Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

[Snyk] Upgrade styled-components from 5.3.5 to 6.1.12 #3

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

snyk-io[bot]
Copy link

@snyk-io snyk-io bot commented Aug 13, 2024

snyk-top-banner

Snyk has created this PR to upgrade styled-components from 5.3.5 to 6.1.12.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


⚠️ Warning: This PR contains major version upgrade(s), and may be a breaking change.

  • The recommended version is 66 versions ahead of your current version.

  • The recommended version was released on a month ago.

Issues fixed by the recommended upgrade:

Issue Score Exploit Maturity
medium severity Undesired Behavior
SNYK-JS-STYLEDCOMPONENTS-3149924
300 No Known Exploit
Release notes
Package name: styled-components
  • 6.1.12 - 2024-07-17

    What's Changed

    New Contributors

    Full Changelog: v6.1.11...v6.1.12

  • 6.1.11 - 2024-05-09

    What's Changed

    • feat(types): add types to support third-party wrapping scenarios by @ quantizor in #4307

    Full Changelog: v6.1.10...v6.1.11

  • 6.1.10 - 2024-05-07

    What's Changed

    • Update dependencies by @ quantizor in #4297
    • Export IStyledComponentBase interface by @ akkadaya in #4300
    • revert type changes introduced in #4288 due to a large number of bug reports

    New Contributors

    Full Changelog: v6.1.9...v6.1.10

  • 6.1.10-test.1 - 2024-05-08
  • 6.1.10-test.0 - 2024-05-08
  • 6.1.9 - 2024-04-30

    What's Changed

    New Contributors

    Full Changelog: v6.1.8...v6.1.9

  • 6.1.9-react-18-streaming-prototype - 2024-04-30
  • 6.1.8 - 2024-01-08

    Revert adding peerDependencies from v6.1.7; apparently some package managers have differing behaviors around peerDependenciesMeta[package].optional which is causing issues. Will revisit at a later date if possible.

    Full Changelog: v6.1.7...v6.1.8

  • 6.1.7 - 2024-01-08

    What's Changed

    • chore: add all missing peer dependency statements by @ quantizor in #4243

      NOTE: this change may cause some installed dependency duplication until this NPM bug is addressed but yarn and pnpm have correct behavior. Bun also has a similar bug.

      Overall these changes ensure that styled-components is specifying a known working version of all utilized libraries, while instructing the client package manager that higher semver-compliant versions are permissible and should work, assuming the relevant libraries are compliant in practice.

    Full Changelog: v6.1.6...v6.1.7

  • 6.1.6 - 2023-12-27

    What's Changed

    • fix: bump stylis to 4.3.1 to resolve issue with leaking nested selectors by @ quantizor in #4245

    Full Changelog: v6.1.5...v6.1.6

  • 6.1.5 - 2023-12-27

    What's Changed

    • fix: further constrain self-referencing to match v5 behavior by @ quantizor in #4244

    Full Changelog: v6.1.4...v6.1.5

  • 6.1.5-rc.0 - 2023-12-27
  • 6.1.4 - 2023-12-27

    What's Changed

    • fix: allow using attrs to provide a custom theme prop to child components by @ quantizor in #4242

    Full Changelog: v6.1.3...v6.1.4

  • 6.1.3 - 2023-12-22

    What's Changed

    New Contributors

    Full Changelog: v6.1.2...v6.1.3

  • 6.1.2 - 2023-12-20
  • 6.1.1 - 2023-11-08
  • 6.1.0 - 2023-10-14
  • 6.0.9 - 2023-10-12
  • 6.0.8 - 2023-09-13
  • 6.0.7 - 2023-08-03
  • 6.0.6 - 2023-08-02
  • 6.0.6-test.0 - 2023-08-02
  • 6.0.5 - 2023-07-21
  • 6.0.4 - 2023-07-13
  • 6.0.3 - 2023-07-07
  • 6.0.2 - 2023-07-03
  • 6.0.1 - 2023-06-28
  • 6.0.0 - 2023-06-28
  • 6.0.0-rc.2-4007 - 2023-05-26
  • 6.0.0-rc.6 - 2023-06-23
  • 6.0.0-rc.5 - 2023-06-22
  • 6.0.0-rc.4 - 2023-06-22
  • 6.0.0-rc.3 - 2023-06-04
  • 6.0.0-rc.2 - 2023-05-24
  • 6.0.0-rc.1 - 2023-05-06
  • 6.0.0-rc.0 - 2023-05-04
  • 6.0.0-beta.15 - 2023-04-23
  • 6.0.0-beta.14 - 2023-03-23
  • 6.0.0-beta.13 - 2023-03-10
  • 6.0.0-beta.12 - 2023-03-02
  • 6.0.0-beta.11 - 2023-02-03
  • 6.0.0-beta.10 - 2023-02-03
  • 6.0.0-beta.9 - 2023-01-03
  • 6.0.0-beta.8 - 2022-12-23
  • 6.0.0-beta.7 - 2022-12-23
  • 6.0.0-beta.6 - 2022-11-13
  • 6.0.0-beta.5 - 2022-10-26
  • 6.0.0-beta.4 - 2022-10-25
  • 6.0.0-beta.3 - 2022-10-04
  • 6.0.0-beta.2 - 2022-09-02
  • 6.0.0-beta.1 - 2022-08-31
  • 6.0.0-beta.0 - 2022-08-31
  • 6.0.0-alpha.7 - 2022-07-22
  • 6.0.0-alpha.6 - 2022-07-22
  • 6.0.0-alpha.5 - 2022-03-24
  • 6.0.0-alpha.4 - 2022-03-24
  • 6.0.0-alpha.3 - 2022-03-24
  • 6.0.0-alpha.2 - 2022-03-24
  • 6.0.0-alpha.1 - 2022-02-24
  • 6.0.0-alpha.0 - 2022-02-22
  • 5.3.11 - 2023-05-26
  • 5.3.10 - 2023-04-23
  • 5.3.9 - 2023-03-13
  • 5.3.8 - 2023-03-02
  • 5.3.7 - 2023-03-02
  • 5.3.6 - 2022-09-27
  • 5.3.5 - 2022-03-24
from styled-components GitHub release notes

Important

  • Warning: This PR contains a major version upgrade, and may be a breaking change.
  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants