udsm-dhis2-lab / 90-90-90-cascade-graph-widget

90-90-90 HIV Prevention, Engagement and Care Cascade Graph Widget(i.e Treatment target graph to help end the AIDS epidemic)
GNU Lesser General Public License v3.0
0 stars 0 forks source link

An in-range update of core-js is breaking the build 🚨 #178

Open greenkeeper[bot] opened 4 years ago

greenkeeper[bot] commented 4 years ago

The dependency core-js was updated from 3.4.3 to 3.4.4.

🚨 View failing branch.

This version is covered by your current version range and after updating it in your project the build failed.

core-js is a direct dependency of this project, and it is very likely causing it to break. If other packages depend on yours, this update is probably also breaking those in turn.

Status Details - βœ… **ci/circleci: build:** Your tests passed on CircleCI! ([Details](https://circleci.com/gh/hisptz/90-90-90-cascade-graph-widget/221?utm_campaign=vcs-integration-link&utm_medium=referral&utm_source=github-build-link)). - βœ… **continuous-integration/travis-ci/push:** The Travis CI build passed ([Details](https://travis-ci.org/hisptz/90-90-90-cascade-graph-widget/builds/617585371?utm_source=github_status&utm_medium=notification)). - ❌ **WhiteSource Security Check:** The Security Check found 6 vulnerabilities.
| Severity | CVSS Score |CVE | GitHub Issue | | ------------- |-------------|-----|------| | Medium | 6.1 | [CVE-2012-6708](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-6708 "Go to CVE Details") | [#8](https://github.com/hisptz/90-90-90-cascade-graph-widget/issues/8 "Go to GitHub Issue") | Medium | 6.1 | [CVE-2019-11358](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-11358 "Go to CVE Details") | [#5](https://github.com/hisptz/90-90-90-cascade-graph-widget/issues/5 "Go to GitHub Issue") | Medium | 6.1 | [CVE-2015-9251](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-9251 "Go to CVE Details") | [#4](https://github.com/hisptz/90-90-90-cascade-graph-widget/issues/4 "Go to GitHub Issue") | Medium | 5.0 | [WS-2019-0043](https://hackerone.com/reports/390929 "Go to CVE Details") | [#2](https://github.com/hisptz/90-90-90-cascade-graph-widget/issues/2 "Go to GitHub Issue") | Medium | 4.3 | [CVE-2011-4969](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-4969 "Go to CVE Details") | [#7](https://github.com/hisptz/90-90-90-cascade-graph-widget/issues/7 "Go to GitHub Issue") | Medium | 4.3 | [WS-2016-0090](https://github.com/jquery/jquery/commit/b078a62013782c7424a4a61a240c23c4c0b42614 "Go to CVE Details") | [#6](https://github.com/hisptz/90-90-90-cascade-graph-widget/issues/6 "Go to GitHub Issue")
Scan token: 3d76372ba2714cc9bceaffd10ab85b68 - βœ… **Travis CI - Branch:** The build **passed**.

Release Notes for 3.4.4 - 2019.11.27
  • Added feature detection for Safari non-generic Promise#finally bug (critical for core-js-pure)
  • Fixed missed esnext.string.code-points in core-js/features/string entry point
  • Updated Iterator proposal feature detection for the case of non-standard Iterator in FF44-
FAQ and help There is a collection of [frequently asked questions](https://greenkeeper.io/faq.html). If those don’t help, you can always [ask the humans behind Greenkeeper](https://github.com/greenkeeperio/greenkeeper/issues/new).

Your Greenkeeper Bot :palm_tree:

issue-label-bot[bot] commented 4 years ago

Issue-Label Bot is automatically applying the label bug to this issue, with a confidence of 0.96. Please mark this comment with :thumbsup: or :thumbsdown: to give our bot feedback!

Links: app homepage, dashboard and code for this bot.

greenkeeper[bot] commented 4 years ago

After pinning to 3.4.3 your tests are still failing. The reported issue might not affect your project. These imprecisions are caused by inconsistent test results.

greenkeeper[bot] commented 4 years ago

Your tests are still failing with this version. Compare changes

Release Notes for 3.4.6 - 2019.12.03
  • Improved iOS compat data - added missed mapping iOS 12.2 -> Safari 12.1, added bug fixes from patch releases
  • Added Safari 13.1 compat data
  • Added missed in core-js-compat helpers ie_mob normalization
  • Normalize the result of getModulesListForTargetVersion core-js-compat helper
  • Improved CI detection in the postinstall script, #707
greenkeeper[bot] commented 4 years ago

Your tests are passing again with this update. Explicitly upgrade to this version πŸš€

Release Notes for 3.6.1 - 2019.12.25
  • Fixed a bug related Symbol with multiple copies of core-js (for 3.4.2-3.6.0), #736
  • Refactored some tools
greenkeeper[bot] commented 4 years ago

Your tests are still failing with this version. Compare changes