Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update dependency swagger-ui to v3.52.5 #25

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

dev-mend-for-github-com[bot]
Copy link
Contributor

@dev-mend-for-github-com dev-mend-for-github-com bot commented Mar 8, 2023

This PR contains the following updates:

Package Type Update Change
swagger-ui dependencies minor 3.2.2 -> 3.52.5

This PR resolves the vulnerabilities described in Issue #15


Version 3.2.2
Risk Change Critical High Medium Low
N/A 3 6 14 0
Version 3.52.5
Risk Change Critical High Medium Low
-100% 0 (-3 ) 0 (-6 ) 0 (-14 ) 0 (--)

Mend ensures you have the greatest risk reduction ("Recommended Fix"-highlighted in green) by removing as many vulnerabilities as possible. Click to see how we calculate risk reduction.


Release Notes

swagger-api/swagger-ui (swagger-ui)

v3.52.5: Swagger UI v3.52.5 Released!

Compare Source

Bug Fixes

v3.52.4: Swagger UI v3.52.4 Released!

Compare Source

Bug Fixes

v3.52.3: Swagger UI v3.52.3 Released!

Compare Source

Bug Fixes

v3.52.2: Swagger UI v3.52.2 Released!

Compare Source

Bug Fixes
  • Dockerfile: fix security issue in docker image (3c9061e), closes #​7445
  • security: fix security issue in prismjs production dep (#​7493) (2a1b710), closes #​7492
  • security: fix security issue in url-parse production dep

v3.52.1: Swagger UI v3.52.1 Released!

Compare Source

Bug Fixes

v3.52.0: Swagger UI v3.52.0 Released!

Compare Source

Features
  • js-yaml: update our main YAML parser to v4.1.0 (no esprima anymore in bundle) (3248428), closes #​6804

v3.51.2: Swagger UI v3.51.2 Released!

Compare Source

Bug Fixes
  • deps: bump swagger-client to v3.14.1 (#​7440) (8daf4e4), closes #​7436
  • minimum runtime Node.js version is now => 12.4

v3.51.1: Swagger UI v3.51.1 Released!

Compare Source

Bug Fixes

v3.51.0: Swagger UI v3.51.0 Released!

Compare Source

Features
Bug Fixes
Deprecation Warning

Swagger UI now requires Node.js v12. Node.js v10 has reached its EOL on 30-04-2021. Documentation has been updated in this PR #​7359

v3.50.0: Swagger UI v3.50.0 Released!

Compare Source

Features
Bug Fixes
Deprecation warning
  • wrapComponents: The new configuration option introduced in this version sets the default to legacy, with an opt-in setting for chain. In a future version, this configuration option will toggle to chain as default, as it is the intended fixed correct behavior. If your application expects and/or requires the legacy option, please update your application accordingly. If your application is agnostic towards the either chain or legacy, no change is needed.

v3.49.0: Swagger UI v3.49.0 Released!

Compare Source

Features
Bug Fixes

v3.48.0: Swagger UI v3.48.0 Released!

Compare Source

Bug Fixes
Features

v3.47.1: Swagger UI v3.47.1 Released!

Compare Source

[email protected] was a valid but incomplete release. This release should contain downstream release jobs.

v3.47.0: Swagger UI v3.47.0 Released!

Compare Source

Features
Bug Fixes

v3.46.0: Swagger UI v3.46.0 Released!

Compare Source

Features
Bug Fixes
Other

v3.45.1: Swagger UI v3.45.1 Released!

Compare Source

Bug Fixes

v3.45.0: Swagger UI v3.45.0 Released!

Compare Source

Features
Bug Fixes

v3.44.1: Swagger UI v3.44.1 Released!

Compare Source

Bug Fixes

v3.44.0: Swagger UI v3.44.0 Released!

Compare Source

Bug Fixes
  • info: use externalDocsUrl check to render Link (#​6997) (b7d3d1c)
  • lint: use semicolons + closing link in html (#​6951) (17093f2)
  • lint: put script tag in body in oauth2-redirect.html (#​6958)
Features

v3.43.0: Swagger UI v3.43.0 Released!

Compare Source

Features
Bug Fixes
  • support OAuth2 PKCE when using the OIDC authorization_code flow (#​6914) (5e69d3c)
  • sample-gen: enum without type should be handled by sample-gen (#​6912) (7ead9ba)
Other

swagger-cllient: version bump to 3.13.1

v3.42.0: Swagger UI v3.42.0 Released!

Compare Source

Features
Bug Fixes

v3.41.1: Swagger UI v3.41.1 Released!

