opal icon indicating copy to clipboard operation
opal copied to clipboard

[Snyk] Upgrade @docusaurus/preset-classic from 2.3.1 to 2.4.3

Open obsd opened this issue 7 months ago • 1 comments

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade @docusaurus/preset-classic from 2.3.1 to 2.4.3.

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 3 versions ahead of your current version.
  • The recommended version was released 3 months ago, on 2023-09-20.

The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Incomplete List of Disallowed Inputs
SNYK-JS-BABELTRAVERSE-5962462
465/1000
Why? CVSS 9.3
No Known Exploit
Regular Expression Denial of Service (ReDoS)
SNYK-JS-SEMVER-3247795
465/1000
Why? CVSS 9.3
Proof of Concept

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: @docusaurus/preset-classic
  • 2.4.3 - 2023-09-20

    2.4.3 (2023-09-20)

    🐛 Bug Fix

    • docusaurus-plugin-content-docs
      • #9107 fix(content-docs): sidebar generator should return customProps for doc items (@ TheCatLady)
    • docusaurus-theme-classic
      • #9108 feat(theme-classic): add description & keywords microdata to blog posts (@ TheCatLady)
      • #9099 fix(theme): only set classname on ul elements if they have an existing class (@ homotechsual)
      • #9243 fix(theme-common): ThemedComponent should display something when JS is disabled (@ slorber)
    • docusaurus-theme-classic, docusaurus-theme-common
      • #9130 fix(theme): canonical url should be not change after hydration if url accessed with/without trailing slash (@ ori-shalom)

    Committers: 4

  • 2.4.1 - 2023-05-15

    2.4.1 (2023-05-15)

    🐛 Bug Fix

    • docusaurus-theme-classic, docusaurus-theme-common
      • #8971 fix(theme): fix collapsible sidebar behavior when prefers-reduced-motion (@ slorber)
    • docusaurus-theme-translations
    • docusaurus
    • docusaurus-plugin-content-blog, docusaurus-theme-common, docusaurus-utils-common, docusaurus
      • #8909 fix(theme): add __ prefix to technical anchors, search crawlers (Algolia) should ignore them (@ slorber)
    • docusaurus-theme-common
      • #8906 fix(theme-common): fix collapsible component with prefers-reduced-motion (@ slorber)
      • #8873 fix(theme-common): fix confusing theme error message: bad sidebar id suggestions (@ slorber)
    • docusaurus-utils
      • #8874 fix(utils): handle Markdown links with spaces to route correctly (@ morsko1)
    • docusaurus-theme-classic, docusaurus-theme-translations
      • #8842 fix(theme-translations): remove redundant navigation text in aria label (@ tarunrajput)
    • create-docusaurus

    💅 Polish

    • docusaurus-theme-classic
      • #8862 refactor(theme): expose copy, success and word-wrap icons as standalone components (@ armano2)

    Committers: 7

  • 2.4.0 - 2023-03-23

    2.4.0 (2023-03-23)

    Blog post: https://docusaurus.io/blog/releases/2.4/

    🚀 New Feature

    • docusaurus-plugin-content-docs, docusaurus-theme-classic
      • #8236 feat(content-docs): add support for sidebar item category/link descriptions in generated index page (@ ZarakiKanzaki)
    • docusaurus-theme-classic
      • #8708 feat(theme): allow to load a Docusaurus page with theme from query-string: ?docusaurus-theme=dark (@ slorber)
      • #8616 feat(theme): add ability to translate navbar+footer logo alt text (@ Mysterious-Dev)
    • docusaurus-remark-plugin-npm2yarn
      • #8690 feat(npm-to-yarn): add support for PnPm and custom converters (@ armano2)
    • docusaurus
      • #8677 feat(core): add script env variables: NODE_ENV + BABEL_ENV + DOCUSAURUS_CURRENT_LOCALE (temporary i18n workaround) (@ slorber)
    • docusaurus-theme-classic, docusaurus-theme-common
      • #8674 feat(theme-classic): respect prefers-reduced-motion: reduce mediaquery, bump Infima to alpha.43 (@ slorber)
    • docusaurus-theme-translations
      • #8668 feat(theme-translations): add Hungarian theme translations (@ trueqap)
      • #8631 feat(theme-translations): add Norwegian (Bokmål) theme translation (@ dr0nn1)
    • docusaurus-theme-common
      • #8656 feat(theme-common): allow passing a string for details summary (@ pReya)
    • docusaurus-plugin-google-gtag
      • #8620 feat(gtag-plugin): gtag should support multiple tracking ids, notably for the UA => GA4 transition (@ slorber)

    🐛 Bug Fix

    • docusaurus-theme-classic
    • docusaurus-theme-classic, docusaurus-theme-common
    • docusaurus-theme-common, docusaurus-theme-search-algolia
      • #8757 fix(search): search page should react to querystring changes + cleanup/refactor (@ slorber)
    • docusaurus
    • docusaurus-theme-translations
      • #8744 fix(theme-translations): fix wrong arabic words (tip/next) (@ Anasqx)

    💅 Polish

    • create-docusaurus
      • #8712 polish(create-docusaurus): the starter template should use a navbar item "docSidebar" instead of "doc" (less fragile on updates) (@ biplavmz)
    • docusaurus-theme-classic, docusaurus-theme-common, docusaurus-utils-common, docusaurus
      • #8735 polish(theme): better error messages on navbar item rendering failures + ErrorCauseBoundary API (@ tannerdolby)
    • docusaurus-theme-classic, docusaurus-theme-common, docusaurus

    Committers: 14

  • 2.3.1 - 2023-02-03
from @docusaurus/preset-classic GitHub release notes
Commit messages
Package name: @docusaurus/preset-classic
  • 56410aa v2.4.3
  • 4ab5a93 chore: backport retro compatible commits for the Docusaurus v2.4.2 release (#9324)
  • 4a2200a chore: backport retro compatible commits for the Docusaurus v2.4.1 release (#8979)
  • 4fb67ef chore: backport retro compatible commits for the Docusaurus v2.4 release (#8809)
  • 985a64a fix(theme-classic): fix docs layout issue (#8707)
  • c60387d chore: backport retro compatible commits for the Docusaurus v2.3.1 release (#8621)

Compare


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

obsd avatar Dec 06 '23 23:12 obsd