Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Manual Backport 2.x][CVE-2023-26486][CVE-2023-26487] Bump vega from 5.22.1 to 5.23.0 #3549

Merged
merged 2 commits into from
Mar 8, 2023

Conversation

ananzh
Copy link
Member

@ananzh ananzh commented Mar 7, 2023

Description

Bump vega from 5.22.1 to 5.23.0. This will also bump vega-function from 5.13.0 to 5.13.1.

Backport PR:

https://github.com/opensearch-project/OpenSearch-Dashboards/pull/3533/files

#3533

Issue Resolved:

#3526 #3525

Check List

  • All tests pass
    • yarn test:jest
    • yarn test:jest_integration
    • yarn test:ftr
  • New functionality includes testing.
  • New functionality has been documented.
  • Update CHANGELOG.md
  • Commits are signed per the DCO using --signoff

…5.22.1 to 5.23.0

Bump vega from 5.22.1 to 5.23.0. This will also bump vega-function
from 5.13.0 to 5.13.1.

Backport PR:
https://github.com/opensearch-project/OpenSearch-Dashboards/pull/3533/files

Issue Resolved:
opensearch-project#3526
opensearch-project#3525

Signed-off-by: Anan Zhuang <ananzh@amazon.com>
@ananzh ananzh requested a review from a team as a code owner March 7, 2023 22:04
@codecov-commenter
Copy link

codecov-commenter commented Mar 7, 2023

Codecov Report

Merging #3549 (0e11e43) into 2.x (3c613d0) will increase coverage by 0.00%.
The diff coverage is n/a.

📣 This organization is not using Codecov’s GitHub App Integration. We recommend you install it so Codecov can continue to function properly for your repositories. Learn more

@@           Coverage Diff           @@
##              2.x    #3549   +/-   ##
=======================================
  Coverage   66.44%   66.45%           
=======================================
  Files        3205     3205           
  Lines       61567    61567           
  Branches     9497     9497           
=======================================
+ Hits        40909    40915    +6     
+ Misses      18386    18382    -4     
+ Partials     2272     2270    -2     
Flag Coverage Δ
Linux 66.40% <ø> (+<0.01%) ⬆️
Windows 66.39% <ø> (ø)

Flags with carried forward coverage won't be shown. Click here to find out more.

Impacted Files Coverage Δ
...ic/application/models/sense_editor/sense_editor.ts 65.77% <0.00%> (+0.88%) ⬆️
packages/osd-optimizer/src/node/cache.ts 53.94% <0.00%> (+2.63%) ⬆️
...s/osd-optimizer/src/node/node_auto_tranpilation.ts 87.75% <0.00%> (+4.08%) ⬆️

Help us with your feedback. Take ten seconds to tell us how you rate us. Have a feature suggestion? Share it here.

@joshuarrrr
Copy link
Member

whitesource failure is known, not fixable in 2.x

@joshuarrrr joshuarrrr merged commit ef7caaa into opensearch-project:2.x Mar 8, 2023
opensearch-trigger-bot bot pushed a commit that referenced this pull request Mar 8, 2023
…5.22.1 to 5.23.0 (#3549)

Bump vega from 5.22.1 to 5.23.0. This will also bump vega-function
from 5.13.0 to 5.13.1.

Backport PR:
https://github.com/opensearch-project/OpenSearch-Dashboards/pull/3533/files

Issue Resolved:
#3526
#3525

Signed-off-by: Anan Zhuang <ananzh@amazon.com>
(cherry picked from commit ef7caaa)
Signed-off-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
joshuarrrr added a commit that referenced this pull request Mar 9, 2023
…5.22.1 to 5.23.0 (#3549) (#3558)

Bump vega from 5.22.1 to 5.23.0. This will also bump vega-function
from 5.13.0 to 5.13.1.

Backport PR:
https://github.com/opensearch-project/OpenSearch-Dashboards/pull/3533/files

Issue Resolved:
#3526
#3525


(cherry picked from commit ef7caaa)

Signed-off-by: Anan Zhuang <ananzh@amazon.com>
Signed-off-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
Co-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
Co-authored-by: Josh Romero <rmerqg@amazon.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

Successfully merging this pull request may close these issues.

5 participants