[Snyk] Upgrade @stripe/react-stripe-js from 1.16.1 to 1.16.5 #1356

Closed
opened 2026-04-05 16:27:02 +02:00 by MrUnknownDE · 0 comments
Owner

Originally created by @simlarsen on 12/3/2023

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade @stripe/react-stripe-js from 1.16.1 to 1.16.5.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 4 versions ahead of your current version.
  • The recommended version was released 9 months ago, on 2023-02-21.
Release notes
Package name: @stripe/react-stripe-js
  • 1.16.5 - 2023-02-21

    New features

    Fixes

    • Bump ua-parser-js from 0.7.28 to 0.7.33 (#378)

    Changed

  • 1.16.4 - 2023-01-18

    Fixes

    • Switch back to a ref to track element creating, updating, and destroying (#376)
  • 1.16.3 - 2023-01-10

    Fixes

    • Only call element.on when the merchant passes in a callback (#372)
    • Bump json5 from 1.0.1 to 1.0.2 (#370)
  • 1.16.2 - 2023-01-04

    Fixes

    • Revert "Only call element.on when the merchant passes in a callback (#360)" (#369)
  • 1.16.1 - 2022-12-08

    Fixes

    • Only call element.on when the merchant passes in a callback (#360)
from @stripe/react-stripe-js GitHub release notes

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

*Originally created by @simlarsen on 12/3/2023* <p>This PR was automatically created by Snyk using the credentials of a real user.</p><br /><h3>Snyk has created this PR to upgrade @stripe/react-stripe-js from 1.16.1 to 1.16.5.</h3> :information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project. <hr/> - The recommended version is **4 versions** ahead of your current version. - The recommended version was released **9 months ago**, on 2023-02-21. <details> <summary><b>Release notes</b></summary> <br/> <details> <summary>Package name: <b>@stripe/react-stripe-js</b></summary> <ul> <li> <b>1.16.5</b> - <a href="https://snyk.io/redirect/github/stripe/react-stripe-js/releases/tag/v1.16.5">2023-02-21</a></br> <h3>New features</h3> <h3>Fixes</h3> <ul> <li>Bump ua-parser-js from 0.7.28 to 0.7.33 (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="1559157276" data-permission-text="Title is private" data-url="https://github.com/stripe/react-stripe-js/issues/378" data-hovercard-type="pull_request" data-hovercard-url="/stripe/react-stripe-js/pull/378/hovercard" href="https://snyk.io/redirect/github/stripe/react-stripe-js/pull/378">#378</a>)</li> </ul> <h3>Changed</h3> </li> <li> <b>1.16.4</b> - <a href="https://snyk.io/redirect/github/stripe/react-stripe-js/releases/tag/v1.16.4">2023-01-18</a></br><h3>Fixes</h3> <ul> <li>Switch back to a ref to track element creating, updating, and destroying (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="1548240422" data-permission-text="Title is private" data-url="https://github.com/stripe/react-stripe-js/issues/376" data-hovercard-type="pull_request" data-hovercard-url="/stripe/react-stripe-js/pull/376/hovercard" href="https://snyk.io/redirect/github/stripe/react-stripe-js/pull/376">#376</a>)</li> </ul> </li> <li> <b>1.16.3</b> - <a href="https://snyk.io/redirect/github/stripe/react-stripe-js/releases/tag/v1.16.3">2023-01-10</a></br><h3>Fixes</h3> <ul> <li>Only call element.on when the merchant passes in a callback (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="1526147333" data-permission-text="Title is private" data-url="https://github.com/stripe/react-stripe-js/issues/372" data-hovercard-type="pull_request" data-hovercard-url="/stripe/react-stripe-js/pull/372/hovercard" href="https://snyk.io/redirect/github/stripe/react-stripe-js/pull/372">#372</a>)</li> <li>Bump json5 from 1.0.1 to 1.0.2 (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="1519422764" data-permission-text="Title is private" data-url="https://github.com/stripe/react-stripe-js/issues/370" data-hovercard-type="pull_request" data-hovercard-url="/stripe/react-stripe-js/pull/370/hovercard" href="https://snyk.io/redirect/github/stripe/react-stripe-js/pull/370">#370</a>)</li> </ul> </li> <li> <b>1.16.2</b> - <a href="https://snyk.io/redirect/github/stripe/react-stripe-js/releases/tag/v1.16.2">2023-01-04</a></br> <h3>Fixes</h3> <ul> <li>Revert "Only call <code>element.on</code> when the merchant passes in a callback (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="1480188198" data-permission-text="Title is private" data-url="https://github.com/stripe/react-stripe-js/issues/360" data-hovercard-type="pull_request" data-hovercard-url="/stripe/react-stripe-js/pull/360/hovercard" href="https://snyk.io/redirect/github/stripe/react-stripe-js/pull/360">#360</a>)" (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="1519414826" data-permission-text="Title is private" data-url="https://github.com/stripe/react-stripe-js/issues/369" data-hovercard-type="pull_request" data-hovercard-url="/stripe/react-stripe-js/pull/369/hovercard" href="https://snyk.io/redirect/github/stripe/react-stripe-js/pull/369">#369</a>)</li> </ul> </li> <li> <b>1.16.1</b> - <a href="https://snyk.io/redirect/github/stripe/react-stripe-js/releases/tag/v1.16.1">2022-12-08</a></br> <h3>Fixes</h3> <ul> <li>Only call element.on when the merchant passes in a callback (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="1480188198" data-permission-text="Title is private" data-url="https://github.com/stripe/react-stripe-js/issues/360" data-hovercard-type="pull_request" data-hovercard-url="/stripe/react-stripe-js/pull/360/hovercard" href="https://snyk.io/redirect/github/stripe/react-stripe-js/pull/360">#360</a>)</li> </ul> </li> </ul> from <a href="https://snyk.io/redirect/github/stripe/react-stripe-js/releases">@stripe/react-stripe-js GitHub release notes</a> </details> </details> <hr/> **Note:** *You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.* For more information: <img src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiIyMGFlMGZlYS02YjUyLTQ2MDUtOTc2ZS1iOWMxZmRlYmM1ZWMiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6IjIwYWUwZmVhLTZiNTItNDYwNS05NzZlLWI5YzFmZGViYzVlYyJ9fQ==" width="0" height="0"/> 🧐 [View latest project report](https://app.snyk.io/org/oneuptime-RsC2nshvQ2Vnr35jHvMnMP/project/5dd2ef9c-1270-4729-aff4-e407805f7a9c?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr) 🛠 [Adjust upgrade PR settings](https://app.snyk.io/org/oneuptime-RsC2nshvQ2Vnr35jHvMnMP/project/5dd2ef9c-1270-4729-aff4-e407805f7a9c/settings/integration?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr) 🔕 [Ignore this dependency or unsubscribe from future upgrade PRs](https://app.snyk.io/org/oneuptime-RsC2nshvQ2Vnr35jHvMnMP/project/5dd2ef9c-1270-4729-aff4-e407805f7a9c/settings/integration?pkg&#x3D;@stripe/react-stripe-js&amp;utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr#auto-dep-upgrades) <!--- (snyk:metadata:{"prId":"20ae0fea-6b52-4605-976e-b9c1fdebc5ec","prPublicId":"20ae0fea-6b52-4605-976e-b9c1fdebc5ec","dependencies":[{"name":"@stripe/react-stripe-js","from":"1.16.1","to":"1.16.5"}],"packageManager":"npm","type":"auto","projectUrl":"https://app.snyk.io/org/oneuptime-RsC2nshvQ2Vnr35jHvMnMP/project/5dd2ef9c-1270-4729-aff4-e407805f7a9c?utm_source=github&utm_medium=referral&page=upgrade-pr","projectPublicId":"5dd2ef9c-1270-4729-aff4-e407805f7a9c","env":"prod","prType":"upgrade","vulns":[],"issuesToFix":[],"upgrade":[],"upgradeInfo":{"versionsDiff":4,"publishedDate":"2023-02-21T21:39:54.976Z"},"templateVariants":[],"hasFixes":false,"isMajorUpgrade":false,"isBreakingChange":false,"priorityScoreList":[]}) --->
Sign in to join this conversation.
No Label
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: github/oneuptime#1356