[Snyk] Upgrade: axios, iso-639-1, react-router-dom, styled-components, swiper, validator #47
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Snyk has created this PR to upgrade multiple dependencies.
👯♂ The following dependencies are linked and will therefore be updated together.ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
axios
from 1.7.2 to 1.7.7 | 5 versions ahead of your current version | 21 days ago
on 2024-08-31
iso-639-1
from 3.1.2 to 3.1.3 | 1 version ahead of your current version | a month ago
on 2024-08-27
react-router-dom
from 6.22.3 to 6.26.1 | 19 versions ahead of your current version | a month ago
on 2024-08-15
styled-components
from 6.1.8 to 6.1.13 | 8 versions ahead of your current version | 23 days ago
on 2024-08-30
swiper
from 11.1.3 to 11.1.11 | 8 versions ahead of your current version | 25 days ago
on 2024-08-28
validator
from 13.11.0 to 13.12.0 | 1 version ahead of your current version | 4 months ago
on 2024-05-09
Issues fixed by the recommended upgrade:
SNYK-JS-AXIOS-7361793
Release notes
Package name: axios
-
1.7.7 - 2024-08-31
- fetch: fix stream handling in Safari by fallback to using a stream reader instead of an async iterator; (#6584) (d198085)
- http: fixed support for IPv6 literal strings in url (#5731) (364993f)
Rishi556
Dmitriy Mozgovoy
-
1.7.6 - 2024-08-30
- fetch: fix content length calculation for FormData payload; (#6524) (085f568)
- fetch: optimize signals composing logic; (#6582) (df9889b)
Dmitriy Mozgovoy
Jacques Germishuys
kuroino721
-
1.7.5 - 2024-08-23
- adapter: fix undefined reference to hasBrowserEnv (#6572) (7004707)
- core: add the missed implementation of AxiosError#status property; (#6573) (6700a8a)
- core: fix
- fetch: fix credentials handling in Cloudflare workers (#6533) (550d885)
Dmitriy Mozgovoy
Antonin Bas
Hans Otto Wirtz
-
1.7.4 - 2024-08-13
- sec: CVE-2024-39338 (#6539) (#6543) (6b6b605)
- sec: disregard protocol-relative URL to remediate SSRF (#6539) (07a661a)
Lev Pachmanov
Đỗ Trọng Hải
-
1.7.3 - 2024-08-01
- adapter: fix progress event emitting; (#6518) (e3c76fc)
- fetch: fix withCredentials request config (#6505) (85d4d0e)
- xhr: return original config on errors from XHR adapter (#6515) (8966ee7)
Dmitriy Mozgovoy
Valerii Sidorenko
prianYu
-
1.7.2 - 2024-05-21
- fetch: enhance fetch API detection; (#6413) (4f79aef)
Dmitriy Mozgovoy
from axios GitHub release notesRelease notes:
Bug Fixes
Contributors to this release
Release notes:
Bug Fixes
Contributors to this release
Release notes:
Bug Fixes
ReferenceError: navigator is not definedfor custom environments; (#6567) (fed1a4b)Contributors to this release
Release notes:
Bug Fixes
Contributors to this release
Release notes:
Bug Fixes
Contributors to this release
Release notes:
Bug Fixes
Contributors to this release
Package name: iso-639-1
-
3.1.3 - 2024-08-27
-
3.1.2 - 2024-02-20
from iso-639-1 GitHub release notes3.1.3
Package name: react-router-dom
-
6.26.1 - 2024-08-15
-
6.26.1-pre.0 - 2024-08-14
-
6.26.0 - 2024-08-01
-
6.26.0-pre.1 - 2024-07-31
-
6.26.0-pre.0 - 2024-07-30
-
6.25.1 - 2024-07-17
-
6.25.1-pre.0 - 2024-07-17
-
6.25.0 - 2024-07-16
-
6.25.0-pre.0 - 2024-07-12
-
6.24.1 - 2024-07-03
-
6.24.1-pre.0 - 2024-07-01
-
6.24.0 - 2024-06-24
-
6.24.0-pre.0 - 2024-06-14
-
6.23.1 - 2024-05-10
-
6.23.1-pre.1 - 2024-05-09
-
6.23.1-pre.0 - 2024-04-30
-
6.23.0 - 2024-04-23
-
6.23.0-pre.1 - 2024-03-29
-
6.23.0-pre.0 - 2024-03-27
-
6.22.3 - 2024-03-07
from react-router-dom GitHub release notes[email protected]
[email protected]
Package name: styled-components
-
6.1.13 - 2024-08-30
- Replace deprecated global JSX namespace by @ Janpot in #4333
- Allow Passing Shadow Root as Sheet Target by @ joealden in #4309
- @ Janpot made their first contribution in #4333
- @ joealden made their first contribution in #4309
-
6.1.12 - 2024-07-17
- Export rehydrate from StyleSheet by @ hamidrezahanafi in #4328
- Prevent ServerStyleSheet generating empty style tags/elements by @ hamidrezahanafi in #4327
- @ hamidrezahanafi made their first contribution in #4328
-
6.1.11 - 2024-05-09
- feat(types): add types to support third-party wrapping scenarios by @ quantizor in #4307
-
6.1.10 - 2024-05-07
- Update dependencies by @ quantizor in #4297
- Export IStyledComponentBase interface by @ akkadaya in #4300
- revert type changes introduced in #4288 due to a large number of bug reports
- @ akkadaya made their first contribution in #4300
-
6.1.10-test.1 - 2024-05-08
-
6.1.10-test.0 - 2024-05-08
-
6.1.9 - 2024-04-30
- fix: improve types for .attrs() by @ uhyo in #4288
- fix(types): allow using a styled component as a key inside object styles in the web runtime by @ iiroj in #4249
- Upgrading babel dependencies to latest to fix CVE-2023-45133 by @ JesseObrien in #4214
- @ uhyo made their first contribution in #4288
- @ iiroj made their first contribution in #4249
- @ JesseObrien made their first contribution in #4214
-
6.1.9-react-18-streaming-prototype - 2024-04-30
-
6.1.8 - 2024-01-08
from styled-components GitHub release notesWhat's Changed
New Contributors
Full Changelog: v6.1.12...v6.1.13
What's Changed
New Contributors
Full Changelog: v6.1.11...v6.1.12
What's Changed
Full Changelog: v6.1.10...v6.1.11
What's Changed
New Contributors
Full Changelog: v6.1.9...v6.1.10
What's Changed
New Contributors
Full Changelog: v6.1.8...v6.1.9
Revert adding
peerDependenciesfrom v6.1.7; apparently some package managers have differing behaviors aroundpeerDependenciesMeta[package].optionalwhich is causing issues. Will revisit at a later date if possible.Full Changelog: v6.1.7...v6.1.8
Package name: swiper
-
11.1.11 - 2024-08-28
- centeredSlides with centeredSlidesBounds don't work correct when slidesPerView: 'auto' and width of the swiper-container bigger then width of slides (#7696) (c11172a)
- element: fix element styles to have correct order override (f26036f), closes #7704
- virtual: fix bypassing initial translate check if Virtual is enabled (df957bb), closes #7699
-
11.1.10 - 2024-08-21
- pagination: fixed swiper Infinite loop scroll jumping (#7690)
- zoom: fix zoomIn after currentScale is set to 1 (#7663) (94173da)
-
11.1.9 - 2024-07-31
-
11.1.8 - 2024-07-26
- core: fixed typo in utils/elementIsChildOf (#7649) (575e715)
-
11.1.7 - 2024-07-24
- core: fix element child detection (7ec975c), closes #7636
-
11.1.6 - 2024-07-23
- controller: fix 2 way control in element (6eec16b), closes #7628
- a11y: added new prop for a11y module -
- element: added support for using slots as swiper wrappers (#7624) (e374e06)
-
11.1.5 - 2024-07-15
- element: fix observer to watch for slides (7cffede), closes #7598
- improved 3d rotate fix in Safari (cb83879), closes #7532
- update navigation.scss to remove SASS Deprecation Warning (#7612) (a3e0bf8)
- vue: add breakpointsBase type (4adb85b), closes #7607
-
11.1.4 - 2024-05-30
- a11y: fix slide on focus when loop mode is enabled (fc8ed1a), closes #7540
- core: check for swiper.el in destroy queue (39a3e53), closes #7530
- navigation: prevent hide on click when clicking on navigation buttons (c0f7bb6), closes #7559
- vue: avoid rendering same slide vnode twice for small amount of slides in loop + virtual mode (#7556) (5737f03)
- zoom: fix issue when slide change possible during zoom out (f67308c)
-
11.1.3 - 2024-05-13
- fix types import (57923db), closes #7529
from swiper GitHub release notesBug Fixes
Bug Fixes
11.1.9
Bug Fixes
Bug Fixes
Bug Fixes
Features
scrollOnFocus(#7632) (f4f7da0)Bug Fixes
Bug Fixes
Bug Fixes
Package name: validator
What's Changed
New Features / Validators
isAbaRouting@ songyuewFixes, New Locales and Enhancements
isLicensePlateadd Pakistanien-PKlocale @ anasshakilisPortfix invalid leading zeros @ anasshakilisTaxIDadded Argentinaes-ARlocale @ estefrareisDatetimezone offset fix @ tomaspanekisPassportNumberaddedZAlocale @ GMorris-professionalisMobilePhone:en-MWlocale @ SimranSiddiquiam-AMlocale @ AlexKrupkoisPostalAddressfixNLlocale @ RobinvanderVlietisISO4217addSLEcurrency @ urgisStrongPasswordfix symbolRegex to include\@ nandavikasisVATfixedKZlocale @ MatthieuLemoineisAlpha,isAlphanumericaddedeolocale @ RobinvanderVlietisIBANadd AlgeriaDZlocale @ thibault-lrisVATimproveAUlocale @ matthewberrymanisUUIDadd support for v7 @ rusconisTaxIDadd Ukraineuk-UAlocale @ arttigerisDatedisallow hiphen before year @ Sumit-tech-joshiNew Contributors
Full Changelog: 13.11.0...13.12.0
New Features / Validators
isFreightContainerID: for shipping containers IDs