Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

SFI: Component Governance fixes 6/19/24 #13367

Merged
merged 4 commits into from
Jun 20, 2024

Conversation

jonthysell
Copy link
Contributor

@jonthysell jonthysell commented Jun 19, 2024

Description

This PR addresses Component Governance alerts for 6/19/24.

Type of Change

  • Bug fix (non-breaking change which fixes an issue)

Why

Resolve Component Governance alerts.

What

Updated versions of braces (via updating globby) and ws (via resolution). Had to use a resolution for ws because I wasn't able to bump webdriverio because it doesn't work with WinAppDriver, see microsoft/WinAppDriver#1543.

Screenshots

N/A

Testing

Verified e2e-test-app still works

Changelog

Should this change be included in the release notes: no

Microsoft Reviewers: Open in CodeFlow

@jonthysell jonthysell added security Pull requests that address a security vulnerability Area: Compliance labels Jun 19, 2024
@jonthysell jonthysell requested a review from a team as a code owner June 19, 2024 20:45
@jonthysell jonthysell enabled auto-merge (squash) June 19, 2024 20:51
@jonthysell jonthysell merged commit 3c44fd2 into microsoft:main Jun 20, 2024
57 checks passed
@jonthysell jonthysell deleted the cg619_main branch June 24, 2024 21:24
jonthysell added a commit to jonthysell/react-native-windows that referenced this pull request Jun 24, 2024
This PR backports microsoft#13367 to 0.74.

## Description

This PR addresses Component Governance alerts for 6/19/24.

### Type of Change
- Bug fix (non-breaking change which fixes an issue)

### Why
Resolve Component Governance alerts.

### What
Updated versions of `braces` (via updating `globby`) and `ws` (via resolution). Had to use a resolution for `ws` because I wasn't able to bump `webdriverio` because it doesn't work with WinAppDriver, see microsoft/WinAppDriver#1543.

## Screenshots
N/A

## Testing
Verified e2e-test-app still works

## Changelog
Should this change be included in the release notes: no
jonthysell added a commit that referenced this pull request Jun 25, 2024
This PR backports #13367 to 0.74.

## Description

This PR addresses Component Governance alerts for 6/19/24.

### Type of Change
- Bug fix (non-breaking change which fixes an issue)

### Why
Resolve Component Governance alerts.

### What
Updated versions of `braces` (via updating `globby`) and `ws` (via resolution). Had to use a resolution for `ws` because I wasn't able to bump `webdriverio` because it doesn't work with WinAppDriver, see microsoft/WinAppDriver#1543.

## Screenshots
N/A

## Testing
Verified e2e-test-app still works

## Changelog
Should this change be included in the release notes: no
jonthysell added a commit to jonthysell/react-native-windows that referenced this pull request Jun 26, 2024
This PR backports microsoft#13367 to 0.73.

## Description

This PR addresses Component Governance alerts for 6/19/24.

### Type of Change
- Bug fix (non-breaking change which fixes an issue)

### Why
Resolve Component Governance alerts.

### What
Updated versions of `braces` (via updating `globby`) and `ws` (via resolution). Had to use a resolution for `ws` because I wasn't able to bump `webdriverio` because it doesn't work with WinAppDriver, see microsoft/WinAppDriver#1543.

## Screenshots
N/A

## Testing
Verified e2e-test-app still works

## Changelog
Should this change be included in the release notes: no
jonthysell added a commit that referenced this pull request Jun 26, 2024
This PR backports #13367 to 0.73.

## Description

This PR addresses Component Governance alerts for 6/19/24.

### Type of Change
- Bug fix (non-breaking change which fixes an issue)

### Why
Resolve Component Governance alerts.

### What
Updated versions of `braces` (via updating `globby`), `ws` (via resolution), `ip` (via updating `@react-native-community/cli-doctor` and `socks`), and `tar`. Had to use a resolution for `ws` because I wasn't able to bump `webdriverio` because it doesn't work with WinAppDriver, see microsoft/WinAppDriver#1543.

## Screenshots
N/A

## Testing
Verified e2e-test-app still works

## Changelog
Should this change be included in the release notes: no
jonthysell added a commit to jonthysell/react-native-windows that referenced this pull request Jun 26, 2024
This PR backports microsoft#13367 to 0.72.

## Description

This PR addresses Component Governance alerts for 6/19/24.

### Type of Change
- Bug fix (non-breaking change which fixes an issue)

### Why
Resolve Component Governance alerts.

### What
Updated versions of `braces` (via updating `globby`), `ws` (via resolution), `ip` (via updating `@react-native-community/cli-doctor` and `socks`), and `tar`. Had to use a resolution for `ws` because I wasn't able to bump `webdriverio` because it doesn't work with WinAppDriver, see microsoft/WinAppDriver#1543.

## Screenshots
N/A

## Testing
Verified e2e-test-app still works

## Changelog
Should this change be included in the release notes: no
jonthysell added a commit that referenced this pull request Jun 28, 2024
This PR backports #13367 to 0.72.

## Description

This PR addresses Component Governance alerts for 6/19/24.

### Type of Change
- Bug fix (non-breaking change which fixes an issue)

### Why
Resolve Component Governance alerts.

### What
Updated versions of `braces` (via updating `globby`), `ws` (via resolution), `ip` (via updating `@react-native-community/cli-doctor` and `socks`), and `tar`. Had to use a resolution for `ws` because I wasn't able to bump `webdriverio` because it doesn't work with WinAppDriver, see microsoft/WinAppDriver#1543.

## Screenshots
N/A

## Testing
Verified e2e-test-app still works

## Changelog
Should this change be included in the release notes: no
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Area: Compliance security Pull requests that address a security vulnerability
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants