build(deps): Bump lodash-es from 4.17.21 to 4.17.23 in /presto-ui/src#27051
build(deps): Bump lodash-es from 4.17.21 to 4.17.23 in /presto-ui/src#27051yhwang merged 1 commit intoprestodb:masterfrom
Conversation
|
|
Reviewer's guide (collapsed on small PRs)Reviewer's GuideUpdates the frontend dependency lodash-es from version 4.17.21 to 4.17.23 in presto-ui to address a security advisory, by adjusting the locked version in yarn.lock. File-Level Changes
Tips and commandsInteracting with Sourcery
Customizing Your ExperienceAccess your dashboard to:
Getting Help
|
84fdbed to
e8c17ce
Compare
e8c17ce to
8977ccf
Compare
|
@unidevel imported this issue as lakehouse/presto #27051 |
imjalpreet
left a comment
There was a problem hiding this comment.
Thanks, @Dilli-Babu-Godari
presto-ui/src/yarn.lock
Outdated
| @@ -3934,9 +3934,9 @@ locate-path@^7.1.0: | |||
| p-locate "^6.0.0" | |||
|
|
|||
| lodash-es@^4.17.21: | |||
There was a problem hiding this comment.
nit: I think we should update the version here too
There was a problem hiding this comment.
Thanks for pointing this out. Updated.
9f154c2 to
f3606ac
Compare
37715f8 to
99ead88
Compare
|
@yhwang can we merge this PR ? |
|
@Dilli-Babu-Godari Can you rebase your branch? The current CI failures has been addressed in the latest master. |
af93a53 to
1991ae3
Compare
update version
1991ae3 to
9080db4
Compare
|
Need to re-run the test to meet the merging criteria. Done! Thanks! |
Description
Bumps lodash-es from 4.17.21 to 4.17.23. GHSA-xxjr-mmjv-4gpg
Motivation and Context
Impact
Test Plan
Contributor checklist
Release Notes
Please follow release notes guidelines and fill in the release notes below.