[Snyk] Upgrade: gatsby, gatsby-plugin-manifest, gatsby-plugin-offline, gatsby-plugin-sharp, gatsby-source-filesystem, gatsby-transformer-remark, gatsby-transformer-sharp, react-is, algoliasearch, bootstrap, disqus-react, dotenv, prop-types, moment, gatsby-plugin-algolia, prismjs, react-instantsearch-dom, react-share, react-slick, styled-components, typography #238
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Snyk has created this PR to upgrade multiple dependencies.
👯♂ The following dependencies are linked and will therefore be updated together.ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
gatsby
from 2.32.3 to 2.32.13 | 12 versions ahead of your current version | 3 years ago
on 2021-05-04
gatsby-plugin-manifest
from 2.12.0 to 2.12.1 | 1 version ahead of your current version | 4 years ago
on 2021-02-24
gatsby-plugin-offline
from 3.10.0 to 3.10.2 | 2 versions ahead of your current version | 4 years ago
on 2021-02-24
gatsby-plugin-sharp
from 2.14.1 to 2.14.4 | 3 versions ahead of your current version | 3 years ago
on 2021-05-04
gatsby-source-filesystem
from 2.11.0 to 2.11.1 | 1 version ahead of your current version | 4 years ago
on 2021-02-24
gatsby-transformer-remark
from 2.16.0 to 2.16.1 | 1 version ahead of your current version | 4 years ago
on 2021-02-24
gatsby-transformer-sharp
from 2.12.0 to 2.12.1 | 1 version ahead of your current version | 4 years ago
on 2021-03-08
react-is
from 17.0.1 to 17.0.2 | 1 version ahead of your current version | 3 years ago
on 2021-03-22
algoliasearch
from 4.8.5 to 4.24.0 | 38 versions ahead of your current version | 3 months ago
on 2024-06-25
bootstrap
from 4.6.0 to 4.6.2 | 2 versions ahead of your current version | 2 years ago
on 2022-07-19
disqus-react
from 1.0.11 to 1.1.5 | 6 versions ahead of your current version | 2 years ago
on 2022-10-13
dotenv
from 8.2.0 to 8.6.0 | 5 versions ahead of your current version | 3 years ago
on 2021-05-05
prop-types
from 15.7.2 to 15.8.1 | 2 versions ahead of your current version | 3 years ago
on 2022-01-05
moment
from 2.29.1 to 2.30.1 | 5 versions ahead of your current version | 9 months ago
on 2023-12-27
gatsby-plugin-algolia
from 0.6.0 to 0.26.0 | 36 versions ahead of your current version | 3 years ago
on 2022-02-03
prismjs
from 1.23.0 to 1.29.0 | 7 versions ahead of your current version | 2 years ago
on 2022-08-23
react-instantsearch-dom
from 6.9.0 to 6.40.4 | 60 versions ahead of your current version | a year ago
on 2023-07-25
react-share
from 4.3.1 to 4.4.1 | 2 versions ahead of your current version | 2 years ago
on 2022-10-16
react-slick
from 0.25.2 to 0.30.2 | 25 versions ahead of your current version | 7 months ago
on 2024-02-17
styled-components
from 5.2.1 to 5.3.11 | 16 versions ahead of your current version | a year ago
on 2023-05-26
typography
from 0.16.19 to 0.16.24 | 3 versions ahead of your current version | a year ago
on 2023-07-08
Issues fixed by the recommended upgrade:
SNYK-JS-MOMENT-2440688
SNYK-JS-MOMENT-2944238
SNYK-JS-FOLLOWREDIRECTS-6141137
SNYK-JS-ENGINEIO-1056749
SNYK-JS-PRISMJS-1314893
SNYK-JS-PRISMJS-1585202
SNYK-JS-XMLHTTPREQUESTSSL-1082936
SNYK-JS-XMLHTTPREQUESTSSL-1255647
SNYK-JS-URLPARSE-2407770
SNYK-JS-LODASH-1040724
SNYK-JS-FOLLOWREDIRECTS-2332181
SNYK-JS-BROWSERSLIST-1090194
SNYK-JS-FOLLOWREDIRECTS-6444610
SNYK-JS-ALGOLIASEARCHHELPER-1570421
SNYK-JS-PARSEURL-2935944
SNYK-JS-PROMPTS-1729737
SNYK-JS-URLPARSE-2407759
SNYK-JS-FOLLOWREDIRECTS-2396346
SNYK-JS-BABELTRAVERSE-5962462
SNYK-JS-PRISMJS-2404333
SNYK-JS-PARSEURL-2935947
SNYK-JS-PARSEURL-2936249
SNYK-JS-PARSEURL-2942134
SNYK-JS-SOCKETIOPARSER-3091012
SNYK-JS-SOCKETIOPARSER-3091012
SNYK-JS-YARGSPARSER-560381
SNYK-JS-SOCKETIO-1024859
SNYK-JS-URLPARSE-1078283
SNYK-JS-URLPARSE-1533425
SNYK-JS-URLPARSE-2401205
SNYK-JS-URLPARSE-2412697
SNYK-JS-LODASH-1018905
npm:debug:20170905
Release notes
Package name: gatsby
Package name: gatsby-plugin-manifest
Package name: gatsby-plugin-offline
Package name: gatsby-plugin-sharp
Package name: gatsby-source-filesystem
Package name: gatsby-transformer-remark
Package name: gatsby-transformer-sharp
Package name: react-is
React DOM
SharedArrayBuffer
cross-origin isolation warning. (@ koba04 and @ bvaughn in #20831, #20832, and #20840)Artifacts
React DOM
Package name: algoliasearch
Package name: bootstrap
Highlights
color-adjust
withprint-color-adjust
in our Sass files as part of the Autoprefixer v10.4.6 issues. This should quiet the issues folks have seen from that dependency change. If you're using our distribution CSS files, likebootstrap.min.css
, you may still see the warning.small
and.small
to compute to a whole pixel value (was12.8px
and now is14px
).role
attributes.What's Changed
color-adjust
withprint-color-adjust
by @ AdrianCurtin in #36283role="group"
from some split drop* buttons by @ julien-deramond in #36254accessibility.md
by @ patrickhlauke in #36492New Contributors
Full Changelog: v4.6.1...v4.6.2
What's changed
divide()
function by @ mdo in #34571moz-focusring
by @ kremit in #32821SAFE_URL_PATTERN
regex for use with test method of regexes by @ nikonthethird in #33153sms
in theSAFE_URL_PATTERN
for sanitizer by @ XhmikosR in #35074select.form-control
by @ mdo in #33206add()
&subtract()
by @ ffoodd in #34047add()
andsubtract()
by @ ffoodd in #34432aria-haspopup
from dropdowns by @ patrickhlauke in #33624.dropdown-item
wrapped in<li>
tags by @ cpsievert in #33649vertical-align
in spinners by @ XhmikosR in #338070.x
with negative margins in utilities by @ k-utsumi in #33593thead
rule by @ coliff in #34426show
event disabling modals with fade class from being displayed again by @ alpadev in #34087Full changelog
v4.6.0...v4.6.1
Package name: disqus-react
What's Changed
Full Changelog: v1.1.4...v1.1.5
What's Changed
New Contributors
Full Changelog: v1.1.2...v1.1.4
1.1.3
path-parse
from 1.0.6 to 1.0.7url-parse
from 1.5.1 to 1.5.3ws
from 5.2.2 to 5.2.3