policy as Code Bot)
https://tmobile.github.io/pacbot/
Apache License 2.0
0 stars 0 forks source link

Update dependency @angular/cli to v12 - autoclosed #782

Closed mend-for-github-com[bot] closed 1 month ago

mend-for-github-com[bot] commented 8 months ago

This PR contains the following updates:

Package Type Update Change
@angular/cli devDependencies major 1.6.8 -> 12.0.0

By merging this PR, the below issues will be automatically resolved and closed:

Severity CVSS Score CVE GitHub Issue
Critical 9.8 CVE-2018-1000620 #126
Critical 9.8 CVE-2021-3918 #388
Critical 9.8 CVE-2022-0691 #277
Critical 9.8 CVE-2022-37598 #365
Critical 9.8 CVE-2022-37601 #363
Critical 9.8 CVE-2022-37601 #363
Critical 9.8 CVE-2023-26136 #774
Critical 9.8 CVE-2023-26136 #774
Critical 9.8 CVE-2023-42282 #811
Critical 9.3 CVE-2022-1650 #332
Critical 9.1 CVE-2022-0686 #275
High 8.8 CVE-2018-3728 #187
High 8.8 CVE-2022-46175 #380
High 8.1 CVE-2020-7660 #127
High 8.1 WS-2019-0063 #108
High 7.5 CVE-2018-14732 #44
High 7.5 CVE-2020-28469 #246
High 7.5 CVE-2020-28469 #246
High 7.5 CVE-2021-23343 #212
High 7.5 CVE-2021-23382 #214
High 7.5 CVE-2021-23382 #214
High 7.5 CVE-2021-23424 #385
High 7.5 CVE-2021-27290 #213
High 7.5 CVE-2021-28092 #217
High 7.5 CVE-2021-29059 #225
High 7.5 CVE-2021-33623 #396
High 7.5 CVE-2021-3803 #389
High 7.5 CVE-2022-24771 #291
High 7.5 CVE-2022-24772 #290
High 7.5 CVE-2022-24999 #371
High 7.5 CVE-2022-24999 #371
High 7.5 CVE-2022-25758 #341
High 7.5 CVE-2022-25883 #795
High 7.5 CVE-2022-25883 #795
High 7.5 CVE-2022-29167 #328
High 7.5 CVE-2022-37603 #374
High 7.5 CVE-2022-38900 #373
High 7.5 CVE-2023-46234 #790
High 7.5 WS-2019-0032 #170
High 7.5 WS-2021-0152 #398
High 7.4 CVE-2024-29180 #801

Release Notes

angular/angular-cli (@​angular/cli) ### [`v12.0.0`](https://togithub.com/angular/angular-cli/blob/HEAD/CHANGELOG.md#v1200-2021-05-12) [Compare Source](https://togithub.com/angular/angular-cli/compare/11.2.19...v12.0.0) ### [`v11.2.19`](https://togithub.com/angular/angular-cli/blob/HEAD/CHANGELOG.md#11219-2022-03-30) [Compare Source](https://togithub.com/angular/angular-cli/compare/11.2.18...11.2.19) ##### [@​angular-devkit/architect-cli](https://togithub.com/angular-devkit/architect-cli) | Commit | Type | Description | | --------------------------------------------------------------------------------------------------- | ---- | ---------------------------- | | [75caa1143](https://togithub.com/angular/angular-cli/commit/75caa1143f4007c9550ab0dabb62ae4df91e3827) | fix | update `minimist` to `1.2.6` | ##### [@​angular-devkit/schematics-cli](https://togithub.com/angular-devkit/schematics-cli) | Commit | Type | Description | | --------------------------------------------------------------------------------------------------- | ---- | ---------------------------- | | [80d479e9f](https://togithub.com/angular/angular-cli/commit/80d479e9fdfcf6863ebbe0986ea6cd29309f398d) | fix | update `minimist` to `1.2.6` | ##### [@​angular-devkit/benchmark](https://togithub.com/angular-devkit/benchmark) | Commit | Type | Description | | --------------------------------------------------------------------------------------------------- | ---- | ---------------------------- | | [f61cd1a79](https://togithub.com/angular/angular-cli/commit/f61cd1a79b6960711d4aa5b16d04308bbdc67beb) | fix | update `minimist` to `1.2.6` | #### Special Thanks Alan Agius and Doug Parker ### [`v11.2.18`](https://togithub.com/angular/angular-cli/blob/HEAD/CHANGELOG.md#11218-2022-01-12) [Compare Source](https://togithub.com/angular/angular-cli/compare/11.2.17...11.2.18) ##### [@​angular-devkit/build-angular](https://togithub.com/angular-devkit/build-angular) | Commit | Type | Description | | --------------------------------------------------------------------------------------------------- | ---- | --------------------------------------------------- | | [534678450](https://togithub.com/angular/angular-cli/commit/534678450196a45610e88a85ee01317aa43dc788) | fix | updated webpack-dev-server to latest security patch | #### Special Thanks Doug Parker and iRealNirmal ### [`v11.2.17`](https://togithub.com/angular/angular-cli/blob/HEAD/CHANGELOG.md#11217-2021-12-16) [Compare Source](https://togithub.com/angular/angular-cli/compare/11.2.16...11.2.17) ##### [@​angular/cli](https://togithub.com/angular/cli) | Commit | Type | Description | | --------------------------------------------------------------------------------------------------- | ---- | -------------------------------------------------------------- | | [1efff8f82](https://togithub.com/angular/angular-cli/commit/1efff8f82df38b7485f8a8dcdd5bfea5a457c6a1) | fix | exclude deprecated packages with removal migration from update | #### Special Thanks Alan Agius and Doug Parker ### [`v11.2.16`](https://togithub.com/angular/angular-cli/blob/HEAD/CHANGELOG.md#11216-2021-12-15) [Compare Source](https://togithub.com/angular/angular-cli/compare/11.2.15...11.2.16) ##### [@​angular/cli](https://togithub.com/angular/cli) | Commit | Type | Description | | --------------------------------------------------------------------------------------------------- | ---- | ----------------------------------------------------------------------------------------- | | [f456b0962](https://togithub.com/angular/angular-cli/commit/f456b0962b9f339759bc86c092256f68d68d9ecf) | fix | error when updating Angular packages across multi-major migrations | | [886d2511e](https://togithub.com/angular/angular-cli/commit/886d2511e292b687acce1ac4c6924f992494d14f) | fix | logic which determines which temp version of the CLI is to be download during `ng update` | | [776d1210a](https://togithub.com/angular/angular-cli/commit/776d1210a9e62bf2531d977138f49f93820a8b87) | fix | update `ng update` output for Angular packages | #### Special Thanks Alan Agius and Doug Parker ### [`v11.2.15`](https://togithub.com/angular/angular-cli/releases/tag/v11.2.15) [Compare Source](https://togithub.com/angular/angular-cli/compare/v11.2.14...11.2.15) ### Commits

@​angular-devkit/build-angular (0.1102.15)

Commit Description Notes
update `critters` to version `0.0.12` [Closes #​20794]
*** ### Special Thanks Joey Perrott, Alan Agius ### [`v11.2.14`](https://togithub.com/angular/angular-cli/releases/tag/v11.2.14) [Compare Source](https://togithub.com/angular/angular-cli/compare/v11.2.13...v11.2.14) ### Commits

@​angular-devkit/build-angular (0.1102.14)

Commit Description Notes
update to postcss 8.2.15 [Closes #​20888]
*** *** ### Special Thanks Alan Agius, Doug Parker, Charles Lyding ### [`v11.2.13`](https://togithub.com/angular/angular-cli/releases/tag/v11.2.13) [Compare Source](https://togithub.com/angular/angular-cli/compare/v11.2.12...v11.2.13) ### Commits

@​angular-devkit/build-angular (0.1102.13)

Commit Description Notes
update cssnano/postcss to fix optimization defects [Closes #​20673]
update dependency resolve-url-loader to v4 [Closes #​20733]

@​schematics/angular (11.2.13)

Commit Description Notes
pin `karma-jasmine-html-reporter` to patches in new projects [Closes #​20719]
*** *** ### Special Thanks Alan Agius, Charles Lyding, Keen Yee Liau ### [`v11.2.12`](https://togithub.com/angular/angular-cli/releases/tag/v11.2.12) [Compare Source](https://togithub.com/angular/angular-cli/compare/v11.2.11...v11.2.12) ### Commits

