-
Notifications
You must be signed in to change notification settings - Fork 5.5k
build(deps): Bump lodash-es from 4.17.21 to 4.17.23 in /presto-ui/src #27051
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Conversation
|
|
Reviewer's guide (collapsed on small PRs)Reviewer's GuideUpdates the frontend dependency lodash-es from version 4.17.21 to 4.17.23 in presto-ui to address a security advisory, by adjusting the locked version in yarn.lock. File-Level Changes
Tips and commandsInteracting with Sourcery
Customizing Your ExperienceAccess your dashboard to:
Getting Help
|
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
84fdbed to
e8c17ce
Compare
e8c17ce to
8977ccf
Compare
|
@unidevel imported this issue as lakehouse/presto #27051 |
imjalpreet
left a comment
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Thanks, @Dilli-Babu-Godari
presto-ui/src/yarn.lock
Outdated
| @@ -3934,9 +3934,9 @@ locate-path@^7.1.0: | |||
| p-locate "^6.0.0" | |||
|
|
|||
| lodash-es@^4.17.21: | |||
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
nit: I think we should update the version here too
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Thanks for pointing this out. Updated.
9f154c2 to
f3606ac
Compare
yhwang
left a comment
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
/LGTM
37715f8 to
99ead88
Compare
|
@yhwang can we merge this PR ? |
|
@Dilli-Babu-Godari Can you rebase your branch? The current CI failures has been addressed in the latest master. |
af93a53 to
1991ae3
Compare
update version
1991ae3 to
9080db4
Compare
|
Need to re-run the test to meet the merging criteria. Done! Thanks! |
Description
Bumps lodash-es from 4.17.21 to 4.17.23. GHSA-xxjr-mmjv-4gpg
Motivation and Context
Impact
Test Plan
Contributor checklist
Release Notes
Please follow release notes guidelines and fill in the release notes below.