Compare Source

Bug Fixes
  • swagger-ui-react: src filename extension to transpile (#​6876) (e538e26)

v3.41.0: Swagger UI v3.41.0 Released!

Compare Source

Features
  • sample-gen: yaml sample generation (#​6858) (470e2fe)
  • ux: enhance media-type switching experience in RequestBodyEditor (#​6837) (e877580)
  • config: add tryItOutEnabled configuration (#​6865) (265bdc0)
  • swagger-client: bump to v3.12.2
Bug Fixes
  • buildUrl: relative url is invalid URL (OAS3) or non-url (OAS2) (#​6864) (a5eb3dc)
  • sample-gen: case yaml parsed example is number but string schema (#​6872) (5b2ad68)
  • ux: ensure that optional security schema is rendered without padlock. (#​6839) (eddde95)
  • webpack: assets should not be treaded as esModule (#​6861) (cdfb64f)

v3.40.0: Swagger UI v3.40.0 Released!

Compare Source

Features
Bug Fixes

v3.39.0: Swagger UI v3.39.0 Released!

Compare Source

Features
  • ux: Disabled Execute button while request is in progress (#​6776) (2bf39e0)
Bug Fixes
  • sample-gen: first oneOf or anyOf should be combined with schema (#​6775) (0f541a1)
  • style: response data flows off the screen (#​6764) (85a3ec9)
  • examples: Request Body examples should respect media-type (#​6739) (68e9b1b)

v3.38.0: Swagger UI v3.38.0 Released!

Compare Source

Features
Bug Fixes

v3.37.2: Swagger UI v3.37.2 Released!

Compare Source

v3.37.1: Swagger UI v3.37.1 Released!

Compare Source

Warning

This is a failed release which is identical to v3.37.0. Please install v3.37.2 instead.

v3.37.0: Swagger UI v3.37.0 Released!

Compare Source

Features
Bug Fixes

v3.36.2: Swagger UI v3.36.2 Released!

Compare Source

Bug Fixes

v3.36.1: Swagger UI v3.36.1 Released!

Compare Source

Bug Fixes

v3.36.0: Swagger UI v3.36.0 Released!

Compare Source

Features
Bug Fixes

v3.35.2: Swagger UI v3.35.2 Released!

Compare Source

Bug Fixes

v3.35.1: Swagger UI v3.35.1 Released!

Compare Source

Bug Fixes

v3.35.0: Swagger UI v3.35.0 Released!

Compare Source

Bug Fixes
Features
  • curl: configuration setting to pass additional options to curl command for "Try it out" (#​6288) (cbe99c8)
  • swagger-ui-react: add deeplinking as prop (#​6424) (6b12f15)

v3.34.0: Swagger UI v3.34.0 Released!

Compare Source

Features
Refactor
  • build: increase maxEntrypointSize for core-js@3 (#​6419)
  • csp: Update how the JavaScript run function is invoked in oauth2-redirect.html (#​6393)

v3.33.0: Swagger UI v3.33.0 Released!

Compare Source

Bug Fixes
Features

v3.32.5: Swagger UI v3.32.5 Released!

Compare Source

Bug Fixes
  • operationTag: verify selectedServer exists before invoking (#​6335) (580e906)

v3.32.4: Swagger UI v3.32.4 Released!

Compare Source

Bug Fixes
  • remove unused and redux@4 non-compliant system method inside 'err' reducer (#​6330) (6742cbd)
  • deps: revert to redux@3 and react-redux@4 (#​6331) (e82aaae)

v3.32.3: Swagger UI v3.32.3 Released!

Compare Source

This release is intended to enable npm to include es2015 bundle files. There are no source code changes in this release.

Bug Fixes
  • build: add es-bundle to .npmignore non-exclusion list (#​6328) (560b428)

v3.32.2: Swagger UI v3.32.2 Released!

Compare Source

Bug Fixes
Security Update
  • deps: update react-syntax-highlighter from 12.2.1 to 13.5.0, which includes dependency security update fixed by [email protected] (#​6312)

Additional dependency updates via #​6317, #​6316, #​6313, #​6310

v3.32.1: Swagger UI 3.32.1 Released!

Compare Source

This release should properly include swagger-ui-es-bundle and swagger-ui-es-bundle-core in the /dist directory. There are no other source code changes in this release.

Bug Fixes

v3.32.0: Swagger UI 3.32.0 Released!

Compare Source

Features
  • build: SwaggerUI now also has an es2015 bundle artifact (#​6291) (2eaa6c1)
  • swagger-ui-react: SwaggerUI-React now also includes an es2015 module (#​6303) (c575324)
Bug Fixes

v3.31.1: Sw

@dev-mend-for-github-com dev-mend-for-github-com bot added the security fix Security fix generated by Mend label Mar 8, 2023
@dev-mend-for-github-com
Copy link
Contributor Author

dev-mend-for-github-com bot commented Mar 8, 2023

⚠ Artifact update problem

Renovate failed to update an artifact related to this branch. You probably do not want to merge this PR as-is.

♻ Renovate will retry this branch, including artifacts, only when one of the following happens:

  • any of the package files in this branch needs updating, or
  • the branch becomes conflicted, or
  • you click the rebase/retry checkbox if found above, or
  • you rename this PR's title to start with "rebase!" to trigger it manually

The artifact failure details are included below:

File name: package-lock.json

@dev-mend-for-github-com dev-mend-for-github-com bot force-pushed the whitesource-remediate/swagger-ui-3.x branch from 56d81d1 to 1b08d8c Compare December 26, 2023 18:10
@dev-mend-for-github-com dev-mend-for-github-com bot changed the title Update dependency swagger-ui to v3.26.0 Update dependency swagger-ui to v3.38.0 Dec 26, 2023
@dev-mend-for-github-com dev-mend-for-github-com bot force-pushed the whitesource-remediate/swagger-ui-3.x branch from 1b08d8c to b3291c5 Compare March 6, 2024 14:24
@dev-mend-for-github-com dev-mend-for-github-com bot changed the title Update dependency swagger-ui to v3.38.0 Update dependency swagger-ui to v3.23.11 Mar 6, 2024
@dev-mend-for-github-com dev-mend-for-github-com bot force-pushed the whitesource-remediate/swagger-ui-3.x branch from b3291c5 to 43f280b Compare April 4, 2024 00:08
@dev-mend-for-github-com dev-mend-for-github-com bot changed the title Update dependency swagger-ui to v3.23.11 Update dependency swagger-ui to v3.38.0 Apr 4, 2024
@dev-mend-for-github-com dev-mend-for-github-com bot force-pushed the whitesource-remediate/swagger-ui-3.x branch from 43f280b to 2feac62 Compare May 4, 2024 00:12
@dev-mend-for-github-com dev-mend-for-github-com bot changed the title Update dependency swagger-ui to v3.38.0 Update dependency swagger-ui to v3.23.11 May 4, 2024
@dev-mend-for-github-com dev-mend-for-github-com bot force-pushed the whitesource-remediate/swagger-ui-3.x branch from 2feac62 to 5225f50 Compare June 3, 2024 00:18
@dev-mend-for-github-com dev-mend-for-github-com bot changed the title Update dependency swagger-ui to v3.23.11 Update dependency swagger-ui to v3.52.5 Jun 3, 2024
@dev-mend-for-github-com dev-mend-for-github-com bot force-pushed the whitesource-remediate/swagger-ui-3.x branch from 5225f50 to cf6bbf9 Compare June 21, 2024 19:35
@dev-mend-for-github-com dev-mend-for-github-com bot changed the title Update dependency swagger-ui to v3.52.5 Update dependency swagger-ui to v3.38.0 Jun 21, 2024
@dev-mend-for-github-com dev-mend-for-github-com bot changed the title Update dependency swagger-ui to v3.38.0 Update dependency swagger-ui to v3.38.0 - autoclosed Sep 10, 2024
@dev-mend-for-github-com dev-mend-for-github-com bot deleted the whitesource-remediate/swagger-ui-3.x branch September 10, 2024 15:31
@dev-mend-for-github-com dev-mend-for-github-com bot restored the whitesource-remediate/swagger-ui-3.x branch September 11, 2024 07:02
@dev-mend-for-github-com dev-mend-for-github-com bot changed the title Update dependency swagger-ui to v3.38.0 - autoclosed Update dependency swagger-ui to v3.38.0 Sep 11, 2024
@dev-mend-for-github-com dev-mend-for-github-com bot force-pushed the whitesource-remediate/swagger-ui-3.x branch from cf6bbf9 to 464abcc Compare September 11, 2024 07:03
@dev-mend-for-github-com dev-mend-for-github-com bot force-pushed the whitesource-remediate/swagger-ui-3.x branch from 464abcc to 286a186 Compare January 14, 2025 07:53
@dev-mend-for-github-com dev-mend-for-github-com bot changed the title Update dependency swagger-ui to v3.38.0 Update dependency swagger-ui to v3.52.5 Jan 14, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
security fix Security fix generated by Mend
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants