Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Updating JQuery to 3.7.1 #1833

Closed
wants to merge 4 commits into from
Closed

Conversation

ryanrath
Copy link
Contributor

Description

This pull request updates JQuery to version 3.7.1 to address a security vulnerability that was reported. The changes made here mirror those made in: #1551 .

Motivation and Context

Reducing our usage of libraries with known security vulnerabilities is generally a good thing.

Tests performed

Checklist:

  • The pull request description is suitable for a Changelog entry
  • The milestone is set correctly on the pull request
  • The appropriate labels have been added to the pull request

@ryanrath ryanrath added this to the 11.0.0 milestone Apr 30, 2024
This pull request updates JQuery to version 3.7.1 to address a security
vulnerability that was reported. The changes made here mirror those made
in: ubccr#1551 .
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Shouldn't these changes just be updating jquery/jquery-min-file? There is a lot of other packages being updated.

Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This file has been removed with the Plotly JS conversion

So for some reason the 1.14.0 version of mongodb/mongodb has completely
disappeared. I've down-versioned to 1.13.0 until we can update the version of
`ext-mongodb` on the CI image.
@ryanrath
Copy link
Contributor Author

I'm going to be closing this PR in favor of: #1756

@ryanrath ryanrath closed this May 10, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants