Skip to content

Update dependency react-time-ago to v6#9

Open
mend-for-github-com[bot] wants to merge 1 commit into
mainfrom
whitesource-remediate/react-time-ago-6.x
Open

Update dependency react-time-ago to v6#9
mend-for-github-com[bot] wants to merge 1 commit into
mainfrom
whitesource-remediate/react-time-ago-6.x

Conversation

@mend-for-github-com
Copy link
Copy Markdown

@mend-for-github-com mend-for-github-com Bot commented Jul 9, 2023

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
react-time-ago 5.0.4 -> 6.0.0 age adoption passing confidence

By merging this PR, the below vulnerabilities will be automatically resolved:

Severity CVSS Score CVE Reachability
High High 7.5 CVE-2020-7733
High High 7.5 CVE-2020-7793
High High 7.5 CVE-2021-27292
Medium Medium 6.1 CVE-2022-0235

Release Notes

catamphetamine/react-time-ago (react-time-ago)

v6.0.0

Compare Source

===================

  • Rewrote in React Hooks (requires React >= 16.8).

  • Fixed locale property dynamic update.

  • Removed /tooltip and /copy-text exports.

  • (misc) Removed deprecated .default CommonJS exports. Removed deprecated /no-tooltip export.

v5.0.8

Compare Source

===================

  • By default, for standard timeStyles, "smart" autoupdate interval is used now: every minute for the first hour, then every 10 minutes for the first 12 hours, and so on. Previously the default was "every minute".

v5.0.7

Compare Source

v5.0.6

Compare Source

v5.0.5

Compare Source


  • If you want to rebase/retry this PR, check this box

@mend-for-github-com mend-for-github-com Bot added the security fix Security fix generated by Mend label Jul 9, 2023
@mend-for-github-com mend-for-github-com Bot changed the title Update dependency react-time-ago to v6 Update dependency react-time-ago to v6 - autoclosed Apr 3, 2024
@mend-for-github-com mend-for-github-com Bot deleted the whitesource-remediate/react-time-ago-6.x branch April 3, 2024 00:35
@mend-for-github-com mend-for-github-com Bot changed the title Update dependency react-time-ago to v6 - autoclosed Update dependency react-time-ago to v6 Apr 4, 2024
@mend-for-github-com mend-for-github-com Bot reopened this Apr 4, 2024
@mend-for-github-com mend-for-github-com Bot restored the whitesource-remediate/react-time-ago-6.x branch April 4, 2024 06:04
@mend-for-github-com mend-for-github-com Bot force-pushed the whitesource-remediate/react-time-ago-6.x branch from 3c565fd to f45e5c1 Compare April 4, 2024 06:05
@amplify-bot
Copy link
Copy Markdown

amplify-bot Bot commented Apr 4, 2024

Check Name Conclusion Summary Output
Mend Security Check success Security Report output
Mend License Check failure License Report output

1 similar comment
@amplify-bot
Copy link
Copy Markdown

amplify-bot Bot commented Apr 4, 2024

Check Name Conclusion Summary Output
Mend Security Check success Security Report output
Mend License Check failure License Report output

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

security fix Security fix generated by Mend

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants