Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore(deps): update dependency jquery to version .x 🌟 #4243

Closed
wants to merge 1 commit into from

Conversation

renovate[bot]
Copy link
Contributor

@renovate renovate bot commented May 19, 2019

This PR contains the following updates:

Package Type Update Change References
jquery devDependencies major 2.2.4 -> 3.4.0 homepage, source

GitHub Vulnerability Alerts

CVE-2016-10707

jQuery before 3.0.0 is vulnerable to Denial of Service (DoS) due to removing a logic that lowercased attribute names. Any attribute getter using a mixed-cased name for boolean attributes goes into an infinite recursion, exceeding the stack call limit.

CVE-2015-9251

jQuery before 3.0.0 is vulnerable to Cross-site Scripting (XSS) attacks when a cross-domain Ajax request is performed without the dataType option, causing text/javascript responses to be executed.

CVE-2019-11358

jQuery before 3.4.0, as used in Drupal, Backdrop CMS, and other products, mishandles jQuery.extend(true, {}, ...) because of Object.prototype pollution. If an unsanitized source object contained an enumerable proto property, it could extend the native Object.prototype.


Release Notes

jquery/jquery

v3.4.0

Compare Source


Renovate configuration

📅 Schedule: "" in timezone America/New_York.

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

♻️ Rebasing: Whenever PR becomes conflicted, or if you modify the PR title to begin with "rebase!".

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Renovate Bot. View repository job log here.

@renovate renovate bot added renovate Triggered by renovatebot type: dependencies labels May 19, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 19, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 19, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 20, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 20, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 20, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 20, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 20, 2019
@renovate renovate bot force-pushed the renovate/npm-jquery-vulnerability branch from 64c3abd to 8b57d78 Compare May 20, 2019 17:04
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 20, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 20, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 20, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 20, 2019
@renovate renovate bot force-pushed the renovate/npm-jquery-vulnerability branch from 8b57d78 to 5f8791e Compare May 21, 2019 04:18
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): update dependency jquery to version .x 🌟 May 21, 2019
@renovate renovate bot changed the title chore(deps): update dependency jquery to version .x 🌟 chore(deps): update dependency jquery to version .x 🌟 May 21, 2019
@renovate renovate bot force-pushed the renovate/npm-jquery-vulnerability branch from 5f8791e to 67c75e0 Compare May 21, 2019 06:12
@renovate renovate bot changed the title chore(deps): update dependency jquery to version .x 🌟 chore(deps): update dependency jquery to version .x 🌟 May 21, 2019
@renovate renovate bot changed the title chore(deps): update dependency jquery to version .x 🌟 chore(deps): update dependency jquery to version .x 🌟 May 21, 2019
@renovate renovate bot changed the title chore(deps): update dependency jquery to version .x 🌟 chore(deps): update dependency jquery to version .x 🌟 May 21, 2019
@renovate renovate bot force-pushed the renovate/npm-jquery-vulnerability branch from 67c75e0 to 3e55023 Compare May 21, 2019 15:10
@renovate renovate bot changed the title chore(deps): update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 21, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 21, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 21, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 21, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 21, 2019
@renovate renovate bot force-pushed the renovate/npm-jquery-vulnerability branch from 3e55023 to 15e324d Compare May 21, 2019 23:08
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 21, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 22, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 27, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 27, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 27, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 27, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 27, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 27, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 27, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 27, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 27, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 28, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 28, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 28, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 28, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 28, 2019
@renovate renovate bot force-pushed the renovate/npm-jquery-vulnerability branch from 582e05d to 40cb2b5 Compare May 28, 2019 19:09
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 28, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 28, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 28, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 29, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 29, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 29, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 29, 2019
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): Update dependency jquery to version .x 🌟 May 29, 2019
@renovate renovate bot force-pushed the renovate/npm-jquery-vulnerability branch from 40cb2b5 to 5fd2305 Compare May 29, 2019 08:18
@renovate renovate bot changed the title chore(deps): Update dependency jquery to version .x 🌟 chore(deps): update dependency jquery to version .x 🌟 May 29, 2019
@jennifer-shehane
Copy link
Member

Close in favor of #3575

@renovate
Copy link
Contributor Author

renovate bot commented May 29, 2019

Renovate Ignore Notification

As this PR has been closed unmerged, Renovate will ignore this upgrade and you will not receive PRs for any future 3.x releases. However, if you upgrade to 3.x manually then Renovate will then reenable updates for minor and patch updates automatically.

If this PR was closed by mistake or you changed your mind, you can simply rename this PR and you will soon get a fresh replacement PR opened.

@renovate renovate bot deleted the renovate/npm-jquery-vulnerability branch May 29, 2019 08:24
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
renovate Triggered by renovatebot type: dependencies
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants