Skip to content
This repository has been archived by the owner on Aug 29, 2023. It is now read-only.

build: update hosted-git-info to fix security advisories #12111

Merged
merged 1 commit into from
Jun 21, 2021

Conversation

Splaktar
Copy link
Member

@Splaktar Splaktar commented Jun 21, 2021

AngularJS Material is in LTS mode

We are no longer accepting changes that are not critical bug fixes into this project.
See Long Term Support for more detail.

PR Checklist

Please check your PR fulfills the following requirements:

  • Does this PR fix a regression since 1.2.0, a security flaw, or a problem caused by a new browser version?
  • The commit message follows our guidelines
  • Tests for the changes have been added or this is not a bug fix / enhancement
  • Docs have been added, updated, or were not required

PR Type

What kind of change does this PR introduce?

[ ] Bugfix
[ ] Enhancement
[ ] Documentation content changes
[ ] Code style update (formatting, local variables)
[ ] Refactoring (no functional changes, no api changes)
[x] Build related changes
[ ] CI related changes
[ ] Infrastructure changes
[ ] Other... Please describe:

What is the current behavior?

  • from: found 31 vulnerabilities (7 low, 8 moderate, 16 high)

Closes #12094.

What is the new behavior?

  • to: found 18 vulnerabilities (5 low, 1 moderate, 12 high)

Does this PR introduce a breaking change?

[ ] Yes
[x] No

Other information

- from: found 31 vulnerabilities (7 low, 8 moderate, 16 high)
- to: found 18 vulnerabilities (5 low, 1 moderate, 12 high)

Closes #12097.
@google-cla google-cla bot added the cla: yes PR author has signed Google's CLA: https://opensource.google.com/docs/cla/ label Jun 21, 2021
@Splaktar Splaktar self-assigned this Jun 21, 2021
@Splaktar Splaktar added dependencies Pull requests that update a dependency file type: build P2: required Issues that must be fixed. labels Jun 21, 2021
@Splaktar Splaktar added this to the 1.2.3 milestone Jun 21, 2021
@Splaktar Splaktar requested a review from mmalerba June 21, 2021 18:55
@Splaktar Splaktar added the pr: merge ready This PR is ready for a caretaker to review label Jun 21, 2021
Copy link
Contributor

@mmalerba mmalerba left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@Splaktar Splaktar added the pr: lgtm This PR has been approved by the reviewer label Jun 21, 2021
@Splaktar Splaktar merged commit 901982b into master Jun 21, 2021
@Splaktar Splaktar deleted the fix-npm-audits branch June 21, 2021 18:59
Splaktar added a commit to DevIntent/material that referenced this pull request Nov 18, 2021
- Use a resolution override for `marked` to be compatible with latest dgeni-packages
- before: found 64 vulnerabilities (1 low, 43 moderate, 17 high, 3 critical)
- after: found 51 vulnerabilities (1 low, 30 moderate, 17 high, 3 critical)
- fix some npm audit issues

Relates to angular/angular.js#17163. Relates to angular#11881. Relates to angular#12111.
@Splaktar Splaktar mentioned this pull request Nov 18, 2021
4 tasks
Splaktar added a commit that referenced this pull request Nov 19, 2021
- Use a resolution override for `marked` to be compatible with latest dgeni-packages
- before: found 64 vulnerabilities (1 low, 43 moderate, 17 high, 3 critical)
- after: found 51 vulnerabilities (1 low, 30 moderate, 17 high, 3 critical)
- fix some npm audit issues

Relates to angular/angular.js#17163. Relates to #11881. Relates to #12111.
Splaktar added a commit that referenced this pull request Nov 22, 2021
- Use a resolution override for `marked` to be compatible with latest dgeni-packages
- before: found 64 vulnerabilities (1 low, 43 moderate, 17 high, 3 critical)
- after: found 51 vulnerabilities (1 low, 30 moderate, 17 high, 3 critical)
- fix some npm audit issues

Relates to angular/angular.js#17163. Relates to #11881. Relates to #12111.
superheri pushed a commit to superheri/material that referenced this pull request Nov 30, 2021
- Use a resolution override for `marked` to be compatible with latest dgeni-packages
- before: found 64 vulnerabilities (1 low, 43 moderate, 17 high, 3 critical)
- after: found 51 vulnerabilities (1 low, 30 moderate, 17 high, 3 critical)
- fix some npm audit issues

Relates to angular/angular.js#17163. Relates to angular#11881. Relates to angular#12111.
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
cla: yes PR author has signed Google's CLA: https://opensource.google.com/docs/cla/ dependencies Pull requests that update a dependency file P2: required Issues that must be fixed. pr: lgtm This PR has been approved by the reviewer pr: merge ready This PR is ready for a caretaker to review type: build
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants