Skip to content
This repository was archived by the owner on Mar 24, 2026. It is now read-only.

Update dependency moment to v2.29.2 (main)#617

Open
mend-for-github-com[bot] wants to merge 1 commit into
mainfrom
whitesource-remediate/main-moment-2.x
Open

Update dependency moment to v2.29.2 (main)#617
mend-for-github-com[bot] wants to merge 1 commit into
mainfrom
whitesource-remediate/main-moment-2.x

Conversation

@mend-for-github-com

@mend-for-github-com mend-for-github-com Bot commented Apr 6, 2022

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Type Update Change
moment (source) dependencies patch 2.29.1 -> 2.29.2

By merging this PR, the below issues will be automatically resolved and closed:

Severity CVSS Score CVE GitHub Issue
High 7.5 CVE-2022-24785 #616

Release Notes

moment/moment

v2.29.2

Compare Source

  • Release Apr 3 2022

Address GHSA-8hfj-j24r-96c4


  • If you want to rebase/retry this PR, click this checkbox.

@mend-for-github-com mend-for-github-com Bot added the security fix Security fix generated by WhiteSource label Apr 6, 2022
@cla-bot

cla-bot Bot commented Apr 6, 2022

Copy link
Copy Markdown

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

@cortx-admin

Copy link
Copy Markdown

Can one of the admins verify this patch?

@stale

stale Bot commented Apr 13, 2022

Copy link
Copy Markdown

This issue/pull request has been marked as needs attention as it has been left pending without new activity for 4 days. Tagging @ajaysrivas @kupranay for appropriate assignment. Sorry for the delay & Thank you for contributing to CORTX. We will get back to you as soon as possible.

@mend-for-github-com mend-for-github-com Bot force-pushed the whitesource-remediate/main-moment-2.x branch from 1bea1af to e22a9b5 Compare April 26, 2022 16:16
@cla-bot

cla-bot Bot commented Apr 26, 2022

Copy link
Copy Markdown

Thanks for your contribution!
The CLA bot has flagged your contribution as not having a Contributor License Agreement
in place. Note that this is not needed in the overwhelming majority of instances and this warning will usually be ignored.
The code reviewers will make a determination and may ask you to sign a CLA or may choose to ignore this warning.
More information about this can be found here.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

needs-attention security fix Security fix generated by WhiteSource

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant