Skip to content

Dependencies: Update @babel/traverse and @babel/core to fix vulnerability#24670

Merged
valentinpalkovic merged 1 commit into
nextfrom
valentin/fix-babel-traverse-vulnerability
Nov 2, 2023
Merged

Dependencies: Update @babel/traverse and @babel/core to fix vulnerability#24670
valentinpalkovic merged 1 commit into
nextfrom
valentin/fix-babel-traverse-vulnerability

Conversation

@valentinpalkovic

Copy link
Copy Markdown
Contributor

Closes N/A

What I did

Updated @babel/traverse and @babel/core to fix vulnerability: https://security.snyk.io/vuln/SNYK-JS-BABELTRAVERSE-5962462

Checklist for Contributors

Testing

The changes in this PR are covered in the following automated tests:

  • stories
  • unit tests
  • integration tests
  • end-to-end tests

Manual testing

This section is mandatory for all contributions. If you believe no manual test is necessary, please state so explicitly. Thanks!

Documentation

  • Add or update documentation reflecting your changes
  • If you are deprecating/removing a feature, make sure to update
    MIGRATION.MD

Checklist for Maintainers

  • When this PR is ready for testing, make sure to add ci:normal, ci:merged or ci:daily GH label to it to run a specific set of sandboxes. The particular set of sandboxes can be found in code/lib/cli/src/sandbox-templates.ts

  • Make sure this PR contains one of the labels below:

    Available labels
    • bug: Internal changes that fixes incorrect behavior.
    • maintenance: User-facing maintenance tasks.
    • dependencies: Upgrading (sometimes downgrading) dependencies.
    • build: Internal-facing build tooling & test updates. Will not show up in release changelog.
    • cleanup: Minor cleanup style change. Will not show up in release changelog.
    • documentation: Documentation only changes. Will not show up in release changelog.
    • feature request: Introducing a new feature.
    • BREAKING CHANGE: Changes that break compatibility in some way with current major version.
    • other: Changes that don't fit in the above categories.

🦋 Canary release

This PR does not have a canary release associated. You can request a canary release of this pull request by mentioning the @storybookjs/core team here.

core team members can create a canary release here or locally with gh workflow run --repo storybookjs/storybook canary-release-pr.yml --field pr=<PR_NUMBER>

@valentinpalkovic valentinpalkovic added dependencies ci:normal Run our default set of CI jobs (choose this for most PRs). labels Nov 2, 2023
@valentinpalkovic valentinpalkovic self-assigned this Nov 2, 2023
@socket-security

Copy link
Copy Markdown

Updated and removed dependencies detected. Learn more about Socket for GitHub ↗︎

Packages Version New capabilities Transitives Size Publisher
@types/babel__plugin-transform-runtime 7.9.3...7.9.4 None +0/-0 3.6 kB types

🚮 Removed packages: @types/babel__preset-env@7.9.3

@valentinpalkovic valentinpalkovic merged commit abf73bd into next Nov 2, 2023
@valentinpalkovic valentinpalkovic deleted the valentin/fix-babel-traverse-vulnerability branch November 2, 2023 09:53
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

ci:normal Run our default set of CI jobs (choose this for most PRs). dependencies empathy

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants