Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Snyk] Upgrade antd from 4.3.0 to 4.21.4 #450

Open
wants to merge 1 commit into
base: canary
Choose a base branch
from

Conversation

snyk-bot
Copy link

Snyk has created this PR to upgrade antd from 4.3.0 to 4.21.4.

merge advice
ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 128 versions ahead of your current version.
  • The recommended version was released 21 days ago, on 2022-06-27.

The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Regular Expression Denial of Service (ReDoS)
SNYK-JS-ASYNCVALIDATOR-2311201
586/1000
Why? Proof of Concept exploit, Has a fix available, CVSS 5.3
Proof of Concept

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: antd
  • 4.21.4 - 2022-06-27
    • Table
      • 🐞 Fix Table expand icon not align center. #36215
      • 💄 Fix nested Table margin style. #36209
      • 🐞 Fix Table filter dropdown with multiple subMenu may not closed. #36132
      • 🐞 Table reset the last selection key when deselect or bulk operations. #34705 @ Dunqing
    • 🐞 Fix Popover arrow color with custom color prop. #36241 @ MadCcc
    • 🐞 Fix Upload listType="picture-card" select button not being hidden when children is empty. #36196
    • 🐞 Fix Menu deprecated warning when item={undefined}. #36190
    • 💄 Fix Button loading icon margin style lost. #36168
    • 🐞 Fix Dropdown using Menu with group item can not close by click. #36148
    • 💄 Enlarge dragable area for Slider handler. #36018 @ slotDumpling
    • 🐞 Fix: repeat a css class in readOnly, which has been declared in rc-input-number. #36120 @ RainyLiao
    • 💄 Fix Skeleton active background color in dark theme. #36116
    • TypeScript

    • Table
      • 🐞 修复 Table 展开图标未居中的问题。#36215
      • 💄 修复 Table 内嵌 Table 时的边距问题。#36209
      • 🐞 Table 取消选择或批量操作时重置上一次选择的 key。#34705 @ Dunqing
      • 🐞 修复 Table 过滤列表在某些场景下多级展开无法关闭的问题。#36132
    • 🐞 修复 Upload listType="picture-card" 当 children 为空时上传文件按钮没有隐藏的问题。#36196
    • 🐞 修复 Popover 自定义 color 时箭头颜色问题。#36241 @ MadCcc
    • 🐞 修复 Menu item={undefined} 时会有废弃警告的问题。#36190
    • 💄 修复 Button loading 图标的间距丢失的问题。#36168
    • 🐞 修复 Dropdown 中 Menu 分组下的 Item 点击不会关闭的问题。#36148
    • 💄 优化 Slider 拖拽手柄的可交互区域。#36018 @ slotDumpling
    • 🐞 修复重复添加 readOnly 的 css 类名,它已在 rc-input-number 中被声明了。#36120 @ RainyLiao
    • 💄 修复 Skeleton 在 active 时的背景色样式。#36116
    • TypeScript
  • 4.21.3 - 2022-06-17
    • 🐞 Fix Table customize filterDropdown with Menu should not break default selectable. #36098
    • 🐞 Fix Input.Textarea cannot focus after click clear icon in controlled mode. #34728 @ Pulset
    • TypeScript

    • 🐞 修复 Table 自定义 filterDropdown 中使用 Menu 会被修改默认 selectable 的问题。#36098
    • 🐞 修复 Input.Textarea 受控时点击清除图标后无法聚焦的问题。#34728 @ Pulset
    • TypeScript
  • 4.21.2 - 2022-06-14
    • 🐞 Fix incorrect Form status with noStyle. #36054

    • 🐞 修复 Form 有 noStyle 属性时校验状态错误的问题。#36054
  • 4.21.1 - 2022-06-13
    • 🐞 Fixed Image the getContainer property not reading from ConfigProvider. #36002 @ robothot
    • 🐞 Fixed Button issue #35952 where the disabled attribute does not take effect with href. #35975 @ MuxinFeng
    • 🐞 Fix less color palette algorithm according to @ ant-design/colors. #35954 @ christian-lechner
    • 🐞 Fix Upload image flickering. #35943
    • 💄 Remove styles from Form such as status for children of Modal and Drawer. #35849
    • TypeScript
      • 🤖 Fix type definition for autoFocus in Dropdown. #35990 @ robothot
      • 🤖 Fix type definition for MenuItemGroupType in Menu. #35790 @ MasaoBlue
      • 🤖 Fix Carousel type definition in React 18. #35959
    • 🌐 Localization

    • 🐞 修复 Image getContainer 属性没有从 ConfigProvider 中读取的问题。#36002 @ robothot
    • 🐞 修复 Button 有 hrefdisabled 属性不生效的问题。#35952#35975 @ MuxinFeng
    • 🐞 修复 Upload 组件动画闪烁的问题。#35943
    • 🐞 修复 less 色彩算法,使其和 @ ant-design/colors 保持一致。#35954 @ christian-lechner
    • 💄 Form.Item 中的 Modal 或 Drawer 组件包含的控件去除 status 等受 Form 影响的样式。#35849
    • TypeScript
      • 🤖 修复 Dropdown autoFocus 属性定义。#35990 @ robothot
      • 🤖 修复 Menu 中 MenuItemGroupType 的类型定义。#35790 @ MasaoBlue
      • 🤖 修复 Carousel 在 React 18 下的 TS 定义问题。#35959
    • 🌐 国际化
  • 4.21.0 - 2022-06-06
    Read more
  • 4.20.7 - 2022-05-30
  • 4.20.6 - 2022-05-22
  • 4.20.5 - 2022-05-15
  • 4.20.4 - 2022-05-11
  • 4.20.3 - 2022-05-09
  • 4.20.2 - 2022-04-30
  • 4.20.1 - 2022-04-26
  • 4.20.0 - 2022-04-24
  • 4.20.0-alpha.1 - 2022-04-18
  • 4.20.0-alpha.0 - 2022-04-12
  • 4.19.5 - 2022-04-02
  • 4.19.5-alpha.0 - 2022-03-28
  • 4.19.4 - 2022-03-27
  • 4.19.3 - 2022-03-21
  • 4.19.2 - 2022-03-13
  • 4.19.1 - 2022-03-08
  • 4.19.1-alpha.0 - 2022-03-08
  • 4.19.0 - 2022-03-08
  • 4.18.9 - 2022-02-28
  • 4.18.8 - 2022-02-21
  • 4.18.7 - 2022-02-14
  • 4.18.6 - 2022-02-08
  • 4.18.5 - 2022-01-24
  • 4.18.4 - 2022-01-18
  • 4.18.3 - 2022-01-10
  • 4.18.2 - 2021-12-30
  • 4.18.1 - 2021-12-29
  • 4.18.0 - 2021-12-27
  • 4.17.4 - 2021-12-20
  • 4.17.3 - 2021-12-08
  • 4.17.2 - 2021-11-26
  • 4.17.1 - 2021-11-22
  • 4.17.1-alpha.1 - 2021-11-17
  • 4.17.1-alpha.0 - 2021-11-16
  • 4.17.0 - 2021-11-15
  • 4.17.0-alpha.10 - 2021-11-08
  • 4.17.0-alpha.9 - 2021-10-31
  • 4.17.0-alpha.8 - 2021-10-25
  • 4.17.0-alpha.7 - 2021-10-18
  • 4.17.0-alpha.6 - 2021-10-11
  • 4.17.0-alpha.5 - 2021-09-30
  • 4.17.0-alpha.4 - 2021-09-25
  • 4.17.0-alpha.3 - 2021-09-14
  • 4.17.0-alpha.2 - 2021-09-07
  • 4.17.0-alpha.1 - 2021-09-06
  • 4.17.0-alpha.0 - 2021-09-01
  • 4.16.13 - 2021-08-23
  • 4.16.12 - 2021-08-16
  • 4.16.11 - 2021-08-08
  • 4.16.10 - 2021-08-02
  • 4.16.9 - 2021-07-27
  • 4.16.8 - 2021-07-19
  • 4.16.7 - 2021-07-12
  • 4.16.6 - 2021-06-29
  • 4.16.5 - 2021-06-23
  • 4.16.3 - 2021-06-15
  • 4.16.2 - 2021-06-07
  • 4.16.1 - 2021-05-31
  • 4.16.0 - 2021-05-25
  • 4.16.0-alpha.2 - 2021-05-08
  • 4.16.0-alpha.1 - 2021-05-08
  • 4.16.0-alpha.0 - 2021-05-07
  • 4.15.6 - 2021-05-18
  • 4.15.5 - 2021-05-10
  • 4.15.4 - 2021-04-30
  • 4.15.3 - 2021-04-26
  • 4.15.3-alpha.0 - 2021-04-21
  • 4.15.2 - 2021-04-19
  • 4.15.1 - 2021-04-10
  • 4.15.0 - 2021-03-29
  • 4.14.1 - 2021-03-22
  • 4.14.0 - 2021-03-14
  • 4.13.1 - 2021-03-06
  • 4.13.0 - 2021-02-28
  • 4.12.3 - 2021-02-10
  • 4.12.2 - 2021-02-04
  • 4.12.1 - 2021-02-03
  • 4.12.0 - 2021-02-02
  • 4.11.3 - 2021-02-02
  • 4.11.2 - 2021-01-26
  • 4.11.1 - 2021-01-24
  • 4.11.0 - 2021-01-24
  • 4.10.3 - 2021-01-18
  • 4.10.2 - 2021-01-11
  • 4.10.1 - 2021-01-10
  • 4.10.0 - 2021-01-04
  • 4.9.4 - 2020-12-16
  • 4.9.3 - 2020-12-14
  • 4.9.2 - 2020-12-07
  • 4.9.1 - 2020-12-01
  • 4.9.0 - 2020-11-30
  • 4.8.6 - 2020-11-27
  • 4.8.5 - 2020-11-22
  • 4.8.4 - 2020-11-16
  • 4.8.3 - 2020-11-16
  • 4.8.2 - 2020-11-09
  • 4.8.1 - 2020-11-09
  • 4.8.0 - 2020-11-02
  • 4.7.3 - 2020-10-24
  • 4.7.2 - 2020-10-19
  • 4.7.1 - 2020-10-19
  • 4.7.0 - 2020-10-10
  • 4.6.6 - 2020-09-27
  • 4.6.5 - 2020-09-20
  • 4.6.4 - 2020-09-13
  • 4.6.3 - 2020-09-07
  • 4.6.2 - 2020-08-31
  • 4.6.1 - 2020-08-24
  • 4.6.0 - 2020-08-23
  • 4.5.4 - 2020-08-12
  • 4.5.3 - 2020-08-09
  • 4.5.2 - 2020-08-02
  • 4.5.1 - 2020-07-28
  • 4.5.0 - 2020-07-27
  • 4.4.3 - 2020-07-20
  • 4.4.2 - 2020-07-11
  • 4.4.1 - 2020-07-06
  • 4.4.0 - 2020-06-29
  • 4.3.5 - 2020-06-21
  • 4.3.4 - 2020-06-14
  • 4.3.3 - 2020-06-07
  • 4.3.2 - 2020-06-06
  • 4.3.1 - 2020-06-02
  • 4.3.0 - 2020-05-31
from antd GitHub release notes
Commit messages
Package name: antd

Compare


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant