stable

Clone or download

Read-only

request #18413: Update to DOMPurify 2.2.3

A security issue has been identified: https://github.com/cure53/DOMPurify/releases/tag/2.2.3 Dependency cannot be upgraded in the API Explorer plugin because for some reasons the version has been locked by swagger-ui [0]. However, in our specific context the issue should not have any security implications in the explorer. [0] https://github.com/swagger-api/swagger-ui/pull/6642 Change-Id: I322e7c38b15214816ff6799e7de84de924058183

Modified Files

Name
M plugins/document/package-lock.json +3 −3 Go to diff View file
M plugins/git/package-lock.json +3 −3 Go to diff View file
M plugins/label/package-lock.json +3 −3 Go to diff View file
M plugins/projectmilestones/package-lock.json +3 −3 Go to diff View file
M plugins/taskboard/package-lock.json +3 −3 Go to diff View file
M plugins/taskboard/package.json +1 −1 Go to diff View file
M plugins/testmanagement/package-lock.json +3 −3 Go to diff View file
M plugins/tracker/package-lock.json +3 −3 Go to diff View file
M plugins/tracker/package.json +1 −1 Go to diff View file
M src/package-lock.json +3 −3 Go to diff View file
M src/package.json +1 −1 Go to diff View file
M src/scripts/list-picker/package-lock.json +3 −3 Go to diff View file
M src/scripts/list-picker/package.json +1 −1 Go to diff View file
M src/themes/tlp/package-lock.json +3 −3 Go to diff View file
M src/themes/tlp/package.json +1 −1 Go to diff View file