Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Snyk] Upgrade three from 0.91.0 to 0.126.1 #2

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

snyk-bot
Copy link

@snyk-bot snyk-bot commented Apr 9, 2021

Snyk has created this PR to upgrade three from 0.91.0 to 0.126.1.

merge advice
ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 55 versions ahead of your current version.
  • The recommended version was released a month ago, on 2021-03-03.

The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Regular Expression Denial of Service (ReDoS)
SNYK-JS-THREE-1064931
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: three
  • 0.126.1 - 2021-03-03
  • 0.126.0 - 2021-02-24
  • 0.125.2 - 2021-01-29
  • 0.125.1 - 2021-01-27
  • 0.125.0 - 2021-01-27
  • 0.124.0 - 2020-12-24
  • 0.123.0 - 2020-11-25
  • 0.122.0 - 2020-10-28
  • 0.121.1 - 2020-09-30
  • 0.121.0 - 2020-09-30
  • 0.120.1 - 2020-08-30
  • 0.120.0 - 2020-08-26
  • 0.119.1 - 2020-07-30
  • 0.119.0 - 2020-07-29
  • 0.118.3 - 2020-06-27
  • 0.118.2 - 2020-06-27
  • 0.118.1 - 2020-06-24
  • 0.118.0 - 2020-06-24
  • 0.117.1 - 2020-05-28
  • 0.117.0 - 2020-05-27
  • 0.116.1 - 2020-05-01
  • 0.116.0 - 2020-04-30
  • 0.115.0 - 2020-03-25
  • 0.114.0 - 2020-02-29
  • 0.113.2 - 2020-01-31
  • 0.113.1 - 2020-01-30
  • 0.113.0 - 2020-01-30
  • 0.112.1 - 2019-12-27
  • 0.112.0 - 2019-12-25
  • 0.111.0 - 2019-11-27
  • 0.110.0 - 2019-10-30
  • 0.109.0 - 2019-09-30
  • 0.108.0 - 2019-08-28
  • 0.107.0 - 2019-07-31
  • 0.106.2 - 2019-06-28
  • 0.106.1 - 2019-06-27
  • 0.106.0 - 2019-06-26
  • 0.105.2 - 2019-06-03
  • 0.105.1 - 2019-05-30
  • 0.105.0 - 2019-05-30
  • 0.104.0 - 2019-04-24
  • 0.103.0 - 2019-03-27
  • 0.102.1 - 2019-03-02
  • 0.102.0 - 2019-02-28
  • 0.101.1 - 2019-02-01
  • 0.101.0 - 2019-02-01
  • 0.100.0 - 2018-12-31
  • 0.99.0 - 2018-12-01
  • 0.98.0 - 2018-10-31
  • 0.97.0 - 2018-09-26
  • 0.96.0 - 2018-08-30
  • 0.95.0 - 2018-07-31
  • 0.94.0 - 2018-06-27
  • 0.93.0 - 2018-05-30
  • 0.92.0 - 2018-04-18
  • 0.91.0 - 2018-03-14
from three GitHub release notes
Commit messages
Package name: three
  • 94f043c r126.1
  • c112873 Mesh: Use correct vertex to compute normal during raycasting
  • dd55c01 r126
  • 292e51c Editor: VR code clean up.
  • 7f802ff Examples: Added screenshot for webgpu_instance_uniform
  • 29fbc87 Merge pull request #21350 from sunag/nodematerial-shared-uniforms
  • a2126eb Merge pull request #21349 from Mugen87/dev51
  • 672e9de Merge pull request #21351 from mrdoob/editor
  • 77c2e00 Editor: Implemented clicking HTML from inside VR
  • c3f8316 use default value
  • 015a27c add missing default value
  • e935137 fix title
  • c56f3df Merge remote-tracking branch 'upstream/dev' into nodematerial-shared-uniforms
  • 1c55bb2 Examples: Clean up.
  • 9b443e3 add example webgpu_instance_uniform
  • bf85611 cleanup
  • 59e8e47 compile node material per object
  • 068f7c1 Editor: Restore camera when exiting VR.
  • 9522135 3dmLoader: Updates (#21347)
  • 312ee7b Editor: Rescued VR mode.
  • cb99e7e Merge pull request #21346 from Mugen87/dev48
  • 4bf6228 WebGPURenderPipelines: Set material dispose listener only once.
  • 1a03670 Editor: Added Menubar/View/Fullscreen
  • 2a0447b Merge pull request #21345 from Mugen87/dev48

Compare


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant