Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Dependencies] Upgrade Werkzeug #294

Merged
merged 1 commit into from
Dec 6, 2023

Conversation

gmarciani
Copy link
Collaborator

@gmarciani gmarciani commented Dec 5, 2023

Description

  1. Upgrade Werkzeug to version 2.3.8.

These upgrades solve the following PRs:
1.. #290

And the following CVEs:
1.. https://github.com/aws/aws-parallelcluster-ui/security/dependabot/26

How Has This Been Tested?

  1. PCUI deployed
  2. Navigated main pages
  3. Tested cluster creation

By submitting this pull request, I confirm that you can use, modify, copy, and redistribute this contribution, under the terms of your choice.

@gmarciani gmarciani changed the title Wip/mgiacomo/2023120/deps upgrades [Dependencies] Upgrade Werkzeug, next.js, axios.js Dec 5, 2023
@gmarciani gmarciani added dependencies Pull requests that update a dependency file python Pull requests that update Python code javascript Pull requests that update Javascript code labels Dec 5, 2023
@gmarciani gmarciani force-pushed the wip/mgiacomo/2023120/deps-upgrades branch from ab54844 to 92d1086 Compare December 6, 2023 11:57
@gmarciani
Copy link
Collaborator Author

The upgrade of Axios.js to v1.6.0 has been descoped from this PR because that version introduces a breaking change impacting the catch of axios errors

@gmarciani gmarciani force-pushed the wip/mgiacomo/2023120/deps-upgrades branch from 92d1086 to 8baccbe Compare December 6, 2023 13:05
@gmarciani gmarciani changed the title [Dependencies] Upgrade Werkzeug, next.js, axios.js [Dependencies] Upgrade Werkzeug Dec 6, 2023
@gmarciani
Copy link
Collaborator Author

The upgrade of next.js to v13.5.0 has been descoped from this PR because that version introduces a breaking change impacting the whole app.

@gmarciani gmarciani removed the javascript Pull requests that update Javascript code label Dec 6, 2023
@gmarciani gmarciani marked this pull request as ready for review December 6, 2023 13:28
@gmarciani gmarciani merged commit 0c285db into aws:main Dec 6, 2023
2 checks passed
@gmarciani gmarciani deleted the wip/mgiacomo/2023120/deps-upgrades branch December 6, 2023 17:17
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file python Pull requests that update Python code
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants