[Snyk] Upgrade antd from 5.19.4 to 5.20.0 #83
Closed
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Snyk has created this PR to upgrade antd from 5.19.4 to 5.20.0.
ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
The recommended version is 1 version ahead of your current version.
The recommended version was released on 22 days ago.
Issues fixed by the recommended upgrade:
SNYK-JS-LEGACYSWCHELPERS-7647380
SNYK-JS-SEMVER-3247795
SNYK-JS-BROWSERIFYSIGN-6037026
SNYK-JS-TAR-6476909
SNYK-JS-ELLIPTIC-7577916
SNYK-JS-ELLIPTIC-7577917
SNYK-JS-ELLIPTIC-7577918
SNYK-JS-FASTLOOPS-7417995
Release notes
Package name: antd
@ ctrl/tiny-color
with@ ant-design/fast-color
. #49846showUploadList
supportextra
for additional content. #50098 @ guoyunheswitcherLoadingIcon
. #49716 @ coding-icerange.editable
to dynamic add/remove handles. #49923range.editable
supportminCount
andmaxCount
. #49987dashed
,dotted
orsolid
. #49654 @ pinaki-08suffix
prop. #49674 @ coding-iceonClear
prop. #49905 @ li-jia-nantopLeft
,topRight
,bottomLeft
,bottomRight
zoom in transform origin not correct when target element width is too large. #50134transparent
state, it defaults to using a bright color instead of black color to enhance the user interaction experience. #50148@ ctrl/tiny-color
为@ ant-design/fast-color
。#49846showUploadList
添加extra
以支持渲染额外信息。#50098 @ guoyunheswitcherLoadingIcon
属性以支持自定义树节点的加载图标#49716 @ coding-icerange.editable
以动态添加/删除节点。#49923range.editable
支持minCount
与maxCount
以配置可编辑节点树。#49987dashed
(虚线)、dotted
(点线)或solid
(实线)的样式。#49654 @ pinaki-08suffix
属性。#49674 @ coding-iceonClear
回调,便于区分点击 x 清除和手动清除这两个行为。#49905 @ li-jia-nantopLeft
,topRight
,bottomLeft
,bottomRight
的弹出动画起始缩放中心有所偏移的问题。#50134transparent
状态进行颜色选取时,默认使用亮色以代替原本的纯黑色以提升用户交互体验。#50148uk_UA
本地化文案。#50178 @ Andrik264title
andcontent
do not exist. #50064 @ LLmoskkopacityImage
does not take effect. #50066 @ thinkasanyindeterminate
state. #50083bordered
mode. #49946 @ leefinder@ ant-design/cssinjs-utils
. #50030 @ YumoImertitle
和content
都不存在时 Overlay 仍显示的问题。#50064 @ LLmoskkopacityImage
不生效的问题。#50066 @ thinkasanyindeterminate
状态的 hover 样式。#50083bordered
模式下溢出容器的问题。#49946 @ leefinder@ ant-design/cssinjs-utils
。#50030 @ YumoImerImportant
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.
For more information:![](https://camo.githubusercontent.com/29fb39edcefb64f1157e6bd9ba2b2f6339ce5bef0d67ebb27a9d31e5bc9a8785/68747470733a2f2f6170692e7365676d656e742e696f2f76312f706978656c2f747261636b3f646174613d65794a33636d6c305a55746c65534936496e4a79576d785a634564485932527954485a7362306c596430645563566734576b4652546e4e434f5545774969776959573576626e6c746233567a535751694f694a6b4f4459354e6d4e6d4d6930355a4467334c545132593249744f5756694e5330344e324d7a5a574d345a474e695a4745694c434a6c646d567564434936496c425349485a705a58646c5a434973496e42796233426c636e52705a584d694f6e736963484a4a5a434936496d51344e6a6b32593259794c546c6b4f4463744e445a6a596930355a5749314c546733597a4e6c597a686b59324a6b59534a3966513d3d)
[//]: # 'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"antd","from":"5.19.4","to":"5.20.0"}],"env":"prod","hasFixes":true,"isBreakingChange":false,"isMajorUpgrade":false,"issuesToFix":[{"exploit_maturity":"mature","id":"SNYK-JS-LEGACYSWCHELPERS-7647380","issue_id":"SNYK-JS-LEGACYSWCHELPERS-7647380","priority_score":965,"priority_score_factors":[{"type":"maliciousPackage","label":true,"score":125},{"type":"exploit","label":"High","score":375},{"type":"cvssScore","label":"9.3","score":465},{"type":"scoreVersion","label":"v1","score":1}],"severity":"critical","title":"Malicious Package"},{"exploit_maturity":"proof-of-concept","id":"SNYK-JS-SEMVER-3247795","issue_id":"SNYK-JS-SEMVER-3247795","priority_score":482,"priority_score_factors":[{"type":"exploit","label":"Proof of Concept","score":107},{"type":"cvssScore","label":"7.5","score":375},{"type":"scoreVersion","label":"v1","score":1}],"severity":"high","title":"Regular Expression Denial of Service (ReDoS)"},{"exploit_maturity":"no-known-exploit","id":"SNYK-JS-BROWSERIFYSIGN-6037026","issue_id":"SNYK-JS-BROWSERIFYSIGN-6037026","priority_score":375,"priority_score_factors":[{"type":"cvssScore","label":"7.5","score":375},{"type":"scoreVersion","label":"v1","score":1}],"severity":"high","title":"Improper Verification of Cryptographic Signature"},{"exploit_maturity":"proof-of-concept","id":"SNYK-JS-TAR-6476909","issue_id":"SNYK-JS-TAR-6476909","priority_score":432,"priority_score_factors":[{"type":"exploit","label":"Proof of Concept","score":107},{"type":"cvssScore","label":"6.5","score":325},{"type":"scoreVersion","label":"v1","score":1}],"severity":"medium","title":"Uncontrolled Resource Consumption ('Resource Exhaustion')"},{"exploit_maturity":"proof-of-concept","id":"SNYK-JS-ELLIPTIC-7577916","issue_id":"SNYK-JS-ELLIPTIC-7577916","priority_score":634,"priority_score_factors":[{"type":"exploit","label":"Proof of Concept","score":107},{"type":"freshness","label":true,"score":71},{"type":"cvssScore","label":"9.1","score":455},{"type":"scoreVersion","label":"v1","score":1}],"severity":"critical","title":"Improper Verification of Cryptographic Signature"},{"exploit_maturity":"proof-of-concept","id":"SNYK-JS-ELLIPTIC-7577917","issue_id":"SNYK-JS-ELLIPTIC-7577917","priority_score":634,"priority_score_factors":[{"type":"exploit","label":"Proof of Concept","score":107},{"type":"freshness","label":true,"score":71},{"type":"cvssScore","label":"9.1","score":455},{"type":"scoreVersion","label":"v1","score":1}],"severity":"critical","title":"Improper Verification of Cryptographic Signature"},{"exploit_maturity":"proof-of-concept","id":"SNYK-JS-ELLIPTIC-7577918","issue_id":"SNYK-JS-ELLIPTIC-7577918","priority_score":634,"priority_score_factors":[{"type":"exploit","label":"Proof of Concept","score":107},{"type":"freshness","label":true,"score":71},{"type":"cvssScore","label":"9.1","score":455},{"type":"scoreVersion","label":"v1","score":1}],"severity":"critical","title":"Improper Verification of Cryptographic Signature"},{"exploit_maturity":"proof-of-concept","id":"SNYK-JS-FASTLOOPS-7417995","issue_id":"SNYK-JS-FASTLOOPS-7417995","priority_score":452,"priority_score_factors":[{"type":"exploit","label":"Proof of Concept","score":107},{"type":"cvssScore","label":"6.9","score":345},{"type":"scoreVersion","label":"v1","score":1}],"severity":"medium","title":"Prototype Pollution"}],"prId":"d8696cf2-9d87-46cb-9eb5-87c3ec8dcbda","prPublicId":"d8696cf2-9d87-46cb-9eb5-87c3ec8dcbda","packageManager":"npm","priorityScoreList":[965,482,375,432,634,634,634,452],"projectPublicId":"a17e40dc-2e1a-4af7-8e87-779da9392295","projectUrl":"https://app.snyk.io/org/fantasticmrdavid/project/a17e40dc-2e1a-4af7-8e87-779da9392295?utm_source=github&utm_medium=referral&page=upgrade-pr","prType":"upgrade","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":["priorityScore"],"type":"auto","upgrade":["SNYK-JS-LEGACYSWCHELPERS-7647380","SNYK-JS-SEMVER-3247795","SNYK-JS-BROWSERIFYSIGN-6037026","SNYK-JS-TAR-6476909","SNYK-JS-ELLIPTIC-7577916","SNYK-JS-ELLIPTIC-7577917","SNYK-JS-ELLIPTIC-7577918","SNYK-JS-FASTLOOPS-7417995"],"upgradeInfo":{"versionsDiff":1,"publishedDate":"2024-08-03T13:57:04.477Z"},"vulns":["SNYK-JS-LEGACYSWCHELPERS-7647380","SNYK-JS-SEMVER-3247795","SNYK-JS-BROWSERIFYSIGN-6037026","SNYK-JS-TAR-6476909","SNYK-JS-ELLIPTIC-7577916","SNYK-JS-ELLIPTIC-7577917","SNYK-JS-ELLIPTIC-7577918","SNYK-JS-FASTLOOPS-7417995"]}'