[Snyk] Upgrade react-native from 0.63.3 to 0.70.3 #887
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR was automatically created by Snyk using the credentials of a real user.
Snyk has created this PR to upgrade react-native from 0.63.3 to 0.70.3.
ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
The recommended version fixes:
SNYK-JS-SHELLQUOTE-1766506
Why? Has a fix available, CVSS 8.1
SNYK-JS-REACTNATIVE-1298632
Why? Has a fix available, CVSS 8.1
SNYK-JS-HERMESENGINE-1727253
Why? Has a fix available, CVSS 8.1
SNYK-JS-HERMESENGINE-1309667
Why? Has a fix available, CVSS 8.1
SNYK-JS-WS-1296835
Why? Has a fix available, CVSS 8.1
SNYK-JS-SIMPLEPLIST-2413671
Why? Has a fix available, CVSS 8.1
SNYK-JS-NODEFETCH-674311
Why? Has a fix available, CVSS 8.1
SNYK-JS-NODEFETCH-2342118
Why? Has a fix available, CVSS 8.1
SNYK-JS-HERMESENGINE-629748
Why? Has a fix available, CVSS 8.1
SNYK-JS-HERMESENGINE-629268
Why? Has a fix available, CVSS 8.1
SNYK-JS-HERMESENGINE-608850
Why? Has a fix available, CVSS 8.1
SNYK-JS-HERMESENGINE-2342071
Why? Has a fix available, CVSS 8.1
SNYK-JS-HERMESENGINE-1015406
Why? Has a fix available, CVSS 8.1
(*) Note that the real score may have changed since the PR was raised.
Release notes
Package name: react-native
-
0.70.3 - 2022-10-12
- Stop styles from being reset when detaching Animated.Values in old renderer (2f58e52006 by @ javache)
- Revert "Fix TextInput dropping text when used as uncontrolled component with
- Use NMake generator for Hermes build on Windows (9d08d55bbe by @ mganandraj)
- Fixing failure building RN codegen CLI on Windows (85c0c0f21f by @ mganandraj)
- Add xcode 14 workaround (turn off signing resource bundles) for
-
0.70.2 - 2022-10-04
- Add support for "Prefer Cross-Fade Transitions" into AccessibilityInfo (be7c50fefd by @ gabrieldonadel)
- Bump CLI to 9.1.3 and Metro to 0.72.3 (f164556037 by @ kelset)
- Inform ScrollView of Keyboard Events Before Mount (26d148029c by @ NickGerleman)
- Fix port as -1 if dev server without specifying port on Android (3d7e1380b4 by @ Kudo)
-
0.70.1 - 2022-09-15
- Add more debugging settings for HermesExecutorFactory (32d12e89f8 by @ Kudo)
- Support TypeScript array types for turbo module (component only) (33d1291e1a by @ ZihanChen-MSFT)
- Accept TypeScript type
- Bump react-native-gradle-plugin to 0.70.3 (e33633644c by @ dmytrorykun)
- Bump react-native-codegen to 0.70.5 (6a8c38eef2 by @ dmytrorykun)
- Hermes version bump for 0.70.1 (5132211228 by @ dmytrorykun)
- Fix hermes profiler (81564c1a3d by @ janicduplessis)
- Support PlatformColor in borderColor (2d5db284b0 by @ danilobuerger)
- Avoid crash in ForwardingCookieHandler if webview is disabled (5451cd48bd by @ Pajn)
- Correctly resolve classes with FindClass(..) (361b310bcc by @ evancharlton)
- Fix KeyboardAvoidingView height when "Prefer Cross-Fade Transitions" is enabled (4b9382c250 by @ gabrieldonadel)
- Fix React module build error with swift integration on new architecture mode (3afef3c167 by @ Kudo)
- Fix ios pod install error (0cae4959b7 by @ Romick2005)
-
0.70.0 - 2022-09-05
-
0.70.0-rc.4 - 2022-08-22
- Upgrade RN CLI to v9.0.0, Metro to 0.72.1 (0c2fe96998 by @ thymikee)
- Bump react-native-codegen to 0.70.4 (a22ceecc84 by @ dmitryrykun)
- Hermes version bump for 0.70.0-RC4 (0b4b7774e2 by @ dmitryrykun)
- Update template to gitignore
- Codegen should ignore
-
-
-
-
0.70.0-rc.3 - 2022-08-15
-
0.70.0-rc.2 - 2022-08-04
-
0.70.0-rc.1 - 2022-07-28
-
0.70.0-rc.0 - 2022-07-15
-
0.69.6 - 2022-09-27
- Bump version of
- Fix hermes profiler (81564c1a3d by @ janicduplessis)
- Correctly resolve classes with FindClass(..) (361b310bcc by @ evancharlton)
- Fix the way the orientation events are published, to avoid false publish on orientation change when app changes state to inactive (7d42106d4c by @ lbaldy)
- Fix React module build error with swift integration on new architecture mode (3afef3c167 by @ Kudo)
-
0.69.5 - 2022-08-25
- Bump react-native-codegen to 0.69.2 (df3d52bfbf by @ dmitryrykun)
- Replaced reactnativeutilsjni with reactnativejni in the build process to reduce size (54a4fcbfdc by @ SparshaSaha)
- Codegen should ignore
-
0.69.4 - 2022-08-08
-
0.69.3 - 2022-07-25
-
0.69.2 - 2022-07-20
-
0.69.1 - 2022-06-29
-
0.69.0 - 2022-06-22
-
0.69.0-rc.6 - 2022-06-01
-
0.69.0-rc.5 - 2022-05-31
-
0.69.0-rc.4 - 2022-05-31
-
0.69.0-rc.3 - 2022-05-24
-
0.69.0-rc.2 - 2022-05-20
-
0.69.0-rc.1 - 2022-05-11
-
0.69.0-rc.0 - 2022-04-28
-
0.68.4 - 2022-10-10
- Bump version of
- Bump react-native-codegen to 0.0.18 (40a3ae3613 by @ dmytrorykun)
- Correctly resolve classes with FindClass(..) (361b310bcc by @ evancharlton)
- Codegen should ignore
- Fix the way the orientation events are published (7d42106d4c by lbaldy)
-
0.68.3 - 2022-08-08
-
0.68.2 - 2022-05-09
-
0.68.1 - 2022-04-13
-
0.68.0 - 2022-03-30
-
0.68.0-rc.4 - 2022-03-25
-
0.68.0-rc.3 - 2022-03-17
-
0.68.0-rc.2 - 2022-02-24
-
0.68.0-rc.1 - 2022-02-03
-
0.68.0-rc.0 - 2022-01-28
-
0.67.4 - 2022-03-18
-
0.67.3 - 2022-02-22
-
0.67.2 - 2022-01-31
-
0.67.1 - 2022-01-20
-
0.67.0 - 2022-01-18
-
0.67.0-rc.6 - 2021-12-14
-
0.67.0-rc.5 - 2021-12-06
-
0.67.0-rc.4 - 2021-11-30
-
0.67.0-rc.3 - 2021-11-05
-
0.67.0-rc.2 - 2021-10-25
-
0.67.0-rc.1 - 2021-10-22
-
0.67.0-rc.0 - 2021-10-16
-
0.66.4 - 2021-12-09
-
0.66.3 - 2021-11-10
-
0.66.2 - 2021-11-04
-
0.66.1 - 2021-10-15
-
0.66.0 - 2021-10-01
-
0.66.0-rc.4 - 2021-09-24
-
0.66.0-rc.3 - 2021-09-17
-
0.66.0-rc.2 - 2021-09-10
-
0.66.0-rc.1 - 2021-09-01
-
0.66.0-rc.0 - 2021-08-27
-
0.65.2 - 2021-11-04
-
0.65.1 - 2021-08-19
-
0.65.0 - 2021-08-17
-
0.65.0-rc.4 - 2021-08-11
-
0.65.0-rc.3 - 2021-07-23
-
0.65.0-rc.2 - 2021-06-18
-
0.65.0-rc.1 - 2021-06-17
-
0.65.0-rc.0 - 2021-06-09
-
0.64.3 - 2021-11-04
-
0.64.2 - 2021-06-03
-
0.64.1 - 2021-05-05
-
0.64.0 - 2021-03-12
-
0.64.0-rc.4 - 2021-03-01
-
0.64.0-rc.3 - 2021-02-05
-
0.64.0-rc.2 - 2020-12-18
-
0.64.0-rc.1 - 2020-11-25
-
0.64.0-rc.0 - 2020-11-23
-
0.63.4 - 2020-11-30
-
0.63.3 - 2020-09-29
from react-native GitHub release notesFixed
defaultValue" to fix TextInputs not being settable to undefined programmatically (e2645a5) by Garrett Forbes MonroeAndroid specific
iOS specific
React-Core(967de03f30 by @ kelset)You can participate in the conversation on the status of this release in this discussion.
To help you upgrade to this version, you can use the upgrade helper ⚛️
You can find the whole changelog history in the changelog.md file.
Added
iOS specific
Changed
Fixed
Android specific
You can participate in the conversation on the status of this release in this discussion.
To help you upgrade to this version, you can use the upgrade helper ⚛️
You can find the whole changelog history in the changelog.md file.
Added
Changed
T | null | undefinedas a maybe type of T in turbo module. (9ecd203eec by @ ZihanChen-MSFT)Fixed
Android specific
iOS specific
You can participate in the conversation on the status of this release in this discussion
To help you upgrade to this version, you can use the upgrade helper ⚛️
You can find the whole changelog history in the changelog.md file.
0.70 stable is out!
This release includes 493 commits with 88 contributors! Thank you to all our contributors new and old! See the highlights of the release in our release blog post.
You can participate in the conversation on the status of this release in this discussion
To help you upgrade to this version, you can use the upgrade helper ⚛️
You can find the whole changelog history in the changelog.md file.
Changed
Android specific
android/app/.cxx(542d43df9d by @ leotm)Fixed
.d.tsfiles (0f0d52067c by @ tido64)You can participate in the conversation on the status of this release in the working group.
To help you upgrade to this version, you can use the upgrade helper ⚛️
See changes from this release in the changelog PR
Help us testing 🧪
RC4 is going to be the last RC before 0.70.0 - unless blocking issues arise. To help us catch them, test it by running:
And play around with the fresh app - let us know how it went by posting a comment in the working group discussion! Please specify with system you tried it on (ex. macos, windows).
Bonus points: It would be even better if you could swap things around: instead of using a fresh new app, use a more complex one!
Changed
promisefrom 8.0.3 to 8.2.0, enablingPromise.allSettled(951538c080 by @ retyui)Fixed
Android specific
iOS specific
You can participate in the conversation on the status of this release in this discussion
To help you upgrade to this version, you can use the upgrade helper ⚛️
You can find the whole changelog history in the changelog.md file
Changed
Android specific
Fixed
.d.tsfiles (0f0d52067c by @ tido64)You can participate in the conversation on the status of this release in this discussion
To help you upgrade to this version, you can use the upgrade helper ⚛️
You can find the whole changelog history in the changelog.md file
Changed
promisefrom 8.0.3 to 8.2.0, enablingPromise.allSettled(951538c080 by @ retyui)Android specific
Fixed
.d.tsfiles (0f0d52067c by @ tido64)iOS specific
You can participate in the conversation on the status of this release in this discussion
To help you upgrade to this version, you can use the upgrade helper ⚛️
You can find the whole changelog history in the changelog.md file
Commit messages
Package name: react-native
react-native.config.jsfor codegen on iOS facebook/react-native#34580)Compare
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.
For more information:
🧐 View latest project report
🛠 Adjust upgrade PR settings
🔕 Ignore this dependency or unsubscribe from future upgrade PRs