Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

fix: upgrade dependencies to resolve dependabot vulnerability alerts #567

Merged
merged 2 commits into from
Dec 16, 2022

Conversation

falconandy
Copy link
Contributor

@falconandy falconandy commented Dec 16, 2022

Summary

Dependencies in all packages and examples are upgraded to last versions to resolve most (123 of 130) dependabot alerts.

Remaining 7 alerts (4 High, 2 Moderate, 1 Low):

image
image
image
image
image
image
image

The updated npm package was tested on Ubuntu 22.04, Firefox 108, Node 18.

Legacy Node 10/12 are unsupported now.

Checklist

  • Does your PR title have the correct title format?
  • Does your PR have a breaking change?: No?

@qingzhuozhen qingzhuozhen merged commit 9207b46 into main Dec 16, 2022
@qingzhuozhen qingzhuozhen deleted the AMP-65554-resolve-dependabot-alerts branch December 16, 2022 23:17
github-actions bot pushed a commit that referenced this pull request Jan 18, 2023
## [8.21.4](v8.21.3...v8.21.4) (2023-01-18)

### Bug Fixes

* remove events when 200, no need to check response ([#572](#572)) ([5b52d16](5b52d16))
* upgrade dependencies to resolve dependabot vulnerability alerts ([#567](#567)) ([9207b46](9207b46))
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

3 participants