[ https://issues.apache.org/jira/browse/KNOX-2834?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17644201#comment-17644201 ]
Marton Balázs commented on KNOX-2834: ------------------------------------- The following pull requests created by dependabot have been closed, because they are addressed in this jira: * https://github.com/apache/knox/pull/669 * [https://github.com/apache/knox/pull/667] * [https://github.com/apache/knox/pull/666] * [https://github.com/apache/knox/pull/665] * [https://github.com/apache/knox/pull/664] * [https://github.com/apache/knox/pull/663] * [https://github.com/apache/knox/pull/662] * [https://github.com/apache/knox/pull/661] * [https://github.com/apache/knox/pull/655] * [https://github.com/apache/knox/pull/654] * [https://github.com/apache/knox/pull/653] * [https://github.com/apache/knox/pull/652] * [https://github.com/apache/knox/pull/651] * [https://github.com/apache/knox/pull/643] * [https://github.com/apache/knox/pull/642] * [https://github.com/apache/knox/pull/641] * [https://github.com/apache/knox/pull/679] * [https://github.com/apache/knox/pull/678] * [https://github.com/apache/knox/pull/677] * https://github.com/apache/knox/pull/676 > Take care of existing javascript upgrades by dependabot > ------------------------------------------------------- > > Key: KNOX-2834 > URL: https://issues.apache.org/jira/browse/KNOX-2834 > Project: Apache Knox > Issue Type: Improvement > Components: AdminUI, Homepage > Affects Versions: 2.0.0 > Reporter: Sandor Molnar > Assignee: Marton Balázs > Priority: Major > Fix For: 2.0.0 > > Attachments: image-2022-11-04-11-12-00-500.png > > Time Spent: 40m > Remaining Estimate: 0h > > [~MrtnBalazs] - as discussed offline, there is a list of open PRs generated > by Apache's dependabot for our javascript-based Maven modules (*-ui) where > there are some components such as angular-cli that needed to be upgraded to a > higher version due to security reasons (see attached screenshot). > Please compile a table with the source/target dependency versions and make > sure they are all applied in our code base within the scope of this JIRA and > covered by manual testing as discussed. > -- This message was sent by Atlassian Jira (v8.20.10#820010)