@​angular-devkit/build-angular (0.1102.12)

Commit Description Notes
disable CSS declaration sorting optimizations [Closes #​20693]
*** *** ### Special Thanks Keen Yee Liau, Alan Agius, Doug Parker ### [`v11.2.11`](https://togithub.com/angular/angular-cli/releases/tag/v11.2.11) [Compare Source](https://togithub.com/angular/angular-cli/compare/v11.2.10...v11.2.11) ### Commits

@​angular-devkit/build-angular (0.1102.11)

Commit Description Notes
output webpack-dev-server and webpack-dev-middleware errors
update CSSNano and PostCSS to fix serveral security issues [Closes #​20606]

@​schematics/angular (11.2.11)

Commit Description Notes
avoid unuse imports for canLoad guard generation

@​angular-devkit/schematics-cli (0.1102.11)

Commit Description Notes
accept windows like paths for schematics
*** *** ### Special Thanks Joey Perrott, Charles Lyding, Alan Agius, Doug Parker, Billy Lando, mzocateli ### [`v11.2.10`](https://togithub.com/angular/angular-cli/releases/tag/v11.2.10) [Compare Source](https://togithub.com/angular/angular-cli/compare/v11.2.9...v11.2.10) ### Commits

@​angular-devkit/build-angular (0.1102.10)

Commit Description Notes
set Tailwind CSS mode when using Tailwind

@​ngtools/webpack (11.2.10)

Commit Description Notes
only check affected files for Angular semantic diagnostics
*** *** ### Special Thanks Charles Lyding, Joey Perrott, Alan Agius, Keen Yee Liau ### [`v11.2.9`](https://togithub.com/angular/angular-cli/releases/tag/v11.2.9) [Compare Source](https://togithub.com/angular/angular-cli/compare/v11.2.8...v11.2.9) No user-facing changes ### [`v11.2.8`](https://togithub.com/angular/angular-cli/releases/tag/v11.2.8) [Compare Source](https://togithub.com/angular/angular-cli/compare/v11.2.7...v11.2.8) ### Commits
*** *** ### Special Thanks Doug Parker, Renovate Bot, Alan Agius, Joey Perrott ### [`v11.2.7`](https://togithub.com/angular/angular-cli/releases/tag/v11.2.7) [Compare Source](https://togithub.com/angular/angular-cli/compare/v11.2.6...v11.2.7) ### Commits

@​angular-devkit/build-angular (0.1102.8)

Commit Description Notes
validate scripts and styles bundleName [Closes #​20360]

@​schematics/angular (11.2.8)

Commit Description Notes
correctly handle adding multi-line strings to `@NgModule` metadata
explicitly specify ServiceWorker registration strategy
*** *** ### Special Thanks George Kalpakas, Joey Perrott, Charles Lyding, Alan Agius, Keen Yee Liau ### [`v11.2.6`](https://togithub.com/angular/angular-cli/releases/tag/v11.2.6) [Compare Source](https://togithub.com/angular/angular-cli/compare/v11.2.5...v11.2.6) ### Commits

@​angular-devkit/build-angular (0.1102.6)

Commit Description Notes
ensure output directory is present before writing stats JSON

@​ngtools/webpack (11.2.6)

Commit Description Notes
reduce resource processing during JIT initial lazy route analysis

@​schematics/angular (11.2.6)

Commit Description Notes
use title for svg on home page
*** *** ### Special Thanks Alan Agius, Charles Lyding, Keen Yee Liau, Cédric Exbrayat ### [`v11.2.5`](https://togithub.com/angular/angular-cli/releases/tag/v11.2.5) [Compare Source](https://togithub.com/angular/angular-cli/compare/v11.2.4...v11.2.5) ### Commits

@​angular-devkit/build-angular (0.1102.5)

Commit Description Notes
support writing large Webpack stat outputs
don't load an input sourcemap from file when using Babel
display correct filename for bundles that are ES2016+
enforce Babel not to load sourcemaps from file
remove Webpack Stats.toJson usage in karma plugin
remove Webpack Stats.toJson usage in analytics plugin
skip FESM2015 from `async` transformation

@​angular/cli (11.2.5)

Commit Description Notes
remove `project` from required properties in ng-packagr schema

@​ngtools/webpack (11.2.5)

Commit Description Notes
remove saving Angular compiler in JIT watch mode
use precalculated dependencies in unused file check
avoid adding transitive dependencies to Webpack's dependency graph
avoid full compiler lazy route analysis on JIT rebuilds

@​schematics/angular (11.2.5)

Commit Description Notes
remove Native value from viewEncapsulation option
fix youtube icon margin
*** *** ### Special Thanks Charles Lyding, Alan Agius, Doug Parker, Mouad Ennaciri, Omar Hasan ### [`v11.2.4`](https://togithub.com/angular/angular-cli/releases/tag/v11.2.4) [Compare Source](https://togithub.com/angular/angular-cli/compare/v11.2.3...v11.2.4) ### Commits

@​angular-devkit/build-angular (0.1102.4)

Commit Description Notes
only remove nomodule and defer attributes empty values [Closes #​20207]

@​angular/cli (11.2.4)

Commit Description Notes
add ng-packagr builder schema in IDE schema
*** *** ### Special Thanks Alan Agius, Joey Perrott ### [`v11.2.3`](https://togithub.com/angular/angular-cli/releases/tag/v11.2.3) [Compare Source](https://togithub.com/angular/angular-cli/compare/v11.2.2...v11.2.3) ### Commits

@​angular-devkit/build-angular (0.1102.3)

Commit Description Notes
inline critical font-face rules when using crittical css inlining

@​schematics/angular (11.2.3)

Commit Description Notes
update ng new links
*** *** ### Special Thanks Charles Lyding, Keen Yee Liau, Alan Agius, Joey Perrott, twerske ### [`v11.2.2`](https://togithub.com/angular/angular-cli/releases/tag/v11.2.2) [Compare Source](https://togithub.com/angular/angular-cli/compare/v11.2.1...v11.2.2) ### Commits

@​angular-devkit/build-angular (0.1102.2)

Commit Description Notes
only show index and service worker status once
disable declaration and declarationMap [Closes #​20103]
force less version 3.5 math behaviour [Closes #​20088]

@​angular/cli (11.2.2)

Commit Description Notes
remove npm 7 incompatibility notification

@​ngtools/webpack (11.2.2)

Commit Description Notes
normalize paths when pruning AOT rebuild requests
*** *** ### Special Thanks Charles Lyding, Alan Agius, Doug Parker, Jefiozie ### [`v11.2.1`](https://togithub.com/angular/angular-cli/blob/HEAD/CHANGELOG.md#11219-2022-03-30) [Compare Source](https://togithub.com/angular/angular-cli/compare/v11.2.0...v11.2.1) ##### [@​angular-devkit/architect-cli](https://togithub.com/angular-devkit/architect-cli) | Commit | Type | Description | | --------------------------------------------------------------------------------------------------- | ---- | ---------------------------- | | [75caa1143](https://togithub.com/angular/angular-cli/commit/75caa1143f4007c9550ab0dabb62ae4df91e3827) | fix | update `minimist` to `1.2.6` | ##### [@​angular-devkit/schematics-cli](https://togithub.com/angular-devkit/schematics-cli) | Commit | Type | Description | | --------------------------------------------------------------------------------------------------- | ---- | ---------------------------- | | [80d479e9f](https://togithub.com/angular/angular-cli/commit/80d479e9fdfcf6863ebbe0986ea6cd29309f398d) | fix | update `minimist` to `1.2.6` | ##### [@​angular-devkit/benchmark](https://togithub.com/angular-devkit/benchmark) | Commit | Type | Description | | --------------------------------------------------------------------------------------------------- | ---- | ---------------------------- | | [f61cd1a79](https://togithub.com/angular/angular-cli/commit/f61cd1a79b6960711d4aa5b16d04308bbdc67beb) | fix | update `minimist` to `1.2.6` | #### Special Thanks Alan Agius and Doug Parker ### [`v11.2.0`](https://togithub.com/angular/angular-cli/releases/tag/v11.2.0) [Compare Source](https://togithub.com/angular/angular-cli/compare/v11.1.4...v11.2.0) ### Commits

@​angular-devkit/build-angular (0.1102.0)

Commit Description Notes
detect and use tailwindcss in projects
support targeting ES2017 with Zone.js
support karma version 6.x
ensure i18n extraction sourcemaps are fully configured
the root Tailwind configuration file is always picked
fixed ignoring of karma plugins config [Closes #​19993]
increase resilience of babel cache identifier
update Angular peer dependencies to 11.2 prerelease
resolve less from build-angular package
add service-worker as optional peer dependency

@​angular-devkit/core (11.2.0)

Commit Description Notes
provide prompt validation errors to provider

@​angular/cli (11.2.0)

Commit Description Notes
provide additional status messaging for ng add [Closes #​17983]
update NPM 7 guidance
only show incompatible NPM error when NPM is used as package manager
temporarily limit npm to version 6
redirect Angular schematic dependency requests to known versions
avoid using number inquirer prompt in schematic prompts

@​ngtools/webpack (11.2.0)

Commit Description Notes
reduce overhead of Angular compiler rebuild requests
update Angular peer dependencies to 11.2 prerelease
don't use `skipTemplateCodegen` to determine if compilation is JIT mode [Closes #​19949]

@​schematics/angular (11.2.0)

Commit Description Notes
create new projects with karma 6.0
*** *** ### Special Thanks Renovate Bot, Charles Lyding, Alan Agius, Doug Parker, Keen Yee Liau, Bruno Baia, Amadou Sall, S. Iftekhar Hossain ### [`v11.1.4`](https://togithub.com/angular/angular-cli/releases/tag/v11.1.4) [Compare Source](https://togithub.com/angular/angular-cli/compare/v11.1.3...v11.1.4) ### Commits

@​angular/cli (11.1.4)

Commit Description Notes
only show incompatible NPM error when NPM is used as package manager
*** *** ### Special Thanks Charles Lyding, Keen Yee Liau, Alan Agius ### [`v11.1.3`](https://togithub.com/angular/angular-cli/releases/tag/v11.1.3) [Compare Source](https://togithub.com/angular/angular-cli/compare/v11.1.2...v11.1.3) ### Commits

@​angular-devkit/build-angular (0.1101.3)

Commit Description Notes
remove `0.0.0` version from supported Angular semver versions error message
update Angular peer dependencies to 11 stable
error with status code when response code is not 200
handle promise rejection in IndexHtmlWebpackPlugin [Closes #​19893]
add fallback for non defined stats options
fix budgets for any script with differential loading enabled [Closes #​19849]
allow emitting multiple files with the same filename [Closes #​12186]
styles that are not injected do count for initial bundle size [Closes #​17672]

@​angular-devkit/schematics (11.1.3)

Commit Description Notes
merge external schematics after execution
check merge ancestry of delegate & scoped trees
Fix merge that causes an overwrite [Closes #​11337]

@​angular/cli (11.1.3)

Commit Description Notes
temporarily limit npm to version 6
resolve migration collections from containing package
remove unnecessary promise around "open"

@​ngtools/webpack (11.1.3)

Commit Description Notes
update Angular peer dependencies to 11 stable
don't use `skipTemplateCodegen` to determine if compilation is JIT mode [Closes #​19949]
recover from component stylesheet errors [Closes #​19892]
improve resource loader caching
*** *** ### Special Thanks Alan Agius, Charles Lyding, Keen Yee Liau, Vladimir Pavlenko, Dominic Elm, profanis, Matt Lewis, Joey Perrott, Mike Brocchi ### [`v11.1.2`](https://togithub.com/angular/angular-cli/releases/tag/v11.1.2) [Compare Source](https://togithub.com/angular/angular-cli/compare/v11.1.1...v11.1.2) ### Commits

@​angular-devkit/build-angular (0.1101.2)

Commit Description Notes
inlining fonts behind proxy [Closes #​19401]
correctly handle scripts when using subresource-integrity option [Closes #​19829]

@​schematics/update (0.1101.2)

Commit Description Notes
update line end normalization for CA file read from .npmrc
*** *** ### Special Thanks Alan Agius, Doug Parker, Joey Perrott, minijus ### [`v11.1.1`](https://togithub.com/angular/angular-cli/releases/tag/v11.1.1) [