Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update dependency less-openui5 to v0.10.0 (main) #43

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

mend-for-github-com[bot]
Copy link
Contributor

@mend-for-github-com mend-for-github-com bot commented Sep 18, 2022

This PR contains the following updates:

Package Type Update Change
less-openui5 dependencies minor 0.1.3 -> 0.10.0

By merging this PR, the issue #57 will be automatically resolved and closed:

Severity CVSS Score CVE
High High 7.5 CVE-2017-16138
High High 7.5 WS-2021-0009
Medium Medium 6.5 CVE-2023-26136
Medium Medium 6.3 CVE-2021-21316
Medium Medium 5.3 WS-2019-0017

Release Notes

SAP/less-openui5 (less-openui5)

v0.10.0

Compare Source

Breaking Changes
  • Security: Disable JavaScript execution in Less.js c0d3a85
BREAKING CHANGE

Parser option javascriptEnabled has been removed. JavaScript is always
disabled and cannot be enabled.

v0.9.0

Compare Source

Breaking Changes
  • Remove support for import over http(s) e4a1c86
  • Require Node.js >= 10 47f244e
BREAKING CHANGE

Import over http(s) is not supported anymore.
Use the Builder 'fs' option to provide an interface that also handles
http(s) resources.

Support for older Node.js releases has been dropped.
Only Node.js v10 or higher is supported.

v0.8.7

Compare Source

Bug Fixes
  • Error handling for missing scoping files c7513a1

v0.8.6

Compare Source

Bug Fixes

v0.8.5

Compare Source

Features

v0.8.4

Compare Source

Features

v0.8.3

Compare Source

Bug Fixes

v0.8.2

Compare Source

Bug Fixes

v0.8.1

Compare Source

Bug Fixes

v0.8.0

Compare Source

Breaking Changes
  • Remove support for 'sourceMap' / 'cleancss' options 3f234c8
Bug Fixes
  • Apply less.js fix for import race condition 694f6c4

v0.7.0

Compare Source

Breaking Changes
  • Drop support for Node.js < 8.5 810962c
Bug Fixes

v0.6.0

Compare Source

Breaking changes
  • Drop unsupported Node.js versions. Now requires >= 6 #​45
Fixes
  • Again, fix inline theme parameters encoding for '#' #​48
All changes

0.5.4...0.6.0

v0.5.4

Compare Source

Fixes
  • Revert "Fix inline theme parameters encoding for '#'" #​26
All changes

0.5.3...0.5.4

v0.5.3

Compare Source

Fixes
  • Fix less error propagation #​22
  • Fix inline theme parameters encoding for '#' #​23
All changes

0.5.2...0.5.3

v0.5.2

Compare Source

Fixes
  • Fix reduced set of variables #​20
All changes

0.5.1...0.5.2

v0.5.1

Compare Source

Fixes
  • Changed paths in variable collector to posix variant #​19
All changes

0.5.0...0.5.1

v0.5.0

Compare Source

Features
  • Reduce collected variables to only add relevant ones #​18
All changes

0.4.0...0.5.0

v0.4.0

Compare Source

Features
All changes

0.3.1...0.4.0

v0.3.1

Compare Source

Fixes
  • Performance workaround: Handle properties directly added to String proto #​12
All changes

0.3.0...0.3.1

v0.3.0

Compare Source

Breaking changes
  • Drop support for Node.js v0.10 #​5
  • Replace static build function with Builder class to enable caching of build results #​10
  • Refactor options to also include input LESS string #​6
Features
  • Added "lessInputPath" option to provide a path relative to the "rootPaths" #​10
  • Added diffing and scoping to support Belize contrast areas #​10
  • Analyze .theming files as theme scope indicators #​10
All changes

0.2.0...0.3.0

v0.2.0

Compare Source

Breaking changes
  • Set default of parser option relativeUrls to true 00d892b
Features
  • Include inline theming parameters 4fa91b9
All changes

0.1.3...0.2.0


  • If you want to rebase/retry this PR, check this box

@mend-for-github-com mend-for-github-com bot changed the title Update dependency less-openui5 to v0.11.2 (main) Update dependency less-openui5 to v0.10.0 (main) Nov 8, 2022
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/main-less-openui5-0.x branch from a741b89 to b6850d8 Compare November 8, 2022 00:54
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/main-less-openui5-0.x branch 2 times, most recently from b5b42ce to bf89841 Compare November 20, 2022 14:06
@mend-for-github-com mend-for-github-com bot changed the title Update dependency less-openui5 to v0.10.0 (main) Update dependency less-openui5 to v0.8.0 (main) Nov 20, 2022
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/main-less-openui5-0.x branch from bf89841 to 315e5af Compare March 26, 2023 13:59
@mend-for-github-com mend-for-github-com bot changed the title Update dependency less-openui5 to v0.8.0 (main) Update dependency less-openui5 to v0.10.0 (main) Mar 26, 2023
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/main-less-openui5-0.x branch from 315e5af to cd45fc9 Compare May 29, 2023 14:18
@mend-for-github-com mend-for-github-com bot changed the title Update dependency less-openui5 to v0.10.0 (main) Update dependency less-openui5 to v0.10.0 (main) - autoclosed Nov 15, 2023
@mend-for-github-com mend-for-github-com bot deleted the whitesource-remediate/main-less-openui5-0.x branch November 15, 2023 12:51
@mend-for-github-com mend-for-github-com bot changed the title Update dependency less-openui5 to v0.10.0 (main) - autoclosed Update dependency less-openui5 to v0.10.0 (main) Nov 15, 2023
@mend-for-github-com mend-for-github-com bot reopened this Nov 15, 2023
@mend-for-github-com mend-for-github-com bot restored the whitesource-remediate/main-less-openui5-0.x branch November 15, 2023 12:52
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/main-less-openui5-0.x branch from cd45fc9 to 70bcdb5 Compare November 15, 2023 12:52
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/main-less-openui5-0.x branch from 70bcdb5 to 044a149 Compare December 17, 2023 15:31
@mend-for-github-com mend-for-github-com bot changed the title Update dependency less-openui5 to v0.10.0 (main) Update dependency less-openui5 to v0.8.0 (main) Dec 17, 2023
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/main-less-openui5-0.x branch from 044a149 to 1a48005 Compare December 20, 2023 15:37
@mend-for-github-com mend-for-github-com bot changed the title Update dependency less-openui5 to v0.8.0 (main) Update dependency less-openui5 to v0.10.0 (main) Dec 20, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants