Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update dependency jquery to v3.5.0 #22

Open
wants to merge 1 commit into
base: dev
Choose a base branch
from

Conversation

mend-for-github-com[bot]
Copy link

@mend-for-github-com mend-for-github-com bot commented Nov 30, 2022

This PR contains the following updates:

Package Type Update Change
jquery (source) dependencies minor 3.4.1 -> 3.5.0

By merging this PR, the below vulnerabilities will be automatically resolved:

Severity CVSS Score CVE
Medium Medium 6.1 CVE-2020-11022
Medium Medium 6.1 CVE-2020-11023

Release Notes

jquery/jquery

v3.5.0

Compare Source

See the blog post:
https://blog.jquery.com/2020/04/10/jquery-3-5-0-released/
and the upgrade guide:
https://jquery.com/upgrade-guide/3.5/

NOTE: Despite being a minor release, this update includes a breaking change that we had to make to fix a security issue ( CVE-2020-11022). Please follow the blog post & the upgrade guide for more details.


  • If you want to rebase/retry this PR, click this checkbox.

@mend-for-github-com mend-for-github-com bot added the security fix Security fix generated by Mend label Nov 30, 2022
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/jquery-3.x-lockfile branch 2 times, most recently from de55176 to 9f544aa Compare December 3, 2022 01:36
@mend-for-github-com mend-for-github-com bot changed the title Update dependency jquery to v3.5.0 Update dependency jquery to v3.5.0 - autoclosed Dec 4, 2022
@mend-for-github-com mend-for-github-com bot deleted the whitesource-remediate/jquery-3.x-lockfile branch December 4, 2022 08:00
@mend-for-github-com mend-for-github-com bot changed the title Update dependency jquery to v3.5.0 - autoclosed Update dependency jquery to v3.5.0 Dec 4, 2022
@mend-for-github-com mend-for-github-com bot reopened this Dec 4, 2022
@mend-for-github-com mend-for-github-com bot restored the whitesource-remediate/jquery-3.x-lockfile branch December 4, 2022 08:21
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/jquery-3.x-lockfile branch 4 times, most recently from 626b290 to 6c607db Compare December 11, 2022 04:29
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/jquery-3.x-lockfile branch 2 times, most recently from 4cc7027 to 8c992e4 Compare December 15, 2022 12:41
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/jquery-3.x-lockfile branch 2 times, most recently from 11a9ffc to 59e3b53 Compare December 28, 2022 00:34
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/jquery-3.x-lockfile branch from 59e3b53 to e438b05 Compare December 28, 2022 17:24
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
security fix Security fix generated by Mend
Projects
None yet
0 participants