-
Notifications
You must be signed in to change notification settings - Fork 4
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Apply security updates to EZID UI packages #519
Comments
Routine dependency scans ticket: #494 |
Joel provided fixes and documented changes in Pull request for Update EZID UI build tool packages to fix critical vulnerabilities |
Deployed branch |
Functional test by running |
|
@JoelCDL Hi Joel, I merged the pull request and the fixes cleared almost all Dependatbot alerts. Great job! Thank you! There are still two more high security alerts (https://github.com/CDLUC3/ezid/security/dependabot):
I will work on the EZID one. Can you take a look at the UI one and let me know if we need to do anything to clear it. Thank you Jing |
@jsjiang With the lodash.merge issue, you can click the "Create Dependabot security update" here, then merge in the change: https://github.com/CDLUC3/ezid/security/dependabot/8 |
@JoelCDL Got it. Thank you Joel! -Jing |
Failed to update
|
Deployed on ezid-prd 12/6. |
Apply security updates to the EZID UI packages
The text was updated successfully, but these errors were encountered: