-
Notifications
You must be signed in to change notification settings - Fork 36
Pull requests: cdapio/cdap-ui
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
Bump brace-expansion from 1.1.11 to 1.1.15
dependencies
Pull requests that update a dependency file
javascript
Pull requests that update Javascript code
#1410
opened Jun 17, 2026 by
dependabot
Bot
Loading…
Bump @babel/core from 7.7.4 to 7.29.6
dependencies
Pull requests that update a dependency file
javascript
Pull requests that update Javascript code
#1409
opened Jun 17, 2026 by
dependabot
Bot
Loading…
Bump js-yaml from 4.1.0 to 4.2.0
dependencies
Pull requests that update a dependency file
javascript
Pull requests that update Javascript code
#1408
opened Jun 16, 2026 by
dependabot
Bot
Loading…
security: prevent zip path traversal in unzip helpers
#1406
opened Jun 3, 2026 by
XananasX7
Loading…
Restrict /updateTheme to the configured theme file and harden market host verification
#1405
opened Jun 1, 2026 by
adilburaksen
Loading…
add support for configurable entities limit for the connections browser
build
triggers github action
#1403
opened May 26, 2026 by
GnsP
Collaborator
Loading…
1 of 6 tasks
Bump webpack-dev-server from 3.11.0 to 5.2.4
dependencies
Pull requests that update a dependency file
javascript
Pull requests that update Javascript code
#1401
opened May 19, 2026 by
dependabot
Bot
Loading…
Bump @protobufjs/utf8 from 1.1.0 to 1.1.1
dependencies
Pull requests that update a dependency file
javascript
Pull requests that update Javascript code
#1400
opened May 13, 2026 by
dependabot
Bot
Loading…
ci: safe PoC for fork PR GCP secret exposure (VRP)
#1399
opened May 11, 2026 by
adilburaksen
Loading…
build: skip GCP secret retrieval and e2e tests for fork PRs
#1398
opened May 11, 2026 by
adilburaksen
Loading…
Bump @babel/plugin-transform-modules-systemjs from 7.15.4 to 7.29.4
dependencies
Pull requests that update a dependency file
javascript
Pull requests that update Javascript code
#1397
opened May 9, 2026 by
dependabot
Bot
Loading…
Bump uuid from 3.3.3 to 14.0.0
dependencies
Pull requests that update a dependency file
javascript
Pull requests that update Javascript code
#1396
opened Apr 23, 2026 by
dependabot
Bot
Loading…
Bump follow-redirects from 1.13.3 to 1.16.0
dependencies
Pull requests that update a dependency file
javascript
Pull requests that update Javascript code
#1395
opened Apr 15, 2026 by
dependabot
Bot
Loading…
Correlate WebSocket auth with the originating TCP socket
#1394
opened Apr 10, 2026 by
TristanInSec
Loading…
3 tasks
Allowlist request options forwarded from the WebSocket handler
#1393
opened Apr 10, 2026 by
TristanInSec
Loading…
Validate templateid/pluginid in pushConfiguration
#1392
opened Apr 10, 2026 by
TristanInSec
Loading…
Restrict UI theme file loader to JSON files under the theme config dir
#1391
opened Apr 10, 2026 by
TristanInSec
Loading…
Bump picomatch from 2.2.2 to 2.3.2
dependencies
Pull requests that update a dependency file
javascript
Pull requests that update Javascript code
#1390
opened Apr 8, 2026 by
dependabot
Bot
Loading…
Bump lodash from 4.17.15 to 4.18.1
dependencies
Pull requests that update a dependency file
javascript
Pull requests that update Javascript code
#1389
opened Apr 3, 2026 by
dependabot
Bot
Loading…
Bump lodash-es from 4.17.21 to 4.18.1
dependencies
Pull requests that update a dependency file
javascript
Pull requests that update Javascript code
#1388
opened Apr 2, 2026 by
dependabot
Bot
Loading…
fix: path traversal, arbitrary file read, and weak session secret in Node server
#1387
opened Mar 27, 2026 by
mohammadmseet-hue
Loading…
6 tasks
Bump yauzl from 2.7.0 to 3.2.1 in /cdap-ui-upgrade
dependencies
Pull requests that update a dependency file
javascript
Pull requests that update Javascript code
#1386
opened Mar 14, 2026 by
dependabot
Bot
Loading…
Bump yauzl from 2.10.0 to 3.2.1 in /gitpod
dependencies
Pull requests that update a dependency file
javascript
Pull requests that update Javascript code
#1385
opened Mar 14, 2026 by
dependabot
Bot
Loading…
Previous Next
ProTip!
Add no:assignee to see everything that’s not assigned.