Skip to content

fix(security): bumping jspdf to 4.2.1#17066

Merged
damyanpetev merged 1 commit into21.1.xfrom
sec-update-21-1-x
Mar 19, 2026
Merged

fix(security): bumping jspdf to 4.2.1#17066
damyanpetev merged 1 commit into21.1.xfrom
sec-update-21-1-x

Conversation

@kdinev
Copy link
Member

@kdinev kdinev commented Mar 19, 2026

Closes #

Additional information (check all that apply):

  • Bug fix
  • New functionality
  • Documentation
  • Demos
  • CI/CD

Checklist:

  • All relevant tags have been applied to this PR
  • This PR includes unit tests covering all the new code (test guidelines)
  • This PR includes API docs for newly added methods/properties (api docs guidelines)
  • This PR includes feature/README.MD updates for the feature docs
  • This PR includes general feature table updates in the root README.MD
  • This PR includes CHANGELOG.MD updates for newly added functionality
  • This PR contains breaking changes
  • This PR includes ng update migrations for the breaking changes (migrations guidelines)
  • This PR includes behavioral changes and the feature specification has been updated with them

Copilot AI review requested due to automatic review settings March 19, 2026 17:02
@kdinev kdinev requested a review from damyanpetev March 19, 2026 17:02
Copy link
Contributor

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Updates the jspdf dependency version across the workspace and library package, and documents the change as a security fix in the project changelog.

Changes:

  • Bump jspdf from ^4.0.0 to ^4.2.1 in the root workspace dependencies.
  • Bump jspdf from ^4.0.0 to ^4.2.1 in projects/igniteui-angular package dependencies.
  • Add a 21.1.3 changelog entry describing the dependency bump as a security fix.

Reviewed changes

Copilot reviewed 3 out of 4 changed files in this pull request and generated no comments.

File Description
projects/igniteui-angular/package.json Raises the minimum jspdf version used by the published library package.
package.json Aligns the workspace dependency on jspdf with the security bump.
CHANGELOG.md Records the jspdf update under a new 21.1.3 security fixes section.

You can also share your feedback on Copilot code review. Take the survey.

@damyanpetev damyanpetev merged commit b914e2f into 21.1.x Mar 19, 2026
9 checks passed
@damyanpetev damyanpetev deleted the sec-update-21-1-x branch March 19, 2026 17:24
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants