[Snyk] Upgrade react-native from 0.42.3 to 0.73.6 #1
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR was automatically created by Snyk using the credentials of a real user.
Snyk has created this PR to upgrade react-native from 0.42.3 to 0.73.6.
ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
The recommended version fixes:
SNYK-JS-LODASH-1040724
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-LODASH-450202
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-LODASH-1040724
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-LODASH-450202
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-LODASH-567746
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-LODASH-608086
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-LODASH-73638
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
npm:base64-url:20180512
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-AJV-584908
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-ANSIREGEX-1583908
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-ASYNC-2441827
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-LODASH-73638
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-LODASHTEMPLATE-1088054
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-MERGE-1040469
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-MERGE-1042987
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-UAPARSERJS-610226
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-XMLDOM-3042242
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-Y18N-1021887
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-LODASH-73639
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-LODASH-1018905
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-LODASH-73639
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
npm:lodash:20180130
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-MINIMATCH-3050818
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-MINIMIST-559764
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-UAPARSERJS-1072471
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-UGLIFYJS-1727251
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-WS-1296835
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-XMLDOM-1084960
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-XMLDOM-1534562
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
npm:debug:20170905
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-MERGE-72553
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-MINIMIST-2429795
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-XMLDOM-3092935
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
npm:extend:20180424
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-MOMENT-2440688
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-MOMENT-2944238
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
npm:fresh:20170908
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
npm:negotiator:20160616
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-PLIST-2405644
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-JSONSCHEMA-1920922
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
npm:plist:20180219
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-QS-3153490
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
npm:qs:20170213
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-QS-3153490
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-SEMVER-3247795
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-SHELLQUOTE-1766506
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-TMPL-1583443
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-UAPARSERJS-1023599
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-LODASH-608086
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-YARGSPARSER-560381
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-MINIMIST-559764
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-MINIMIST-559764
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
npm:hoek:20180212
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-MORGAN-72579
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-HOSTEDGITINFO-1088355
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-JSON5-3182856
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-JSON5-3182856
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-LODASH-1018905
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-REQUEST-3361831
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-TOUGHCOOKIE-5672873
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-MINIMIST-2429795
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-MINIMIST-2429795
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
npm:mime:20170907
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
npm:ms:20170412
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
npm:ms:20170412
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
SNYK-JS-BABELTRAVERSE-5962463
Why? Proof of Concept exploit, Has a fix available, CVSS 7.2
(*) Note that the real score may have changed since the PR was raised.
Release notes
Package name: react-native
v0.73.6
Breaking
iOS specific
BUILD_FROM_SOURCE
toRCT_BUILD_HERMES_FROM_SOURCE
(51b80477c7 by @ cipolleschi)Fixed
iOS specific
Hermes dSYMS:
You can file issues or pick requests against this release here
To help you upgrade to this version, you can use the upgrade helper ⚛️
You can find the whole changelog history in the changelog.md file.
Changelog
Security
Changed
Fixed
How to Test
Generate a new project:
To help you upgrade to this version, you can use the upgrade helper ⚛️
See changes from this release in the changelog
Hermes dSYMS:
Help us testing 🧪
If you experience a regression, please file an Upgrade issue and file a pick request in the appropriate discussion: https://github.com/reactwg/react-native-releases/discussions/
v0.73.4
Fixed
react-native-*/Libraries/Core/InitializeCore
(562447be47 by @ tido64)Android
iOS
You can participate in the conversation on the status of this release in this discussion
To help you upgrade to this version, you can use the upgrade helper ⚛️
You can find the whole changelog history in the CHANGELOG.md file.
v0.72.12
Changed
iOS specific
Fixed
You can file issues or pick requests against this release here
To help you upgrade to this version, you can use the upgrade helper ⚛️
You can find the whole changelog history in the changelog.md file.
Changed
iOS specific
Fixed
iOS specific
You can participate in the conversation on the status of this release in this discussion
To help you upgrade to this version, you can use the upgrade helper ⚛️
You can find the whole changelog history in the CHANGELOG.md file.
Changelog
Security
How to Test
Generate a new project:
Hermes dSYMS:
Help us testing 🧪
If you experience a regression, please file an Upgrade issue and file a pick request in the appropriate discussion: https://github.com/reactwg/react-native-releases/discussions/
Changed
Android specific
Fixed
iOS specific
You can participate in the conversation on the status of this release in this discussion
To help you upgrade to this version, you can use the upgrade helper ⚛️
You can find the whole changelog history in the changelog.md file.