[Snyk] Upgrade posthog-js from 1.139.6 to 1.144.2 #777

Closed
opened 2026-04-05 16:22:56 +02:00 by MrUnknownDE · 0 comments
Owner

Originally created by @simlarsen on 7/27/2024

snyk-top-banner

Snyk has created this PR to upgrade posthog-js from 1.139.6 to 1.144.2.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 15 versions ahead of your current version.

  • The recommended version was released on 22 days ago.

Release notes
Package name: posthog-js
  • 1.144.2 - 2024-07-05

    1.144.2 - 2024-07-05

    • fix(surveys): polishing the popup survey UI (#1279)
    • add rdt_cid as a campaign parameter (#1286)
  • 1.144.1 - 2024-07-04

    1.144.1 - 2024-07-04

    • fix: only take scheduled full snapshots (#1285)
  • 1.144.0 - 2024-07-03

    1.144.0 - 2024-07-03

    • feat: add payload host denylist (#1282)
  • 1.143.0 - 2024-07-02

    1.143.0 - 2024-07-02

    • feat(survey): Allow events to repeatedly activate surveys (#1273)
  • 1.142.1 - 2024-06-28

    1.142.1 - 2024-06-28

    • feat: warn when distinct id invalid for replay (#1277)
  • 1.142.0 - 2024-06-28

    1.142.0 - 2024-06-28

    • feat: Improved various bundles (#1265)
  • 1.141.4 - 2024-06-26

    1.141.4 - 2024-06-26

    • fix: use includes over contains (#1275)
    • chore: add browsertack build name (#1271)
  • 1.141.3 - 2024-06-25

    1.141.3 - 2024-06-25

    • fix: dropped styles on route transition (#1272)
  • 1.141.2 - 2024-06-25

    1.141.2 - 2024-06-25

  • 1.141.1 - 2024-06-25

    1.141.1 - 2024-06-25

    • fix: exception autocapture (#1261)
  • 1.141.0 - 2024-06-24
  • 1.140.1 - 2024-06-21
  • 1.140.0 - 2024-06-21
  • 1.139.8 - 2024-06-21
  • 1.139.7 - 2024-06-21
  • 1.139.6 - 2024-06-20
from posthog-js GitHub release notes

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

*Originally created by @simlarsen on 7/27/2024* ![snyk-top-banner](https://github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123) <h3>Snyk has created this PR to upgrade posthog-js from 1.139.6 to 1.144.2.</h3> :information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project. <hr/> - The recommended version is **15 versions** ahead of your current version. - The recommended version was released on **22 days ago**. <details> <summary><b>Release notes</b></summary> <br/> <details> <summary>Package name: <b>posthog-js</b></summary> <ul> <li> <b>1.144.2</b> - <a href="https://github.com/PostHog/posthog-js/releases/tag/v1.144.2">2024-07-05</a></br><h2>1.144.2 - 2024-07-05</h2> <ul> <li>fix(surveys): polishing the popup survey UI (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="2384912578" data-permission-text="Title is private" data-url="https://github.com/PostHog/posthog-js/issues/1279" data-hovercard-type="pull_request" data-hovercard-url="/PostHog/posthog-js/pull/1279/hovercard" href="https://github.com/PostHog/posthog-js/pull/1279">#1279</a>)</li> <li>add rdt_cid as a campaign parameter (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="2390418082" data-permission-text="Title is private" data-url="https://github.com/PostHog/posthog-js/issues/1286" data-hovercard-type="pull_request" data-hovercard-url="/PostHog/posthog-js/pull/1286/hovercard" href="https://github.com/PostHog/posthog-js/pull/1286">#1286</a>)</li> </ul> </li> <li> <b>1.144.1</b> - <a href="https://github.com/PostHog/posthog-js/releases/tag/v1.144.1">2024-07-04</a></br><h2>1.144.1 - 2024-07-04</h2> <ul> <li>fix: only take scheduled full snapshots (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="2390274509" data-permission-text="Title is private" data-url="https://github.com/PostHog/posthog-js/issues/1285" data-hovercard-type="pull_request" data-hovercard-url="/PostHog/posthog-js/pull/1285/hovercard" href="https://github.com/PostHog/posthog-js/pull/1285">#1285</a>)</li> </ul> </li> <li> <b>1.144.0</b> - <a href="https://github.com/PostHog/posthog-js/releases/tag/v1.144.0">2024-07-03</a></br><h2>1.144.0 - 2024-07-03</h2> <ul> <li>feat: add payload host denylist (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="2388693091" data-permission-text="Title is private" data-url="https://github.com/PostHog/posthog-js/issues/1282" data-hovercard-type="pull_request" data-hovercard-url="/PostHog/posthog-js/pull/1282/hovercard" href="https://github.com/PostHog/posthog-js/pull/1282">#1282</a>)</li> </ul> </li> <li> <b>1.143.0</b> - <a href="https://github.com/PostHog/posthog-js/releases/tag/v1.143.0">2024-07-02</a></br><h2>1.143.0 - 2024-07-02</h2> <ul> <li>feat(survey): Allow events to repeatedly activate surveys (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="2373148818" data-permission-text="Title is private" data-url="https://github.com/PostHog/posthog-js/issues/1273" data-hovercard-type="pull_request" data-hovercard-url="/PostHog/posthog-js/pull/1273/hovercard" href="https://github.com/PostHog/posthog-js/pull/1273">#1273</a>)</li> </ul> </li> <li> <b>1.142.1</b> - <a href="https://github.com/PostHog/posthog-js/releases/tag/v1.142.1">2024-06-28</a></br><h2>1.142.1 - 2024-06-28</h2> <ul> <li>feat: warn when distinct id invalid for replay (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="2380207551" data-permission-text="Title is private" data-url="https://github.com/PostHog/posthog-js/issues/1277" data-hovercard-type="pull_request" data-hovercard-url="/PostHog/posthog-js/pull/1277/hovercard" href="https://github.com/PostHog/posthog-js/pull/1277">#1277</a>)</li> </ul> </li> <li> <b>1.142.0</b> - <a href="https://github.com/PostHog/posthog-js/releases/tag/v1.142.0">2024-06-28</a></br><h2>1.142.0 - 2024-06-28</h2> <ul> <li>feat: Improved various bundles (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="2365985360" data-permission-text="Title is private" data-url="https://github.com/PostHog/posthog-js/issues/1265" data-hovercard-type="pull_request" data-hovercard-url="/PostHog/posthog-js/pull/1265/hovercard" href="https://github.com/PostHog/posthog-js/pull/1265">#1265</a>)</li> </ul> </li> <li> <b>1.141.4</b> - <a href="https://github.com/PostHog/posthog-js/releases/tag/v1.141.4">2024-06-26</a></br><h2>1.141.4 - 2024-06-26</h2> <ul> <li>fix: use includes over contains (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="2374942281" data-permission-text="Title is private" data-url="https://github.com/PostHog/posthog-js/issues/1275" data-hovercard-type="pull_request" data-hovercard-url="/PostHog/posthog-js/pull/1275/hovercard" href="https://github.com/PostHog/posthog-js/pull/1275">#1275</a>)</li> <li>chore: add browsertack build name (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="2372748369" data-permission-text="Title is private" data-url="https://github.com/PostHog/posthog-js/issues/1271" data-hovercard-type="pull_request" data-hovercard-url="/PostHog/posthog-js/pull/1271/hovercard" href="https://github.com/PostHog/posthog-js/pull/1271">#1271</a>)</li> </ul> </li> <li> <b>1.141.3</b> - <a href="https://github.com/PostHog/posthog-js/releases/tag/v1.141.3">2024-06-25</a></br><h2>1.141.3 - 2024-06-25</h2> <ul> <li>fix: dropped styles on route transition (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="2372906292" data-permission-text="Title is private" data-url="https://github.com/PostHog/posthog-js/issues/1272" data-hovercard-type="pull_request" data-hovercard-url="/PostHog/posthog-js/pull/1272/hovercard" href="https://github.com/PostHog/posthog-js/pull/1272">#1272</a>)</li> </ul> </li> <li> <b>1.141.2</b> - <a href="https://github.com/PostHog/posthog-js/releases/tag/v1.141.2">2024-06-25</a></br><h2>1.141.2 - 2024-06-25</h2> </li> <li> <b>1.141.1</b> - <a href="https://github.com/PostHog/posthog-js/releases/tag/v1.141.1">2024-06-25</a></br><h2>1.141.1 - 2024-06-25</h2> <ul> <li>fix: exception autocapture (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="2365311333" data-permission-text="Title is private" data-url="https://github.com/PostHog/posthog-js/issues/1261" data-hovercard-type="pull_request" data-hovercard-url="/PostHog/posthog-js/pull/1261/hovercard" href="https://github.com/PostHog/posthog-js/pull/1261">#1261</a>)</li> </ul> </li> <li> <b>1.141.0</b> - 2024-06-24 </li> <li> <b>1.140.1</b> - 2024-06-21 </li> <li> <b>1.140.0</b> - 2024-06-21 </li> <li> <b>1.139.8</b> - 2024-06-21 </li> <li> <b>1.139.7</b> - 2024-06-21 </li> <li> <b>1.139.6</b> - 2024-06-20 </li> </ul> from <a href="https://github.com/PostHog/posthog-js/releases">posthog-js GitHub release notes</a> </details> </details> --- > [!IMPORTANT] > > - Check the changes in this PR to ensure they won't cause issues with your project. > - This PR was automatically created by Snyk using the credentials of a real user. --- **Note:** _You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs._ **For more information:** <img src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiI4ZDRhZGY3My0wZWVkLTQxNzctOTNkYy1lNzhiMDE1ODM4ZjUiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6IjhkNGFkZjczLTBlZWQtNDE3Ny05M2RjLWU3OGIwMTU4MzhmNSJ9fQ==" width="0" height="0"/> > - 🧐 [View latest project report](https://app.snyk.io/org/oneuptime-RsC2nshvQ2Vnr35jHvMnMP/project/f6446ec8-d441-487e-b58f-38373430e213?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr) > - 📜 [Customise PR templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates) > - 🛠 [Adjust upgrade PR settings](https://app.snyk.io/org/oneuptime-RsC2nshvQ2Vnr35jHvMnMP/project/f6446ec8-d441-487e-b58f-38373430e213/settings/integration?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr) > - 🔕 [Ignore this dependency or unsubscribe from future upgrade PRs](https://app.snyk.io/org/oneuptime-RsC2nshvQ2Vnr35jHvMnMP/project/f6446ec8-d441-487e-b58f-38373430e213/settings/integration?pkg&#x3D;posthog-js&amp;utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr#auto-dep-upgrades) <!--- (snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"posthog-js","from":"1.139.6","to":"1.144.2"}],"env":"prod","hasFixes":false,"isBreakingChange":false,"isMajorUpgrade":false,"issuesToFix":[],"prId":"8d4adf73-0eed-4177-93dc-e78b015838f5","prPublicId":"8d4adf73-0eed-4177-93dc-e78b015838f5","packageManager":"npm","priorityScoreList":[],"projectPublicId":"f6446ec8-d441-487e-b58f-38373430e213","projectUrl":"https://app.snyk.io/org/oneuptime-RsC2nshvQ2Vnr35jHvMnMP/project/f6446ec8-d441-487e-b58f-38373430e213?utm_source=github&utm_medium=referral&page=upgrade-pr","prType":"upgrade","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":[],"type":"auto","upgrade":[],"upgradeInfo":{"versionsDiff":15,"publishedDate":"2024-07-05T19:40:15.666Z"},"vulns":[]}) --->
Sign in to join this conversation.
No Label
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: github/oneuptime#777