Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Story #12308: Angular upgrade (10 -> 12) #1892

Merged
merged 14 commits into from
Jun 6, 2024
Merged

Story #12308: Angular upgrade (10 -> 12) #1892

merged 14 commits into from
Jun 6, 2024

Conversation

marob
Copy link
Contributor

@marob marob commented Jun 3, 2024

Description

Description des modifications

Type de changement

Indiquer le ou les types de changements

  • Build
  • PKI
  • Ansiblerie
  • Nouveau Code
  • Correction
  • Refactorisation de code
  • Autre

Documentation

Indiquer la documentation mise à jour

  • Quels sont les nouvelles documentations ?
  • Quels sont les modifications existantes ?
  • Quels sont les documentations ou sections de documentations supprimés ?

Tests

Indiquer comment le code à été testé (manuel, environnement, TU, etc)

  • manuel
  • environnement
  • TU

Migration

Indiquer si les modifications apportées impliquent une migration sur l'existant et comment la faire

Checklist

Sélectionner les éléments de la checklist

  • Mon code suit le style de code de ce projet.
  • J'ai commenté mon code, en particulier dans les classes et les méthodes difficile à comprendre.
  • J'ai fait les changements correspondant dans la documentation RAML.
  • J'ai fait les changements correspondant dans la documentation Métier.
  • J'ai fait les changements correspondant dans la documentation Technique.
  • J'ai rajouté les tests unitaires vérifiant mes fonctionnalités.
  • J'ai rajouté les tests de non régression vérifiant mes fonctionnalités.
  • Les tests unitaires nouveaux et existants passent avec succès localement.
  • Toutes les dépendances ont été mergées en priorité

Contributeur

Indiquer qui a développé cette fonctionnalité

  • VAS (Vitam Accessible en Service)
  • CEA (Commissariat à l'énergie atomique et aux énergies alternatives)

@vitam-devops
Copy link
Collaborator

vitam-devops commented Jun 3, 2024

Logo
Checkmarx One – Scan Summary & Details74bac224-dd4c-434a-a1fe-5419c0b79e5a

New Issues

Severity Issue Source File / Package Checkmarx Insight
HIGH CVE-2019-15599 Npm-tree-kill-1.2.1 Vulnerable Package
HIGH CVE-2020-28502 Npm-xmlhttprequest-ssl-1.5.5 Vulnerable Package
HIGH CVE-2020-36048 Npm-engine.io-3.2.1 Vulnerable Package
HIGH CVE-2020-36049 Npm-socket.io-parser-3.2.0 Vulnerable Package
HIGH CVE-2020-7660 Npm-serialize-javascript-1.9.1 Vulnerable Package
HIGH CVE-2020-7788 Npm-ini-1.3.5 Vulnerable Package
HIGH CVE-2021-31597 Npm-xmlhttprequest-ssl-1.5.5 Vulnerable Package
HIGH CVE-2022-2421 Npm-socket.io-parser-3.2.0 Vulnerable Package
HIGH CVE-2023-28154 Npm-webpack-5.50.0 Vulnerable Package
HIGH CVE-2023-45133 Npm-babel-traverse-6.26.0 Vulnerable Package
MEDIUM CVE-2019-16769 Npm-serialize-javascript-1.9.1 Vulnerable Package
MEDIUM CVE-2020-15366 Npm-ajv-6.10.0 Vulnerable Package
MEDIUM CVE-2020-15366 Npm-ajv-5.5.2 Vulnerable Package
MEDIUM CVE-2020-28481 Npm-socket.io-2.1.1 Vulnerable Package
MEDIUM CVE-2020-7693 Npm-sockjs-0.3.19 Vulnerable Package
MEDIUM CVE-2021-23364 Npm-browserslist-4.5.5 Vulnerable Package
MEDIUM CVE-2022-21704 Npm-log4js-4.5.1 Vulnerable Package
MEDIUM CVE-2022-41940 Npm-engine.io-3.2.1 Vulnerable Package
LOW Logging of Sensitive Data /ansible.cfg: [2](https://github.com/ProgrammeVitam/vitam-ui/blob/angular-upgrade//deployment/pki/scripts/lib/ansible.cfg# L2) To keep sensitive values out of logs, tasks that expose them need to be marked defining 'no_log' and setting to True
LOW Logging of Sensitive Data /ansible.cfg: [2](https://github.com/ProgrammeVitam/vitam-ui/blob/angular-upgrade//tools/docker/mongo/ansible.cfg# L2) To keep sensitive values out of logs, tasks that expose them need to be marked defining 'no_log' and setting to True
LOW Logging of Sensitive Data /ansible.cfg: [1](https://github.com/ProgrammeVitam/vitam-ui/blob/angular-upgrade//deployment/ansible.cfg# L1) To keep sensitive values out of logs, tasks that expose them need to be marked defining 'no_log' and setting to True

Fixed Issues

Severity Issue Source File / Package
HIGH CVE-2021-21306 Npm-marked-1.2.9
MEDIUM CVE-2024-28849 Npm-follow-redirects-1.15.5

@marob marob force-pushed the angular-upgrade branch 7 times, most recently from 11d26b1 to 8e8485b Compare June 5, 2024 16:10
@marob marob marked this pull request as ready for review June 5, 2024 16:37
@marob marob changed the title Angular upgrade Story #12308: Angular upgrade (10 -> 12) Jun 5, 2024
marob added 13 commits June 5, 2024 18:39
ng update @angular/core@v11-lts \
          @angular/cli@v11-lts \
          @angular-builders/custom-webpack@11.1.1 \
          @angular/pwa@v11-lts \
          @angular/material-moment-adapter@v11-lts \
          @angular/cdk@v11-lts \
          @angular-devkit/build-angular@v11-lts
npm run ng update @angular/core@v12-lts \
          @angular/cli@v12-lts \
          @angular-builders/custom-webpack@12.1.3 \
          @angular/pwa@0.1200.0-next.0 \
          @angular/material-moment-adapter@v12-lts \
          @angular/cdk@v12-lts \
          @angular-devkit/build-angular@v12-lts
@marob marob force-pushed the angular-upgrade branch from 8e8485b to faf4dc7 Compare June 5, 2024 16:42
@marob marob merged commit 76af46f into develop Jun 6, 2024
8 checks passed
@marob marob deleted the angular-upgrade branch June 6, 2024 14:49
@marob marob added this to the IT 137 milestone Jun 24, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

5 participants