You are viewing a plain text version of this content. The canonical link for it is here.
Posted to notifications@superset.apache.org by GitBox <gi...@apache.org> on 2022/04/27 21:03:47 UTC

[GitHub] [superset] VisaLilyFeng commented on a diff in pull request #18057: fix(Vulnerable dependency): dependency version update for jquery and bootstrap

VisaLilyFeng commented on code in PR #18057:
URL: https://github.com/apache/superset/pull/18057#discussion_r860242881


##########
superset-frontend/package.json:
##########
@@ -113,7 +113,7 @@
     "antd": "^4.9.4",
     "array-move": "^2.2.1",
     "babel-plugin-typescript-to-proptypes": "^2.0.0",
-    "bootstrap": "^3.4.1",
+    "bootstrap": "^5.1.1",

Review Comment:
   @etr2460 If we still use it, can we bump up the version to a secure version? For both jquery and bootstrap?



-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: notifications-unsubscribe@superset.apache.org

For queries about this service, please contact Infrastructure at:
users@infra.apache.org


---------------------------------------------------------------------
To unsubscribe, e-mail: notifications-unsubscribe@superset.apache.org
For additional commands, e-mail: notifications-help@superset.apache.org