Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump all dependencies to latest #29

Open
GZGavinZhao opened this issue Dec 3, 2021 · 1 comment · May be fixed by #31
Open

Bump all dependencies to latest #29

GZGavinZhao opened this issue Dec 3, 2021 · 1 comment · May be fixed by #31
Labels
dependencies Pull requests that update a dependency file infra Related to site infrastructure (building, automation, etc.)

Comments

@GZGavinZhao
Copy link
Contributor

All dependencies are very old and some have security issues pointed out by Dependabot.

The npm dependencies are not urgent as we don't actually use them in the building process (very little even if we do use them). The ruby dependencies (gems) should be updated first. Most of the blocking issues pointed out in the Gemfile have already been resolved.

This is medium priority, but since I'm not too familiar with how gem works and dependencies are likely going to break the current site, this might take some time.

@GZGavinZhao GZGavinZhao added help wanted Extra attention is needed infra Related to site infrastructure (building, automation, etc.) dependencies Pull requests that update a dependency file labels Dec 3, 2021
This was referenced Dec 3, 2021
@GZGavinZhao
Copy link
Contributor Author

Gem has been finished, only need to resolve npm dependencies, specifically with the new behavior of diff2html-cli.

@GZGavinZhao GZGavinZhao linked a pull request Jan 3, 2022 that will close this issue
@GZGavinZhao GZGavinZhao removed the help wanted Extra attention is needed label Nov 19, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file infra Related to site infrastructure (building, automation, etc.)
Projects
None yet
1 participant