-
Notifications
You must be signed in to change notification settings - Fork 440
TEZ-4463: Upgrade jquery-ui to 1.13.2 due to CVE issues #259
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Conversation
This comment was marked as outdated.
This comment was marked as outdated.
This comment was marked as outdated.
This comment was marked as outdated.
This comment was marked as outdated.
This comment was marked as outdated.
|
@maheshrajus: can you please check why the tez-ui module fails? |
@abstractdog tez-ui module latest version 1.13.0 dependency failed to download with bower. Some how we need to pull this dependency with npm or other. I need to check this. any pointers/suggestions can help. [INFO] bower jquery-ui#1.13.0 ENORESTARGET No version found that was able to satisfy 1.13.0 |
|
💔 -1 overall
This message was automatically generated. |
|
regarding bower failure: jquery/jquery-ui#2068 |
|
@abstractdog yeah laszlo, i am checking about same dependency how we can achieve with npm. Let me check and confirm. |
This comment was marked as outdated.
This comment was marked as outdated.
|
💔 -1 overall
This message was automatically generated. |
|
for 1.13.0+jquery-ui version bower not supporting dependency. So changing bower to npm dependency way is complex and changes will be more. |
|
why is this PR closed? I believe we still need to address CVE-s, even if collecting dependencies from different sources might be challenging |
Upgrade jquery-ui to 1.13.2 due to CVE issues
Bower not supporting jquery 1.13.2 version so moving required files into tez-ui.