[Snyk] Upgrade react-native from 0.64.3 to 0.73.7 #1
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR was automatically created by Snyk using the credentials of a real user.
Snyk has created this PR to upgrade react-native from 0.64.3 to 0.73.7.
ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
The recommended version fixes:
SNYK-JS-URLPARSE-2407770
Why? Proof of Concept exploit, CVSS 8.1
SNYK-JS-ANSIREGEX-1583908
Why? Proof of Concept exploit, CVSS 8.1
SNYK-JS-ASYNC-2441827
Why? Proof of Concept exploit, CVSS 8.1
SNYK-JS-DECODEURICOMPONENT-3149970
Why? Proof of Concept exploit, CVSS 8.1
SNYK-JS-HERMESENGINE-1727253
Why? Proof of Concept exploit, CVSS 8.1
SNYK-JS-XMLDOMXMLDOM-3042243
Why? Proof of Concept exploit, CVSS 8.1
SNYK-JS-IP-6240864
Why? Proof of Concept exploit, CVSS 8.1
SNYK-JS-SHELLQUOTE-1766506
Why? Proof of Concept exploit, CVSS 8.1
SNYK-JS-JSON5-3182856
Why? Proof of Concept exploit, CVSS 8.1
SNYK-JS-URLPARSE-2407759
Why? Proof of Concept exploit, CVSS 8.1
SNYK-JS-URLPARSE-2412697
Why? Proof of Concept exploit, CVSS 8.1
SNYK-JS-BABELTRAVERSE-5962462
Why? Proof of Concept exploit, CVSS 8.1
SNYK-JS-HERMESENGINE-2342071
Why? Proof of Concept exploit, CVSS 8.1
SNYK-JS-WS-1296835
Why? Proof of Concept exploit, CVSS 8.1
SNYK-JS-XMLDOMXMLDOM-3092934
Why? Proof of Concept exploit, CVSS 8.1
SNYK-JS-UNSETVALUE-2400660
Why? Proof of Concept exploit, CVSS 8.1
SNYK-JS-MINIMATCH-3050818
Why? Proof of Concept exploit, CVSS 8.1
SNYK-JS-REACTDEVTOOLSCORE-6023999
Why? Proof of Concept exploit, CVSS 8.1
SNYK-JS-JSON5-3182856
Why? Proof of Concept exploit, CVSS 8.1
SNYK-JS-JSON5-3182856
Why? Proof of Concept exploit, CVSS 8.1
SNYK-JS-SIDEWAYFORMULA-3317169
Why? Proof of Concept exploit, CVSS 8.1
SNYK-JS-SIMPLEPLIST-2413671
Why? Proof of Concept exploit, CVSS 8.1
SNYK-JS-UAPARSERJS-3244450
Why? Proof of Concept exploit, CVSS 8.1
SNYK-JS-URLPARSE-2401205
Why? Proof of Concept exploit, CVSS 8.1
SNYK-JS-MINIMIST-2429795
Why? Proof of Concept exploit, CVSS 8.1
(*) Note that the real score may have changed since the PR was raised.
Release notes
Package name: react-native
v0.73.6
Breaking
iOS specific
BUILD_FROM_SOURCE
toRCT_BUILD_HERMES_FROM_SOURCE
(51b80477c7 by @ cipolleschi)Fixed
iOS specific
Hermes dSYMS:
You can file issues or pick requests against this release here
To help you upgrade to this version, you can use the upgrade helper ⚛️
You can find the whole changelog history in the changelog.md file.
v0.72.12
Changed
iOS specific
Fixed
You can file issues or pick requests against this release here
To help you upgrade to this version, you can use the upgrade helper ⚛️
You can find the whole changelog history in the changelog.md file.
Fixed
iOS specific
You can file issues or pick requests against this release here
To help you upgrade to this version, you can use the upgrade helper ⚛️
You can find the whole changelog history in the changelog.md file.
Commit messages
Package name: react-native
Compare
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.
For more information:
🧐 View latest project report
🛠 Adjust upgrade PR settings
🔕 Ignore this dependency or unsubscribe from future upgrade PRs