Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

fix: bump jasmine-reporters to 2.5.0 #3180

Merged
merged 1 commit into from
Dec 30, 2021
Merged

fix: bump jasmine-reporters to 2.5.0 #3180

merged 1 commit into from
Dec 30, 2021

Conversation

harsha509
Copy link
Contributor

PR Checklist

Please check if your PR fulfills the following requirements:

  • Tests for the changes have been added (for bug fixes / features)
  • Docs have been added / updated (for bug fixes / features)

PR Type

What kind of change does this PR introduce?

  • Bugfix
  • Feature (please, look at the "Scope of the project" section in the README.md file)
  • Code style update (formatting, local variables)
  • Refactoring (no functional changes, no api changes)
  • Build related changes
  • CI related changes
  • Documentation content changes
  • Other... Please describe:

What is the current behavior?

@bazel/jasmine uses jasmine-reporters:~2.4.0 which has a vulnerability

Issue Number: N/A

What is the new behavior?

This PR updates jasmine-reporters:~2.5.0 which fixes the vulnerability path related to xmldom

Does this PR introduce a breaking change?

  • Yes
  • No

Other information

@alexeagle alexeagle merged commit 5ac6852 into bazelbuild:stable Dec 30, 2021
alexeagle pushed a commit that referenced this pull request Jan 7, 2022
alexeagle pushed a commit that referenced this pull request Jan 8, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants