react-native-share-pdf
react-native-share-pdf copied to clipboard
[Snyk] Upgrade react-native from 0.58.3 to 0.66.1
Snyk has created this PR to upgrade react-native from 0.58.3 to 0.66.1.
:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
- The recommended version is 79 versions ahead of your current version.
- The recommended version was released a month ago, on 2021-10-15.
The recommended version fixes:
Severity | Issue | PriorityScore (*) | Exploit Maturity |
---|---|---|---|
![]() |
Regular Expression Denial of Service (ReDoS) npm:plist:20180219 |
676/1000 Why? Proof of Concept exploit, Has a fix available, CVSS 7.1 |
Proof of Concept |
![]() |
Prototype Pollution SNYK-JS-MERGE-1042987 |
676/1000 Why? Proof of Concept exploit, Has a fix available, CVSS 7.1 |
Proof of Concept |
![]() |
Prototype Pollution SNYK-JS-MERGE-1040469 |
676/1000 Why? Proof of Concept exploit, Has a fix available, CVSS 7.1 |
No Known Exploit |
![]() |
Denial of Service (DoS) npm:mem:20180117 |
676/1000 Why? Proof of Concept exploit, Has a fix available, CVSS 7.1 |
No Known Exploit |
![]() |
Prototype Pollution SNYK-JS-YARGSPARSER-560381 |
676/1000 Why? Proof of Concept exploit, Has a fix available, CVSS 7.1 |
Proof of Concept |
![]() |
Improper Input Validation SNYK-JS-XMLDOM-1534562 |
676/1000 Why? Proof of Concept exploit, Has a fix available, CVSS 7.1 |
No Known Exploit |
![]() |
XML External Entity (XXE) Injection SNYK-JS-XMLDOM-1084960 |
676/1000 Why? Proof of Concept exploit, Has a fix available, CVSS 7.1 |
No Known Exploit |
![]() |
Denial of Service SNYK-JS-NODEFETCH-674311 |
676/1000 Why? Proof of Concept exploit, Has a fix available, CVSS 7.1 |
No Known Exploit |
![]() |
Prototype Pollution SNYK-JS-MINIMIST-559764 |
676/1000 Why? Proof of Concept exploit, Has a fix available, CVSS 7.1 |
Proof of Concept |
![]() |
Regular Expression Denial of Service (ReDoS) SNYK-JS-GLOBPARENT-1016905 |
676/1000 Why? Proof of Concept exploit, Has a fix available, CVSS 7.1 |
Proof of Concept |
![]() |
Regular Expression Denial of Service (ReDoS) npm:braces:20180219 |
676/1000 Why? Proof of Concept exploit, Has a fix available, CVSS 7.1 |
Proof of Concept |
(*) Note that the real score may have changed since the PR was raised.
Release notes
Package name: react-native
-
0.66.1 - 2021-10-15
0.66.1 is out with some fixes:
Fixed
- Fix for unable to find find-node.sh in react-native-xcode.sh (cc59a7c by @ garethknowles)
- For Android, general fixes to Appearance API and also fixes
AppCompatDelegate.setDefaultNightMode()
. For iOS, now works correctly when settingwindow.overrideUserInterfaceStyle
(25a2c60 by @ mrbrentkelly) - Fix Android border positioning regression (d1a33cd by @ oblador)
You can participate in the conversation on the status of this release at this discussion.
To help you upgrade to this version, you can use the upgrade helper
⚛️
You can find the whole changelog history over at
react-native-releases
. - 0.66.0 - 2021-10-01
- 0.66.0-rc.4 - 2021-09-24
- 0.66.0-rc.3 - 2021-09-17
- 0.66.0-rc.2 - 2021-09-10
- 0.66.0-rc.1 - 2021-09-01
- 0.66.0-rc.0 - 2021-08-27
-
0.65.2 - 2021-11-04
[0.65.2] Bump version numbers
- 0.65.1 - 2021-08-19
- 0.65.0 - 2021-08-17
- 0.65.0-rc.4 - 2021-08-11
- 0.65.0-rc.3 - 2021-07-23
- 0.65.0-rc.2 - 2021-06-18
- 0.65.0-rc.1 - 2021-06-17
- 0.65.0-rc.0 - 2021-06-09
-
0.64.3 - 2021-11-04
0.64.3 is out with a pick of Android Appearance API support (e94f9fa7 by @ mrbrentkelly)
If you have concerns or follow-up, please start or contribute to a relevant 0.64.3 discussion here
To help you upgrade to this version, you can use the upgrade helper
⚛️
You can find the whole changelog history in the changelog.md file.
- 0.64.2 - 2021-06-03
- 0.64.1 - 2021-05-05
- 0.64.0 - 2021-03-12
- 0.64.0-rc.4 - 2021-03-01
- 0.64.0-rc.3 - 2021-02-05
- 0.64.0-rc.2 - 2020-12-18
- 0.64.0-rc.1 - 2020-11-25
- 0.64.0-rc.0 - 2020-11-23
- 0.63.4 - 2020-11-30
- 0.63.3 - 2020-09-29
- 0.63.2 - 2020-07-22
- 0.63.1 - 2020-07-14
- 0.63.0 - 2020-07-08
- 0.63.0-rc.1 - 2020-05-04
- 0.63.0-rc.0 - 2020-04-16
- 0.62.3 - 2021-05-05
- 0.62.2 - 2020-04-08
- 0.62.1 - 2020-04-03
- 0.62.0 - 2020-03-26
- 0.62.0-rc.5 - 2020-03-07
- 0.62.0-rc.4 - 2020-03-06
- 0.62.0-rc.3 - 2020-02-25
- 0.62.0-rc.2 - 2020-02-13
- 0.62.0-rc.1 - 2020-01-21
- 0.62.0-rc.0 - 2019-12-18
- 0.61.5 - 2019-11-23
- 0.61.4 - 2019-11-04
- 0.61.3 - 2019-10-29
- 0.61.2 - 2019-10-02
- 0.61.1 - 2019-09-25
- 0.61.0 - 2019-09-24
- 0.61.0-rc.3 - 2019-09-10
- 0.61.0-rc.2 - 2019-09-04
- 0.61.0-rc.0 - 2019-08-27
- 0.60.6 - 2019-09-24
- 0.60.5 - 2019-08-13
- 0.60.4 - 2019-07-18
- 0.60.3 - 2019-07-11
- 0.60.2 - 2019-07-11
- 0.60.1 - 2019-07-11
- 0.60.0 - 2019-07-03
- 0.60.0-rc.3 - 2019-06-28
- 0.60.0-rc.2 - 2019-06-20
- 0.60.0-rc.1 - 2019-06-10
- 0.60.0-rc.0 - 2019-05-30
- 0.59.10 - 2019-07-02
- 0.59.9 - 2019-06-05
- 0.59.8 - 2019-05-08
- 0.59.7 - 2019-05-08
- 0.59.6 - 2019-04-18
- 0.59.5 - 2019-04-17
- 0.59.4 - 2019-04-08
- 0.59.3 - 2019-04-01
- 0.59.2 - 2019-03-25
- 0.59.1 - 2019-03-14
- 0.59.0 - 2019-03-12
- 0.59.0-rc.3 - 2019-02-27
- 0.59.0-rc.2 - 2019-02-18
- 0.59.0-rc.1 - 2019-02-15
- 0.59.0-rc.0 - 2019-02-13
- 0.58.6 - 2019-02-28
- 0.58.5 - 2019-02-19
- 0.58.4 - 2019-02-06
- 0.58.3 - 2019-01-28
Commit messages
Package name: react-native
- d48ed4a [0.66.1] Bump version numbers
- 80e5abd Fix Android border positioning regression (#32398)
- e94f9fa Addressing various issues with the Appearance API (#28823) (#29106)
- bd01f16 Fix: find-node.sh location in react-native-xcode.sh script (#32227)
- 09a21f0 [0.66.0] Bump version numbers
- d47fd4a [0.66.0-rc.4] Bump version numbers
- a6a983d OSS: bump-oss-version -- update Podfile.lock later in the flow
- ef280d6 [LOCAL] Port react-native-codegen new .gitignore from main
- 9967318 OSS: update Podfile.lock automatically when bumping release version
- 6b014e8 Don’t hard-code CocoaPods’s sandbox path (#32243)
- ab50c6e [0.66.0-rc.3] Bump version numbers
- dc453da Update rn-tester Podfile.lock to prepare for 0.66.0-rc.3
- 8b6d7fd Link RCT-Folly against libc++abi
- 614a370 [0.66.0-rc.2] Bump version numbers
- c97015d Update Podfile.lock
- c282c2d Bump Hermes pod to 0.9.0
- 2133172 Bump Hermes npm to 0.9.0
- 013e623 Revert the Android specific max heap size GCConfig
- b4a1d2b Make JSI a dynamic library
- 0d7586c [LOCAL] postfix timestamp to bust yarn cache
- d552362 [0.66.0-rc.1] Bump version numbers
- 1594af1 Copy repo-config dependencies for bumping release version
- 038cdda Switch order of search libraries to fix M1 build error
- ea5109f OSS: add Xcode 12.5 + M1 machines CocoaPods post_install workaround
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.
For more information:
🔕 Ignore this dependency or unsubscribe from future upgrade PRs