Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Snyk] Upgrade @chakra-ui/icons from 1.1.2 to 1.1.7 #355

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

SuperSuperDev
Copy link
Owner

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade @chakra-ui/icons from 1.1.2 to 1.1.7.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 5 versions ahead of your current version.
  • The recommended version was released 2 years ago, on 2022-02-20.

The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Improper Verification of Cryptographic Signature
SNYK-JS-BROWSERIFYSIGN-6037026
375/1000
Why? CVSS 7.5
No Known Exploit
Regular Expression Denial of Service (ReDoS)
SNYK-JS-SEMVER-3247795
375/1000
Why? CVSS 7.5
Proof of Concept
Information Exposure
SNYK-JS-NANOID-2332193
375/1000
Why? CVSS 7.5
Proof of Concept
Prototype Pollution
SNYK-JS-JSON5-3182856
375/1000
Why? CVSS 7.5
Proof of Concept
Prototype Pollution
SNYK-JS-MINIMIST-2429795
375/1000
Why? CVSS 7.5
Proof of Concept
Information Exposure
SNYK-JS-FOLLOWREDIRECTS-2396346
375/1000
Why? CVSS 7.5
No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: @chakra-ui/icons
  • 1.1.7 - 2022-02-20
  • 1.1.6 - 2022-02-17
  • 1.1.5 - 2022-02-05
  • 1.1.4 - 2022-02-04
  • 1.1.3 - 2022-01-25
  • 1.1.2 - 2021-12-09
from @chakra-ui/icons GitHub release notes
Commit messages
Package name: @chakra-ui/icons
  • ba2fe6c ci(changesets): version packages (#5627)
  • 54a13cd docs: update .changelogrc (#5626)
  • e1fe48c chore: add changeset for all packages
  • 1fceab6 docs: add changelog
  • 3022724 ci(changesets): version packages (#5539)
  • 13efce9 docs(changelog): 651bec5b1999ec3edbcbbee297fc5b6ecef53f34 (#5535)
  • 651bec5 chore: remove version bump for all packages
  • b0da6e6 feat(styled-system): allow theme types to be defined using module augmentation (#5579)
  • 5aa79f8 fix: fix useAriaHidden deps (#5422)
  • 99c92df fix: use sorted breakpoints in useBreakpointValue (#5625)
  • 085bbcc chore: update changesets
  • 0416e07 chore: update storybook instructions (#5624)
  • 0542b8a fix(accordion): #5593 introduce styles.root for Accordion (#5595)
  • e5e0f25 feat: allow all dom elements for the chakra factory (#5508)
  • be02865 chore(deps): bump url-parse from 1.5.3 to 1.5.7 (#5616)
  • 20b7a19 chore: add changeset for all packages
  • 24d285d chore: disable PR releases for now
  • a870e6b fix: use sorted breakpoints in useBreakpoint (#5576)
  • 44c9fab fix(use-checkbox): add form-control support to use-checkbox (#5564)
  • b0ff068 chore(deps): bump follow-redirects from 1.14.7 to 1.14.8 (#5580)
  • 5d4abe4 fix: not overwritable aria label prop on TagCloseButton (#5599)
  • c2bcba1 fix: typo in CreateIconOptions comment (#5597)
  • ead2bd6 chore(deps): bump follow-redirects in /examples/gatsby (#5578)
  • d24f935 Merge pull request #5574 from chakra-ui/docs/show-hide-props

Compare


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants