Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update dependency @storybook/react to v7 #218

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

mend-for-github-com[bot]
Copy link

@mend-for-github-com mend-for-github-com bot commented Apr 3, 2023

This PR contains the following updates:

Package Type Update Change
@storybook/react (source) dependencies major ^6.1.17 -> ^7.0.0

By merging this PR, the below issues will be automatically resolved and closed:

Severity CVSS Score CVE GitHub Issue
Critical 9.8 CVE-2021-23436 #71
Critical 9.8 CVE-2021-3757 #67
Critical 9.8 CVE-2021-42740 #153
Critical 9.1 CVE-2021-42581 #145
High 7.5 CVE-2020-28469 #58
Medium 5.3 CVE-2021-23364 #48

Release Notes

storybookjs/storybook (@​storybook/react)

v7.0.0

Compare Source

Storybook 7.0 is here! πŸŽ‰

See our Migration guide to upgrade from earlier versions of Storybook.

Full announcement and proper release to the latest npm tag coming soon. 😘

v6.5.16

Compare Source

Bug Fixes
  • Angular: Fix handling of docsMode option in angular builder #​20608
  • Angular: Fix webpackStatsJson types in angular-builder #​20296
Dependency Upgrades

v6.5.15

Compare Source

Bug Fixes

v6.5.14

Compare Source

Bug Fixes
  • Angular: Fix "webpack_require.nmd is not a function issue" in Angular 15 #​20043
  • CLI/React native: Fix addons template to import register instead of manager #​19620
Maintenance
  • Core: Patch preview-web and refs to support React Native #​19975
Dependency Upgrades
  • Upgrade loader-utils to 2.0.4 in storysource and source-loader #​19891

v6.5.13

Compare Source

Bug Fixes
  • Telemetry: Send start/build events even when there is no generator #​19507
  • Telemetry: Fix inconsistent debug #​19509
  • Addon-docs: Pass remarks plugins to mdx loader #​18740
  • Angular: Alias decorateStory as applyDecorators #​19189

v6.5.12

Compare Source

Bug Fixes
  • React: Fix issue with react 18 implementation #​19125

v6.5.11

Compare Source

Bug Fixes
  • CLI: Fix race condition in sb init #​19083
  • Core: Fix WebProjectAnnotations export in preview-web for back-compat #​19048
  • Addon-interactions: Fix IE support by replacing array includes #​18993
  • Vue: Fix enum check in extractArgTypes #​18959
  • React: Fix callback behavior in react@18 #​18737
  • Store: always call composeConfigs in setProjectAnnotations #​18916
  • Telemetry: improve addon extraction logic #​18868
  • Addon-docs: Check for undefined before reading property in extractArgTypes.ts #​18710nance

v6.5.10

Compare Source

Maintenance
  • Interactions: Run conditionally based on query param #​18706
  • Components: Re-bundle the syntax highlighter #​18425
  • Svelte: Make svelte-loader optional dependency #​18645
  • Theming: Replace references to themes.normal with themes.light #​17034
Bug Fixes
  • HTML: Fix missing ability to set docs.extractArgTypes #​18831
  • CLI: Throw error on failure in sb init #​18816
  • CLI: Hook up the npm7 migration #​18522
  • Preview: Ensure docs container re-renders when globals change #​18711
  • Toolbars: Fall back to name if both title and icon are not specified #​17430
  • CLI: Fix addons register in RN template #​18693
  • CLI: Fix detection of type: module when initializing storybook #​18714
  • CLI/Svelte: Always create main with cjs extension #​18648
  • Fix typo in CSS pseudo selector #​17708
  • UI: Fix sidebar a11y by moving aria-expanded attribute to button #​18354
  • CLI: Add npm7 migration for legacy peer deps #​18510
  • UI: Fix display skip to sidebar button #​18479
  • Core: Fix process is not defined when using components #​18469
Dependency Upgrades

v6.5.9

Compare Source

Bug Fixes
  • Core: Fix process is not defined when using components (#​18469)
  • Story index: Warn on storyName in CSF3 exports (#​18464)
  • Telemetry: Strip out preset from addon name (#​18442)
Maintenance
  • Angular: Support Angular 14 standalone components (#​18272)
  • UI: Update manager to respect parameters.docsOnly in stories.json (#​18433)

v6.5.8

Compare Source

Bug Fixes
  • UI: Disable Emotion warnings about unsafe pseudo-selectors in SSR (#​18361)

v6.5.7

Compare Source

Bug Fixes
Maintenance

v6.5.6

Compare Source

Bug Fixes

v6.5.5

Compare Source

Bug Fixes
Maintenance
Dependency Upgrades

v6.5.4

Compare Source

Bug Fixes
  • Webpack5: Apply named exports order logic for stories only (#​18284)
  • Core: Use correct framework version in telemetry (#​18285)
Maintenance
  • Examples: fix jest 27 in angular e2e modern inline rendering config (#​18274)

v6.5.3

Compare Source

Bug Fixes
  • Revert "security: update x-default-browser" (#​18270)

v6.5.2

Compare Source

Bug Fixes
  • Core: Fix get-monorepo-type when no package.json at repo root (#​18259)
Dependency Upgrades

v6.5.0

Compare Source

Storybook 6.5 is here!! πŸŽ‰πŸŽ‰πŸŽ‰

SB6.5 adds new testing and design review workflows while improving core performance and compatibility.

  • πŸ€– Interaction testing simulate interactions and run assertions in the browser
  • 🎨 Figma plugin to connect stories to variants
  • 🏎️ Webpack 5 lazy compilation for faster start up
  • ⚑ Vite builder for near instant rebuilds
  • πŸ’― Hundreds more fixes and quality of life improvements

More info in the Github issue Storybook 6.5 Release πŸ‘Ÿ. Release announcement coming soon!!!

v6.4.22

Compare Source

Maintenance
  • Core: Avoid framework imports from core/client (#​17875)

v6.4.21

Compare Source

Bug Fixes
  • Angular: Do not use default for includePaths (#​17876)
  • Controls: Fix date control width in addons panel (#​17780)
  • CLI: Preserve quote style in automigrate (#​17858)
  • CLI: Update the exclude list for upgrade warnings (#​17909)

v6.4.20

Compare Source

Bug Fixes
Maintenance
  • CLI: Add automigration to @storybook/builder-vite (#​17829)

v6.4.19

Compare Source

Features
  • CLI/React: Add interactions to cli template (#​17345)
  • CLI/Angular: Add interactions to cli template (#​17437)
Bug Fixes
  • Core/CLI: Add extract function to PreviewWeb and use it in sb extract if available (#​17447)
  • Core: Ensure we show an error when configure() throws (#​17435)
  • Core: Fix useParameter with nullish coalescing (#​17327)
  • Addon-links: Fix export statement in react.d.ts (#​17434)
  • Addon-docs: Fix typo in ArgsTable tooltip (#​17404)

v6.4.18

Compare Source

Bug Fixes
  • CLI: Pin version of @mdx-js/react to 1.x.x until we are compatible (#​17395)

v6.4.17

Compare Source

Bug Fixes
  • Revert "Angular: Retrieve version from core package" (#​17372)

v6.4.16

Compare Source

Bug Fixes
  • Angular: Workaround for compodoc on windows machines (#​17334)
  • Angular: Use Ι΅ReflectionCapabilities to find component & module metadata (#​17156)
  • Angular: Retrieve version from core package (#​17363)

v6.4.15

Compare Source

Bug Fixes
  • Angular: Fix runCompodoc for Windows, local Compodoc, and user specified tsconfig (#​16728)
  • Core: Fix negated glob support (#​17328)
Maintenance
  • Build: Upgrade main yarn (#​17323)
  • CLI: Add version update argument to generate-sb-packages-versions utility (#​17356)

v6.4.14

Compare Source

Bug Fixes
  • CLI: Add --no-manager-cache to build-storybook (#​17300)
  • CSF3: Remove path from autoTitle browser code (#​17185)
  • Addon-docs: Fix docs.disable parameter on DocsPage (#​17256)
  • Core: Fix issue with recursive glob with prior special chars (#​17252)
  • Webpack: Fix for process fallback using require.resolve (#​17249)
Dependency Upgrades
  • Upgrade compodoc for colors.js bug (#​17266)
  • Upgrade jscodeshift dependency for colors.js bug (#​17265)
  • Restore prettier >= 2.2.1 to satisfy previous constraints (#​17257)

v6.4.13

Compare Source

Bug Fixes
  • Core: Fix staticDirs favicon handling by refactor (#​17241)
  • Angular: Fix 13.1 and add CI test cases (#​17206)
  • Core: Fix __namedExportsOrder warning from preview.js (#​17240)
  • Webpack5: Fix manager.js process references (#​17213)
Dependency Upgrades

v6.4.12

Compare Source

Bug Fixes
  • Angular: Fix for renamed method in angular 13.1 (#​17032)

v6.4.10

Compare Source

Bug Fixes
Dependency Upgrades

v6.4.9

Compare Source

Bug Fixes
  • Core: Ensure we have a full story index before caching (#​16947)
  • Angular: Fix support for non-roman alphabets in story titles (#​16931)
  • Core: Be explicit about viewMode to fix Vue issue (#​16919)
  • Core: Remove unused and occluded types (#​16917)

v6.4.8

Compare Source

Bug Fixes
Maintenance
  • Core: Add feature flag to disable legacy hierarchy separator warning (#​16915)

v6.4.7

Compare Source

Bug Fixes

v6.4.5

Compare Source

Bug Fixes
  • Angular: Fix tsConfig paths not resolving for Angular >=12.2 (#​16882)
  • Addon-docs: Fix transclusion crash on webpack rules without test field (#​16873)
Dependency Upgrades

v6.4.4

Compare Source

Bug Fixes

v6.4.3

Compare Source

Bug Fixes
  • Don't render with modernInline if inlineStories is false (#​16853)
  • Preview: Don't hide the story while preparing (#​16850)

v6.4.2

Compare Source

Bug Fixes
  • UI: Ensure all classes+animations for our loaders are prefixed (#​16815)
  • Angular: Add back-compat method to find options (styles) in angular.json (#​16832)

v6.4.1

Compare Source

Bug Fixes
Maintenance

v6.4.0

Compare Source

Storybook 6.4 is here!! πŸŽ‰πŸŽ‰πŸŽ‰

SB6.4 adds interaction testing and performance re-architecture ahead of a huge 7.0 release.

  • ▢️ Interactive stories to simulate user behavior and tools to debug it
  • ⚑️ On-demand architecture for smaller builds and faster load times
  • β›Έ Automigrate + versioned documentation for easier upgrades
  • πŸ“‹ Linter to enforce Storybook best practices
  • πŸ’― Hundreds more fixes and quality of life improvements

More info in the Github issue Storybook 6.4 Release πŸ› . Release announcement coming soon!!!

v6.3.13

Compare Source

Dependency Upgrades

v6.3.12

Compare Source

Bug Fixes
  • CLI: Force sb upgrade to use latest version of npm-check-updates (#​16336)

v6.3.11

Compare Source

Bug Fixes

v6.3.10

Compare Source

Bug Fixes
  • CLI: Don't upgrade preset-create-react-app if react-scripts < 5 (#​16255)

v6.3.9

Compare Source

Maintenance

v6.3.8

Compare Source

Maintenance
  • Core: Write JSON stats file in streaming fashion and omit chunks for brevity (#​15889)

v6.3.7

Compare Source

Fix bad publish of 6.4.0-alpha.27 to the latest tag

v6.3.6

Compare Source

Bug Fixes

v6.3.5

Compare Source

Bug Fixes
  • Controls: Don't set arg in validateOptions if it would be undefined (#​15654)
  • Trailing comma handling for "-s" command line paramenter (#​15615)
  • Controls: Fix color matching behavior for non-string types (#​15549)
  • Composition: Fix refs ordering (#​15527)

v6.3.4

Compare Source

Maintenance
  • Addon-docs: Cache DocsContext on window to prevent duplication (#​15428)

v6.3.3

Compare Source

Bug Fixes
  • Webpack5: Quit process after finishing a static build (#​15483)
  • Addon-docs/Angular: Fix numeric args default value handling (#​15491)
  • Angular: Fix circular reference not being handled in moduleMetadata (#​15410)
  • Core: Fix double rebuilds by removing aggregateTimeout (#​15372)
  • CLI: Fix NPM typo (#​15461)

v6.3.2

Compare Source

Bug Fixes
  • Essentials: Update measure and outline. Fix alt+tab issues on windows. (#​15402)
  • Core: Fix decorator context update (#​15408)
  • Revert "Vue3: Update args without re-mounting component" (#​15409)
  • Upgrade bad release of react-docgen-typescript-plugin (#​15432)

v6.3.1

Compare Source

Bug Fixes

v6.3.0

Compare Source

Optimized for UI development

SB6.3 adds new UI development and testing features, while evolving with the JS ecosystem:

  • πŸ“ Layout debugging with Measure and Outline addons
  • πŸ”Œ Reuse your stories in unit tests: Jest, Cypress & more
  • πŸš€ Frameworks: Angular 12 Ivy, Lit2 web components
  • πŸ›  Builders: Webpack5 stable, Vite community
  • πŸ“¦ Packaging: Modern ESM

It also contains hundreds more fixes, features, and tweaks. Browse the changelogs matching 6.3.0-alpha.*, 6.3.0-beta.*, and 6.3.0-rc.* for the full list of changes. See Storybook 6 migration guide to upgrade from 5.x or MIGRATION.md for detailed migration instructions.

v6.2.9

Compare Source

Bug Fixes
Maintenance
  • Examples: Move from placehold.it to place-hold.it for mock images (#​14637)

v6.2.8

Compare Source

Bug Fixes

v6.2.7

Compare Source

Bug Fixes

v6.2.6

Compare Source

Bug Fixes
  • Core: Allow string in object arg and support fractional numbers in URL args (#​14511)
  • UI: Skip duplicate storyId breaking sidebar (#​14502)

v6.2.5

Compare Source

Bug Fixes
  • Core: Don't include args param in docs mode URL (#​14494)
  • Core: Restore previewHead/Body presets (#​14500)
  • Controls: Reset ArgsTable state when switching stories (#​14493)
Dependency Upgrades

v6.2.4

Compare Source

Dependency Upgrades

v6.2.3

Compare Source

Bug Fixes
Maintenance
  • Core: Disable postcss warning, add main.js features setting (#​14478)

v6.2.2

Compare Source

Bug Fixes
Maintenance

v6.2.1

Compare Source

Fix bad version update message from #​12183

v6.2.0

Compare Source

Storybook 6.2: Future-proof component development

Major improvements for new frameworks, package managers, and bundlers.

πŸš€ Frameworks: Vue 3, Svelte Native CSF
πŸ“¦ Packaging: NPM 7, Yarn 2, ESM
πŸ›  Bundlers: Webpack 5 (experimental), pluggable bundlers to enable Vite, ESBuild, Snowpack, & more.

Also an overhaul of Storybook’s auto-generated controls and hundreds more fixes, features, and tweaks.

Browse the changelogs matching 6.2.0-alpha.*, 6.2.0-beta.*, and 6.2.0-rc.* for the full list of changes. See Storybook 6 migration guide to upgrade from 5.x or MIGRATION.md for detailed migration instructions.

v6.1.21

Compare Source

Bug Fixes
  • IE11: Transpile prettier down to ES5 (#​14047)
  • CLI: Add --legacy-peer-deps for NPM7 install (#​14106)
  • SyntaxHighlighter: Safely access clipboard on global.navigator (#​14035)

v6.1.20

Compare Source

  • Deps: upgrade react-dev-utils to get newer immer (#​14015)

v6.1.19

Compare Source

Bug Fixes
  • Components: Add missing regenerator-runtime dependency (#​13991)

v6.1.18

Compare Source

Bug Fixes

  • If you want to rebase/retry this PR, check this box

@mend-for-github-com mend-for-github-com bot added the security fix Security fix generated by WhiteSource label Apr 3, 2023
@mend-for-github-com mend-for-github-com bot changed the title Update dependency @storybook/react to v7 Update dependency @storybook/react to v7 - autoclosed Jun 15, 2023
@mend-for-github-com mend-for-github-com bot deleted the whitesource-remediate/storybook-react-7.x branch June 15, 2023 07:48
@mend-for-github-com mend-for-github-com bot changed the title Update dependency @storybook/react to v7 - autoclosed Update dependency @storybook/react to v7 Jun 20, 2023
@mend-for-github-com mend-for-github-com bot reopened this Jun 20, 2023
@mend-for-github-com mend-for-github-com bot restored the whitesource-remediate/storybook-react-7.x branch June 20, 2023 00:07
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/storybook-react-7.x branch from 3ed3034 to 504f0e4 Compare June 20, 2023 00:11
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
security fix Security fix generated by WhiteSource
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

0 participants