Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Snyk] Upgrade @testing-library/react from 15.0.7 to 16.0.0 #50

Closed
wants to merge 17 commits into from

Conversation

OKEAMAH
Copy link
Owner

@OKEAMAH OKEAMAH commented Jul 21, 2024

This PR was automatically created by Snyk using the credentials of a real user.


![snyk-top-banner](https://github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)

Snyk has created this PR to upgrade @testing-library/react from 15.0.7 to 16.0.0.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


⚠️ Warning: This PR contains major version upgrade(s), and may be a breaking change.

  • The recommended version is 1 version ahead of your current version.

  • The recommended version was released on 2 months ago.

Release notes
Package name: @testing-library/react
  • 16.0.0 - 2024-06-03

    16.0.0 (2024-06-03)

    Features

    • Move @ testing-library/dom and @ types/react-dom to peer dependencies (#1305) (a4744fa)

    BREAKING CHANGES

    • @ testing-library/dom was moved to a peer dependency and needs to be explicitly installed. This reduces the chance of having conflicting versions of @ testing-library/dom installed that frequently caused bugs when used with @ testing-library/user-event. We will also be able to allow new versions of @ testing-library/dom being used without a SemVer major release of @ testing-library/react by just widening the peer dependency.
      @ types/react-dom needs to be installed if you're typechecking files using @ testing-library/react.
  • 15.0.7 - 2024-05-07

    15.0.7 (2024-05-07)

    Bug Fixes

    • Ensure act is not any when React.act is not declared (#1323) (c1f2957)
from @testing-library/react GitHub release notes

Important

  • Warning: This PR contains a major version upgrade, and may be a breaking change.
  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

tuxcanfly and others added 17 commits April 5, 2024 18:25
build(deps): update go-da to v0.1.0

build(deps): update go-da to v0.2.0; add ctx

da: add cli flags for da config

da: add get timeout to da client

build(deps): bump local-celestia-devnet to v0.12.7

fix(cli): fix da rpc check

fix(cli): check return err

fix(da): blob data source reuse DataFromEVMTransactions
*Total -- 4,016.52kb -> 3,286.76kb (18.17%)

/indexer/ops/assets/indexer-service.png -- 84.46kb -> 53.04kb (37.21%)
/docs/postmortems/2023-04-26-transaction-delays/outage.png -- 36.86kb -> 28.22kb (23.45%)
/op-bindings/bindgen/bindgen_header.png -- 3,815.54kb -> 3,133.07kb (17.89%)
/indexer/ops/assets/architecture.png -- 27.82kb -> 24.53kb (11.84%)
/ufm-test-services/assets/ufm-ci-execution.svg -- 21.43kb -> 19.54kb (8.8%)
/ufm-test-services/assets/ufm-local-execution.svg -- 23.50kb -> 21.46kb (8.65%)
/docs/op-stack/src/assets/docs/understand/Celestia-logo-color-color.svg -- 6.90kb -> 6.90kb (0.01%)

Signed-off-by: ImgBotApp <[email protected]>
[ImgBot] Optimize images
Snyk has created this PR to upgrade change-case from 4.1.2 to 5.4.4.

See this package in npm:
change-case

See this project in Snyk:
https://app.snyk.io/org/okeamah/project/ec06289a-db6a-47b5-9391-082534603e7b?utm_source=github&utm_medium=referral&page=upgrade-pr
Snyk has created this PR to upgrade ethers from 5.7.2 to 6.12.1.

See this package in npm:
ethers

See this project in Snyk:
https://app.snyk.io/org/okeamah/project/f82b92d4-4628-4065-80af-cab505da2f8d?utm_source=github&utm_medium=referral&page=upgrade-pr
Snyk has created this PR to upgrade @testing-library/react from 14.3.1 to 15.0.7.

See this package in npm:
@testing-library/react

See this project in Snyk:
https://app.snyk.io/org/okeamah/project/ec06289a-db6a-47b5-9391-082534603e7b?utm_source=github&utm_medium=referral&page=upgrade-pr
<p>This PR was automatically created by Snyk using the credentials of a
real user.</p><br
/>![snyk-top-banner](https://github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)

### Snyk has created this PR to fix 2 vulnerabilities in the dockerfile
dependencies of this project.

Keeping your Docker base image up-to-date means you’ll benefit from
security fixes in the latest version of your chosen image.

#### Snyk changed the following file(s):

- `op-proposer/Dockerfile`

We recommend upgrading to `alpine:3`, as this image has only **1** known
vulnerabilities. To do this, merge this pull request, then verify your
application still works as expected.



#### Vulnerabilities that will be fixed with an upgrade:

|  | Issue | Score | 

:-------------------------:|:-------------------------|:-------------------------
![low
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/l.png
'low severity') | CVE-2024-5535
<br/>[SNYK-ALPINE318-OPENSSL-7413525](https://snyk.io/vuln/SNYK-ALPINE318-OPENSSL-7413525)
| &nbsp;&nbsp;**54**&nbsp;&nbsp;
![low
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/l.png
'low severity') | CVE-2024-5535
<br/>[SNYK-ALPINE318-OPENSSL-7413525](https://snyk.io/vuln/SNYK-ALPINE318-OPENSSL-7413525)
| &nbsp;&nbsp;**54**&nbsp;&nbsp;
![low
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/l.png
'low severity') | CVE-2024-4741
<br/>[SNYK-ALPINE318-OPENSSL-7413536](https://snyk.io/vuln/SNYK-ALPINE318-OPENSSL-7413536)
| &nbsp;&nbsp;**54**&nbsp;&nbsp;
![low
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/l.png
'low severity') | CVE-2024-4741
<br/>[SNYK-ALPINE318-OPENSSL-7413536](https://snyk.io/vuln/SNYK-ALPINE318-OPENSSL-7413536)
| &nbsp;&nbsp;**54**&nbsp;&nbsp;



---

> [!IMPORTANT]
>
> - Check the changes in this PR to ensure they won't cause issues with
your project.
> - Max score is 1000. Note that the real score may have changed since
the PR was raised.
> - This PR was automatically created by Snyk using the credentials of a
real user.

---

**Note:** _You are seeing this because you or someone else with access
to this repository has authorized Snyk to open fix PRs._

For more information: <img
src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiJlNDY3MmFlZi01ZjA3LTQyZmQtOTVlNy1jNGU5YTQxZGFhMTYiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6ImU0NjcyYWVmLTVmMDctNDJmZC05NWU3LWM0ZTlhNDFkYWExNiJ9fQ=="
width="0" height="0"/>
🧐 [View latest project
report](https://app.snyk.io/org/okeamah/project/69040f43-87d1-4129-8689-dbe74a50478a?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;fix-pr)
📜 [Customise PR
templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates)
🛠 [Adjust project
settings](https://app.snyk.io/org/okeamah/project/69040f43-87d1-4129-8689-dbe74a50478a?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;fix-pr/settings)
📚 [Read about Snyk's upgrade
logic](https://support.snyk.io/hc/en-us/articles/360003891078-Snyk-patches-to-fix-vulnerabilities)

---

**Learn how to fix vulnerabilities with free interactive lessons:**

🦉 [Learn about vulnerability in an interactive lesson of Snyk
Learn.](https://learn.snyk.io/?loc&#x3D;fix-pr)

[//]: #
'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"alpine","from":"3.18","to":"3"}],"env":"prod","issuesToFix":[{"exploit_maturity":"No
Known
Exploit","id":"SNYK-ALPINE318-OPENSSL-7413525","priority_score":54,"priority_score_factors":[{"name":"confidentiality"},{"name":"integrity"},{"name":"availability"},{"name":"scope"},{"name":"exploitCodeMaturity"},{"name":"userInteraction"},{"name":"privilegesRequired"},{"name":"attackComplexity"},{"name":"attackVector"},{"name":"epss","value":0.00044},{"name":"isTrending","value":false},{"name":"publicationDate","value":"Sat
Jun 29 2024 15:51:14 GMT+0000 (Coordinated Universal
Time)"},{"name":"isReachable","value":false},{"name":"isTransitive","value":false},{"name":"isMalicious","value":false},{"name":"businessCriticality","value":"high"},{"name":"relativeImportance","value":"low"},{"name":"relativePopularityRank","value":0},{"name":"impact","value":2.33},{"name":"likelihood","value":2.27},{"name":"scoreVersion","value":"V5"}],"severity":"low","title":"CVE-2024-5535"},{"exploit_maturity":"No
Known
Exploit","id":"SNYK-ALPINE318-OPENSSL-7413536","priority_score":54,"priority_score_factors":[{"name":"confidentiality"},{"name":"integrity"},{"name":"availability"},{"name":"scope"},{"name":"exploitCodeMaturity"},{"name":"userInteraction"},{"name":"privilegesRequired"},{"name":"attackComplexity"},{"name":"attackVector"},{"name":"epss","value":0.01055},{"name":"isTrending","value":false},{"name":"publicationDate","value":"Sat
Jun 29 2024 15:52:57 GMT+0000 (Coordinated Universal
Time)"},{"name":"isReachable","value":false},{"name":"isTransitive","value":false},{"name":"isMalicious","value":false},{"name":"businessCriticality","value":"high"},{"name":"relativeImportance","value":"low"},{"name":"relativePopularityRank","value":0},{"name":"impact","value":2.33},{"name":"likelihood","value":2.3},{"name":"scoreVersion","value":"V5"}],"severity":"low","title":"CVE-2024-4741"},{"exploit_maturity":"No
Known
Exploit","id":"SNYK-ALPINE318-OPENSSL-7413525","priority_score":54,"priority_score_factors":[{"name":"confidentiality"},{"name":"integrity"},{"name":"availability"},{"name":"scope"},{"name":"exploitCodeMaturity"},{"name":"userInteraction"},{"name":"privilegesRequired"},{"name":"attackComplexity"},{"name":"attackVector"},{"name":"epss","value":0.00044},{"name":"isTrending","value":false},{"name":"publicationDate","value":"Sat
Jun 29 2024 15:51:14 GMT+0000 (Coordinated Universal
Time)"},{"name":"isReachable","value":false},{"name":"isTransitive","value":false},{"name":"isMalicious","value":false},{"name":"businessCriticality","value":"high"},{"name":"relativeImportance","value":"low"},{"name":"relativePopularityRank","value":0},{"name":"impact","value":2.33},{"name":"likelihood","value":2.27},{"name":"scoreVersion","value":"V5"}],"severity":"low","title":"CVE-2024-5535"},{"exploit_maturity":"No
Known
Exploit","id":"SNYK-ALPINE318-OPENSSL-7413536","priority_score":54,"priority_score_factors":[{"name":"confidentiality"},{"name":"integrity"},{"name":"availability"},{"name":"scope"},{"name":"exploitCodeMaturity"},{"name":"userInteraction"},{"name":"privilegesRequired"},{"name":"attackComplexity"},{"name":"attackVector"},{"name":"epss","value":0.01055},{"name":"isTrending","value":false},{"name":"publicationDate","value":"Sat
Jun 29 2024 15:52:57 GMT+0000 (Coordinated Universal
Time)"},{"name":"isReachable","value":false},{"name":"isTransitive","value":false},{"name":"isMalicious","value":false},{"name":"businessCriticality","value":"high"},{"name":"relativeImportance","value":"low"},{"name":"relativePopularityRank","value":0},{"name":"impact","value":2.33},{"name":"likelihood","value":2.3},{"name":"scoreVersion","value":"V5"}],"severity":"low","title":"CVE-2024-4741"}],"prId":"e4672aef-5f07-42fd-95e7-c4e9a41daa16","prPublicId":"e4672aef-5f07-42fd-95e7-c4e9a41daa16","packageManager":"dockerfile","priorityScoreList":[54,54],"projectPublicId":"69040f43-87d1-4129-8689-dbe74a50478a","projectUrl":"https://app.snyk.io/org/okeamah/project/69040f43-87d1-4129-8689-dbe74a50478a?utm_source=github&utm_medium=referral&page=fix-pr","prType":"fix","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":["updated-fix-title","priorityScore"],"type":"auto","upgrade":["SNYK-ALPINE318-OPENSSL-7413525","SNYK-ALPINE318-OPENSSL-7413525","SNYK-ALPINE318-OPENSSL-7413536","SNYK-ALPINE318-OPENSSL-7413536"],"vulns":["SNYK-ALPINE318-OPENSSL-7413525","SNYK-ALPINE318-OPENSSL-7413536"],"patch":[],"isBreakingChange":false,"remediationStrategy":"vuln"}'
Snyk has created this PR to upgrade @testing-library/react from 15.0.7 to 16.0.0.

See this package in npm:
@testing-library/react

See this project in Snyk:
https://app.snyk.io/org/okeamah/project/ec06289a-db6a-47b5-9391-082534603e7b?utm_source=github&utm_medium=referral&page=upgrade-pr
Copy link

changeset-bot bot commented Jul 21, 2024

⚠️ No Changeset found

Latest commit: 7cc752f

Merging this PR will not cause a version bump for any packages. If these changes should not result in a new version, you're good to go. If these changes should result in a version bump, you need to add a changeset.

This PR includes no changesets

When changesets are added to this PR, you'll see the packages that this PR includes changesets for and the associated semver types

Click here to learn what changesets are, and how to add one.

Click here if you're a maintainer who wants to add a changeset to this PR

Copy link

@sourcery-ai sourcery-ai bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

We have skipped reviewing this pull request. Here's why:

  • It seems to have been created by a bot ('[Snyk]' found in title). We assume it knows what it's doing!
  • We don't review packaging changes - Let us know if you'd like us to change this.

Copy link

github-actions bot commented Aug 5, 2024

This PR is stale because it has been open 14 days with no activity. Remove stale label or comment or this will be closed in 5 days.

Copy link
Owner Author

@OKEAMAH OKEAMAH left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

We move

Copy link

github-actions bot commented Sep 1, 2024

This PR is stale because it has been open 14 days with no activity. Remove stale label or comment or this will be closed in 5 days.

@github-actions github-actions bot added the Stale label Sep 1, 2024
@github-actions github-actions bot closed this Sep 7, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

Successfully merging this pull request may close these issues.

4 participants