Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Snyk] Upgrade react-scripts from 3.0.1 to 3.4.0 #95

Closed

Conversation

snyk-bot
Copy link
Contributor

Snyk has created this PR to upgrade react-scripts from 3.0.1 to 3.4.0.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
  • The recommended version is 11 versions ahead of your current version.
  • The recommended version was released a month ago, on 2020-02-14.

The recommended version fixes:

Severity Issue Exploit Maturity
Cross-site Scripting (XSS)
SNYK-JS-SERIALIZEJAVASCRIPT-536840
No Known Exploit
Release notes
Package name: react-scripts
  • 3.4.0 - 2020-02-14

    3.4.0 (2020-02-14)

    v3.4.0 is a minor release that adds new features, including support for SSL and setting PUBLIC_URL in development. It also includes a fix for Hot Module Reloading with CSS Modules as well as other bug fixes.

    🐛 Bug Fix

    • react-scripts
      • #8378 Downgrade style-loader to v0.23.1 due to CSS modules hot reload not working with v1.0.0 and above (@chybisov)
    • create-react-app, react-dev-utils, react-error-overlay
    • react-dev-utils
    • cra-template-typescript, cra-template
    • cra-template-typescript

    💅 Enhancement

    • react-dev-utils, react-scripts
    • cra-template-typescript
    • cra-template-typescript, cra-template
    • react-scripts
      • #5845 Add option to provide custom ssl certificates during development (@alexbrazier)

    📝 Documentation

    • cra-template-typescript, cra-template, react-dev-utils, react-error-overlay, react-scripts
    • Other

    🔨 Underlying Tools

    Committers: 18

    Migrating from 3.3.1 to 3.4.0

    Inside any created project that has not been ejected, run:

    npm install --save --save-exact react-scripts@3.4.0

    or

    yarn add --exact react-scripts@3.4.0
  • 3.3.1 - 2020-01-31

    3.3.1 (2020-01-31)

    v3.3.1 is a maintenance release that includes minor bug fixes and documentation updates.

    🐛 Bug Fix

    💅 Enhancement

    • react-error-overlay
    • cra-template-typescript
    • cra-template-typescript, cra-template, react-scripts
    • create-react-app
    • cra-template-typescript, cra-template
    • eslint-config-react-app
      • #7803 Remove error for @typescript-eslint/no-namespace (@szhu)

    📝 Documentation

    🏠 Internal

    🔨 Underlying Tools

    • babel-preset-react-app, create-react-app, react-dev-utils, react-error-overlay, react-scripts
    • react-dev-utils
    • babel-plugin-named-asset-import
    • create-react-app, react-app-polyfill, react-dev-utils, react-error-overlay, react-scripts
    • create-react-app, react-dev-utils, react-error-overlay
    • react-error-overlay, react-scripts
      • #8102 [Security] Update terser webpack plugin (@RDIL)

    Committers: 29

    Migrating from 3.3.0 to 3.3.1

    Inside any created project that has not been ejected, run:

    npm install --save --save-exact react-scripts@3.3.1

    or

    yarn add --exact react-scripts@3.3.1
  • 3.3.0 - 2019-12-05
  • 3.3.0-next.80 - 2019-12-04
  • 3.3.0-next.62 - 2019-11-14
  • 3.3.0-next.39 - 2019-10-24
  • 3.3.0-next.38 - 2019-10-24
  • 3.2.0 - 2019-10-03
  • 3.1.2 - 2019-09-19
  • 3.1.1 - 2019-08-13
  • 3.1.0 - 2019-08-09
  • 3.0.1 - 2019-05-08
from react-scripts GitHub release notes

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

@snieking snieking closed this Mar 21, 2020
@snieking snieking deleted the snyk-upgrade-91d8e8876314f91870b3b4c067770c72 branch March 21, 2020 18:56
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants