Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Snyk] Upgrade styled-components from 5.3.5 to 6.1.12 #3

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

snyk-io[bot]
Copy link

@snyk-io snyk-io bot commented Aug 13, 2024

snyk-top-banner

Snyk has created this PR to upgrade styled-components from 5.3.5 to 6.1.12.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


⚠️ Warning: This PR contains major version upgrade(s), and may be a breaking change.

  • The recommended version is 66 versions ahead of your current version.

  • The recommended version was released on a month ago.

Issues fixed by the recommended upgrade:

Issue Score Exploit Maturity
medium severity Undesired Behavior
SNYK-JS-STYLEDCOMPONENTS-3149924
300 No Known Exploit
Release notes
Package name: styled-components
  • 6.1.12 - 2024-07-17

    What's Changed

    New Contributors

    Full Changelog: v6.1.11...v6.1.12

  • 6.1.11 - 2024-05-09

    What's Changed

    • feat(types): add types to support third-party wrapping scenarios by @ quantizor in #4307

    Full Changelog: v6.1.10...v6.1.11

  • 6.1.10 - 2024-05-07

    What's Changed

    • Update dependencies by @ quantizor in #4297
    • Export IStyledComponentBase interface by @ akkadaya in #4300
    • revert type changes introduced in #4288 due to a large number of bug reports

    New Contributors

    Full Changelog: v6.1.9...v6.1.10

  • 6.1.10-test.1 - 2024-05-08
  • 6.1.10-test.0 - 2024-05-08
  • 6.1.9 - 2024-04-30

    What's Changed

    New Contributors

    Full Changelog: v6.1.8...v6.1.9

  • 6.1.9-react-18-streaming-prototype - 2024-04-30
  • 6.1.8 - 2024-01-08

    Revert adding peerDependencies from v6.1.7; apparently some package managers have differing behaviors around peerDependenciesMeta[package].optional which is causing issues. Will revisit at a later date if possible.

    Full Changelog: v6.1.7...v6.1.8

  • 6.1.7 - 2024-01-08

    What's Changed

    • chore: add all missing peer dependency statements by @ quantizor in #4243

      NOTE: this change may cause some installed dependency duplication until this NPM bug is addressed but yarn and pnpm have correct behavior. Bun also has a similar bug.

      Overall these changes ensure that styled-components is specifying a known working version of all utilized libraries, while instructing the client package manager that higher semver-compliant versions are permissible and should work, assuming the relevant libraries are compliant in practice.

    Full Changelog: v6.1.6...v6.1.7

  • 6.1.6 - 2023-12-27

    What's Changed

    • fix: bump stylis to 4.3.1 to resolve issue with leaking nested selectors by @ quantizor in #4245

    Full Changelog: v6.1.5...v6.1.6

  • 6.1.5 - 2023-12-27

    What's Changed

    • fix: further constrain self-referencing to match v5 behavior by @ quantizor in #4244

    Full Changelog: v6.1.4...v6.1.5

  • 6.1.5-rc.0 - 2023-12-27
  • 6.1.4 - 2023-12-27

    What's Changed

    • fix: allow using attrs to provide a custom theme prop to child components by @ quantizor in #4242

    Full Changelog: v6.1.3...v6.1.4

  • 6.1.3 - 2023-12-22

    What's Changed

    New Contributors

    Full Changelog: v6.1.2...v6.1.3

  • 6.1.2 - 2023-12-20
  • 6.1.1 - 2023-11-08
  • 6.1.0 - 2023-10-14
  • 6.0.9 - 2023-10-12
  • 6.0.8 - 2023-09-13
  • 6.0.7 - 2023-08-03
  • 6.0.6 - 2023-08-02
  • 6.0.6-test.0 - 2023-08-02
  • 6.0.5 - 2023-07-21
  • 6.0.4 - 2023-07-13
  • 6.0.3 - 2023-07-07
  • 6.0.2 - 2023-07-03
  • 6.0.1 - 2023-06-28
  • 6.0.0 - 2023-06-28
  • 6.0.0-rc.2-4007 - 2023-05-26
  • 6.0.0-rc.6 - 2023-06-23
  • 6.0.0-rc.5 - 2023-06-22
  • 6.0.0-rc.4 - 2023-06-22
  • 6.0.0-rc.3 - 2023-06-04
  • 6.0.0-rc.2 - 2023-05-24
  • 6.0.0-rc.1 - 2023-05-06
  • 6.0.0-rc.0 - 2023-05-04
  • 6.0.0-beta.15 - 2023-04-23
  • 6.0.0-beta.14 - 2023-03-23
  • 6.0.0-beta.13 - 2023-03-10
  • 6.0.0-beta.12 - 2023-03-02
  • 6.0.0-beta.11 - 2023-02-03
  • 6.0.0-beta.10 - 2023-02-03
  • 6.0.0-beta.9 - 2023-01-03
  • 6.0.0-beta.8 - 2022-12-23
  • 6.0.0-beta.7 - 2022-12-23
  • 6.0.0-beta.6 - 2022-11-13
  • 6.0.0-beta.5 - 2022-10-26
  • 6.0.0-beta.4 - 2022-10-25
  • 6.0.0-beta.3 - 2022-10-04
  • 6.0.0-beta.2 - 2022-09-02
  • 6.0.0-beta.1 - 2022-08-31
  • 6.0.0-beta.0 - 2022-08-31
  • 6.0.0-alpha.7 - 2022-07-22
  • 6.0.0-alpha.6 - 2022-07-22
  • 6.0.0-alpha.5 - 2022-03-24
  • 6.0.0-alpha.4 - 2022-03-24
  • 6.0.0-alpha.3 - 2022-03-24
  • 6.0.0-alpha.2 - 2022-03-24
  • 6.0.0-alpha.1 - 2022-02-24
  • 6.0.0-alpha.0 - 2022-02-22
  • 5.3.11 - 2023-05-26
  • 5.3.10 - 2023-04-23
  • 5.3.9 - 2023-03-13
  • 5.3.8 - 2023-03-02
  • 5.3.7 - 2023-03-02
  • 5.3.6 - 2022-09-27
  • 5.3.5 - 2022-03-24
from styled-components GitHub release notes

Important

  • Warning: This PR contains a major version upgrade, and may be a breaking change.
  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants