ITADN

chore(deps-dev): bump electron from 10.3.2 to 15.5.5

#732Pull Requestdependabot[bot] 创建于 2022-06-17
dependencies
D
dependabot[bot]commented
Bumps [electron](https://github.com/electron/electron) from 10.3.2 to 15.5.5. <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/electron/electron/releases">electron's releases</a>.</em></p> <blockquote> <h2>electron v15.5.5</h2> <h1>Release Notes for v15.5.5</h1> <h2>Other Changes</h2> <ul> <li>Backported fix for CVE-2022-1482. <a href="https://github-redirect.dependabot.com/electron/electron/pull/34040">#34040</a></li> <li>Backported fix for CVE-2022-1483. <a href="https://github-redirect.dependabot.com/electron/electron/pull/34009">#34009</a></li> <li>Backported fix for CVE-2022-1497. <a href="https://github-redirect.dependabot.com/electron/electron/pull/34075">#34075</a></li> </ul> <h2>electron v15.5.4</h2> <h1>Release Notes for v15.5.4</h1> <h2>Other Changes</h2> <ul> <li>Backported fix for CVE-2022-1138. <a href="https://github-redirect.dependabot.com/electron/electron/pull/33682">#33682</a></li> <li>Backported fix for CVE-2022-1478. <a href="https://github-redirect.dependabot.com/electron/electron/pull/34045">#34045</a></li> <li>Backported fix for CVE-2022-1479. <a href="https://github-redirect.dependabot.com/electron/electron/pull/34037">#34037</a></li> <li>Backported fix for CVE-2022-1480. <a href="https://github-redirect.dependabot.com/electron/electron/pull/34019">#34019</a></li> <li>Backported fix for CVE-2022-1492. <a href="https://github-redirect.dependabot.com/electron/electron/pull/34051">#34051</a></li> </ul> <h2>electron v15.5.3</h2> <h1>Release Notes for v15.5.3</h1> <h2>Fixes</h2> <ul> <li>Fixed a network service crash that could occur when using setCertificateVerifyProc. <a href="https://github-redirect.dependabot.com/electron/electron/pull/33256">#33256</a> <!-- raw HTML omitted -->(Also in <a href="https://github-redirect.dependabot.com/electron/electron/pull/33255">16</a>, <a href="https://github-redirect.dependabot.com/electron/electron/pull/33254">17</a>, <a href="https://github-redirect.dependabot.com/electron/electron/pull/33253">18</a>)<!-- raw HTML omitted --></li> <li><code>shell.openExternal()</code> now reports more detailed errors on Windows. <a href="https://github-redirect.dependabot.com/electron/electron/pull/33656">#33656</a> <!-- raw HTML omitted -->(Also in <a href="https://github-redirect.dependabot.com/electron/electron/pull/33657">16</a>, <a href="https://github-redirect.dependabot.com/electron/electron/pull/33658">17</a>, <a href="https://github-redirect.dependabot.com/electron/electron/pull/33705">18</a>, <a href="https://github-redirect.dependabot.com/electron/electron/pull/33660">19</a>)<!-- raw HTML omitted --></li> </ul> <h2>Other Changes</h2> <ul> <li>Backported fix for CVE-2022-1134. <a href="https://github-redirect.dependabot.com/electron/electron/pull/33763">#33763</a></li> <li>Backported fix for CVE-2022-1305. <a href="https://github-redirect.dependabot.com/electron/electron/pull/33860">#33860</a></li> <li>Backported fix for CVE-2022-1310. <a href="https://github-redirect.dependabot.com/electron/electron/pull/33831">#33831</a></li> <li>Backported fix for CVE-2022-1314. <a href="https://github-redirect.dependabot.com/electron/electron/pull/33884">#33884</a></li> <li>Backported fix for CVE-2022-1364. <a href="https://github-redirect.dependabot.com/electron/electron/pull/33836">#33836</a></li> <li>Backported fix for chromium:1286816. <a href="https://github-redirect.dependabot.com/electron/electron/pull/33679">#33679</a></li> <li>Backported fix for chromium:1291482. <a href="https://github-redirect.dependabot.com/electron/electron/pull/33676">#33676</a></li> <li>Backported fix for chromium:1310761. <a href="https://github-redirect.dependabot.com/electron/electron/pull/33856">#33856</a></li> <li>Security: backported fix for CVE-2022-0116 and CVE-2022-1306. <a href="https://github-redirect.dependabot.com/electron/electron/pull/33852">#33852</a></li> <li>Security: backported fix for CVE-2022-23308. <a href="https://github-redirect.dependabot.com/electron/electron/pull/33670">#33670</a></li> <li>Security: backported fix for chromium:1280743. <a href="https://github-redirect.dependabot.com/electron/electron/pull/33715">#33715</a></li> <li>Security: backported fix for chromium:1280852. <a href="https://github-redirect.dependabot.com/electron/electron/pull/33673">#33673</a></li> </ul> <h2>electron v15.5.2</h2> <h1>Release Notes for v15.5.2</h1> <h2>Fixes</h2> <ul> <li>Fixed behavior of BrowserWindow.maximize on macOS for not shown windows. <a href="https://github-redirect.dependabot.com/electron/electron/pull/33523">#33523</a> <!-- raw HTML omitted -->(Also in <a href="https://github-redirect.dependabot.com/electron/electron/pull/33535">16</a>, <a href="https://github-redirect.dependabot.com/electron/electron/pull/33537">18</a>)<!-- raw HTML omitted --></li> </ul> <h2>Other Changes</h2> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/electron/electron/commit/f98885312827f3f111cfac80d71dc9a2c2d2cbc9"><code>f988853</code></a> Bump v15.5.5</li> <li><a href="https://github.com/electron/electron/commit/8bc25e8a9de07496db6b884b228ca12d0e161f07"><code>8bc25e8</code></a> build: change upload-to-s3 vars to upload-to-storage (<a href="https://github-redirect.dependabot.com/electron/electron/issues/34142">#34142</a>)</li> <li><a href="https://github.com/electron/electron/commit/a8f8b507aa01c794c698f72be7cc9d0f9bb9fa5b"><code>a8f8b50</code></a> build: use azure function to hash assets instead of lambda (<a href="https://github-redirect.dependabot.com/electron/electron/issues/34119">#34119</a>)</li> <li><a href="https://github.com/electron/electron/commit/eb320cbbf9f887ff2ecf3c76ef8b1eff7143e49f"><code>eb320cb</code></a> build: stop uploading assets to S3 (<a href="https://github-redirect.dependabot.com/electron/electron/issues/34112">#34112</a>)</li> <li><a href="https://github.com/electron/electron/commit/37eab5c66e609f9d98203c58feb740d23265ea2e"><code>37eab5c</code></a> chore: cherry-pick 5be8e065f43e from chromium (<a href="https://github-redirect.dependabot.com/electron/electron/issues/34040">#34040</a>)</li> <li><a href="https://github.com/electron/electron/commit/fc912026e2c383c24949e4bb381eb7a07121a657"><code>fc91202</code></a> chore: cherry-pick 5361d836ae from chromium (<a href="https://github-redirect.dependabot.com/electron/electron/issues/34009">#34009</a>)</li> <li><a href="https://github.com/electron/electron/commit/6aa0609a9707a81611b6dceb2dbd9d779c83a040"><code>6aa0609</code></a> chore: cherry-pick 6b66a45021 from chromium (<a href="https://github-redirect.dependabot.com/electron/electron/issues/34075">#34075</a>)</li> <li><a href="https://github.com/electron/electron/commit/620d615fe026d654178be0a462dab3580429f55a"><code>620d615</code></a> test: fix nativeModulesEnabled in spec/webview-spec.js (<a href="https://github-redirect.dependabot.com/electron/electron/issues/34063">#34063</a>)</li> <li><a href="https://github.com/electron/electron/commit/ec7baba40166e9f11046cff31de180e4f652ec23"><code>ec7baba</code></a> Bump v15.5.4</li> <li><a href="https://github.com/electron/electron/commit/f8ba4d6012c2c6a853c0b9b31e2a3816ac8b3c0c"><code>f8ba4d6</code></a> chore: cherry-pick d27d9d059b51 from angle (<a href="https://github-redirect.dependabot.com/electron/electron/issues/34045">#34045</a>)</li> <li>Additional commits viewable in <a href="https://github.com/electron/electron/compare/v10.3.2...v15.5.5">compare view</a></li> </ul> </details> <br /> [![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=electron&package-manager=npm_and_yarn&previous-version=10.3.2&new-version=15.5.5)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) --- <details> <summary>Dependabot commands and options</summary> <br /> You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) - `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language - `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language - `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language - `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/Melvin-Abraham/Google-Assistant-Unofficial-Desktop-Client/network/alerts). </details>
合并状态:未合并 关闭于 2023-01-01 1 条评论