Skip to content

Commit 8f61162

Browse files
authored
fix: package.json & yarn.lock to reduce vulnerabilities (#59)
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-MINIMIST-559764 - https://snyk.io/vuln/SNYK-JS-YARGSPARSER-560381
1 parent 93de1f9 commit 8f61162

File tree

2 files changed

+60
-20
lines changed

2 files changed

+60
-20
lines changed

package.json

+2-2
Original file line numberDiff line numberDiff line change
@@ -92,7 +92,7 @@
9292
"@types/node": "^13.9.0",
9393
"@vue/test-utils": "^1.0.0-beta.31",
9494
"colors": "^1.3.2",
95-
"commitizen": "^4.0.3",
95+
"commitizen": "^4.0.4",
9696
"coveralls": "^3.0.9",
9797
"cross-env": "^7.0.2",
9898
"cz-conventional-changelog": "^3.0.2",
@@ -111,7 +111,7 @@
111111
"semantic-release": "^17.0.4",
112112
"shelljs": "^0.8.3",
113113
"travis-deploy-once": "^5.0.9",
114-
"ts-jest": "^25.2.1",
114+
"ts-jest": "^25.3.0",
115115
"ts-node": "^8.6.2",
116116
"tslint": "^6.0.0",
117117
"tslint-config-prettier": "^1.15.0",

yarn.lock

+58-18
Original file line numberDiff line numberDiff line change
@@ -2538,6 +2538,27 @@ commitizen@^4.0.3:
25382538
strip-bom "4.0.0"
25392539
strip-json-comments "3.0.1"
25402540

2541+
commitizen@^4.0.4:
2542+
version "4.0.4"
2543+
resolved "https://registry.yarnpkg.com/commitizen/-/commitizen-4.0.4.tgz#60e9666e293269f459f1038ca452b39acecb8999"
2544+
integrity sha512-gfEt1rDE9VqKif+LE3cAThpqiW/1K3c2Nx83jSU6ohZjQd2CAmz1rMIlgmbPrPagOkKZw7USzSVubS758ZTWdA==
2545+
dependencies:
2546+
cachedir "2.2.0"
2547+
cz-conventional-changelog "3.0.1"
2548+
dedent "0.7.0"
2549+
detect-indent "6.0.0"
2550+
find-node-modules "2.0.0"
2551+
find-root "1.1.0"
2552+
fs-extra "8.1.0"
2553+
glob "7.1.4"
2554+
inquirer "6.5.0"
2555+
is-utf8 "^0.2.1"
2556+
lodash "4.17.15"
2557+
minimist "1.2.3"
2558+
shelljs "0.7.6"
2559+
strip-bom "4.0.0"
2560+
strip-json-comments "3.0.1"
2561+
25412562
commondir@^1.0.1:
25422563
version "1.0.1"
25432564
resolved "https://registry.yarnpkg.com/commondir/-/commondir-1.0.1.tgz#ddd800da0c66127393cca5950ea968a3aaf1253b"
@@ -6042,6 +6063,14 @@ merge@^1.2.1:
60426063
resolved "https://registry.yarnpkg.com/merge/-/merge-1.2.1.tgz#38bebf80c3220a8a487b6fcfb3941bb11720c145"
60436064
integrity sha512-VjFo4P5Whtj4vsLzsYBu5ayHhoHJ0UqNm7ibvShmbmoz7tGi0vXaoJbGdB+GmDMLUdg8DpQXEIeVDAe8MaABvQ==
60446065

6066+
[email protected], micromatch@^4.0.2:
6067+
version "4.0.2"
6068+
resolved "https://registry.yarnpkg.com/micromatch/-/micromatch-4.0.2.tgz#4fcb0999bf9fbc2fcbdd212f6d629b9a56c39259"
6069+
integrity sha512-y7FpHSbMUMoyPbYUSzO6PaZ6FyRnQOpHuKwbo1G+Knck95XVU4QAiKdGEnj5wwoS7PlOgthX/09u5iFJ+aYf5Q==
6070+
dependencies:
6071+
braces "^3.0.1"
6072+
picomatch "^2.0.5"
6073+
60456074
micromatch@^3.0.4, micromatch@^3.1.4:
60466075
version "3.1.10"
60476076
resolved "https://registry.yarnpkg.com/micromatch/-/micromatch-3.1.10.tgz#70859bc95c9840952f359a068a3fc49f9ecfac23"
@@ -6061,14 +6090,6 @@ micromatch@^3.0.4, micromatch@^3.1.4:
60616090
snapdragon "^0.8.1"
60626091
to-regex "^3.0.2"
60636092

6064-
micromatch@^4.0.2:
6065-
version "4.0.2"
6066-
resolved "https://registry.yarnpkg.com/micromatch/-/micromatch-4.0.2.tgz#4fcb0999bf9fbc2fcbdd212f6d629b9a56c39259"
6067-
integrity sha512-y7FpHSbMUMoyPbYUSzO6PaZ6FyRnQOpHuKwbo1G+Knck95XVU4QAiKdGEnj5wwoS7PlOgthX/09u5iFJ+aYf5Q==
6068-
dependencies:
6069-
braces "^3.0.1"
6070-
picomatch "^2.0.5"
6071-
60726093
60736094
version "1.43.0"
60746095
resolved "https://registry.yarnpkg.com/mime-db/-/mime-db-1.43.0.tgz#0a12e0502650e473d735535050e7c8f4eb4fae58"
@@ -6126,6 +6147,11 @@ [email protected], minimist@^1.1.1, minimist@^1.2.0:
61266147
resolved "https://registry.yarnpkg.com/minimist/-/minimist-1.2.0.tgz#a35008b20f41383eec1fb914f4cd5df79a264284"
61276148
integrity sha1-o1AIsg9BOD7sH7kU9M1d95omQoQ=
61286149

6150+
6151+
version "1.2.3"
6152+
resolved "https://registry.yarnpkg.com/minimist/-/minimist-1.2.3.tgz#3db5c0765545ab8637be71f333a104a965a9ca3f"
6153+
integrity sha512-+bMdgqjMN/Z77a6NlY/I3U5LlRDbnmaAk6lDveAPKwSpcPM4tKAuYsvYF8xjhOPXhOYGe/73vVLVez5PW+jqhw==
6154+
61296155
minimist@~0.0.1:
61306156
version "0.0.10"
61316157
resolved "https://registry.yarnpkg.com/minimist/-/minimist-0.0.10.tgz#de3f98543dbf96082be48ad1a0c7cda836301dcf"
@@ -6170,13 +6196,18 @@ mixin-deep@^1.2.0:
61706196
for-in "^1.0.2"
61716197
is-extendable "^1.0.1"
61726198

6173-
[email protected], [email protected].x, mkdirp@^0.5.0, mkdirp@^0.5.1, mkdirp@~0.5.0, mkdirp@~0.5.1:
6199+
[email protected], mkdirp@^0.5.0, mkdirp@^0.5.1, mkdirp@~0.5.0, mkdirp@~0.5.1:
61746200
version "0.5.1"
61756201
resolved "https://registry.yarnpkg.com/mkdirp/-/mkdirp-0.5.1.tgz#30057438eac6cf7f8c4767f38648d6697d75c903"
61766202
integrity sha1-MAV0OOrGz3+MR2fzhkjWaX11yQM=
61776203
dependencies:
61786204
minimist "0.0.8"
61796205

6206+
6207+
version "1.0.4"
6208+
resolved "https://registry.yarnpkg.com/mkdirp/-/mkdirp-1.0.4.tgz#3eb5ed62622756d79a5f0e2a221dfebad75c2f7e"
6209+
integrity sha512-vVqVZQyf3WLx2Shd0qJ9xuvqgAyKPLAiqITEtqW0oIUjzo3PePDd6fW9iFz30ef7Ysp/oiWqbhszeGWW2T6Gzw==
6210+
61806211
modify-values@^1.0.0:
61816212
version "1.0.1"
61826213
resolved "https://registry.yarnpkg.com/modify-values/-/modify-values-1.0.1.tgz#b3939fa605546474e3e3e3c63d64bd43b4ee6022"
@@ -7944,12 +7975,12 @@ semver-regex@^2.0.0:
79447975
resolved "https://registry.yarnpkg.com/semver-regex/-/semver-regex-2.0.0.tgz#a93c2c5844539a770233379107b38c7b4ac9d338"
79457976
integrity sha512-mUdIBBvdn0PLOeP3TEkMH7HHeUP3GjsXCwKarjv/kGmUFOYg1VqEemKhoQpWMu6X2I8kHeuVdGibLGkVK+/5Qw==
79467977

7947-
"semver@2 || 3 || 4 || 5", "[email protected] || 3.x || 4 || 5", "semver@^2.3.0 || 3.x || 4 || 5", semver@^5.0.3, semver@^5.1.0, semver@^5.3.0, semver@^5.4.1, semver@^5.5, semver@^5.5.0, semver@^5.5.1, semver@^5.6.0, semver@^5.7.1:
7978+
"semver@2 || 3 || 4 || 5", "[email protected] || 3.x || 4 || 5", "semver@^2.3.0 || 3.x || 4 || 5", semver@^5.0.3, semver@^5.1.0, semver@^5.3.0, semver@^5.4.1, semver@^5.5.0, semver@^5.5.1, semver@^5.6.0, semver@^5.7.1:
79487979
version "5.7.1"
79497980
resolved "https://registry.yarnpkg.com/semver/-/semver-5.7.1.tgz#a954f931aeba508d307bbf069eff0c01c96116f7"
79507981
integrity sha512-sauaDf/PZdVgrLTNYHRtpXa1iRiKcaebiKQ1BJdpQlWH2lCvexQdX55snPFyK7QzpudqbCI0qXFfOasHdyNDGQ==
79517982

7952-
[email protected], semver@^6.0.0, semver@^6.3.0:
7983+
[email protected], semver@6.x, semver@^6.0.0, semver@^6.3.0:
79537984
version "6.3.0"
79547985
resolved "https://registry.yarnpkg.com/semver/-/semver-6.3.0.tgz#ee0a64c8af5e8ceea67687b133761e1becbd1d3d"
79557986
integrity sha512-b39TBaTSfV6yBrapU89p5fKekE2m/NwnDocOVruQFS1/veMgdzuPcnOM34M6CwxW8jH/lxEa5rBoDeUwu5HHTw==
@@ -8735,21 +8766,22 @@ trim-off-newlines@^1.0.0:
87358766
resolved "https://registry.yarnpkg.com/trim-off-newlines/-/trim-off-newlines-1.0.1.tgz#9f9ba9d9efa8764c387698bcbfeb2c848f11adb3"
87368767
integrity sha1-n5up2e+odkw4dpi8v+sshI8RrbM=
87378768

8738-
ts-jest@^25.2.1:
8739-
version "25.2.1"
8740-
resolved "https://registry.yarnpkg.com/ts-jest/-/ts-jest-25.2.1.tgz#49bf05da26a8b7fbfbc36b4ae2fcdc2fef35c85d"
8741-
integrity sha512-TnntkEEjuXq/Gxpw7xToarmHbAafgCaAzOpnajnFC6jI7oo1trMzAHA04eWpc3MhV6+yvhE8uUBAmN+teRJh0A==
8769+
ts-jest@^25.3.0:
8770+
version "25.3.1"
8771+
resolved "https://registry.yarnpkg.com/ts-jest/-/ts-jest-25.3.1.tgz#58e2ed3506e4e4487c0b9b532846a5cade9656ba"
8772+
integrity sha512-O53FtKguoMUByalAJW+NWEv7c4tus5ckmhfa7/V0jBb2z8v5rDSLFC1Ate7wLknYPC1euuhY6eJjQq4FtOZrkg==
87428773
dependencies:
87438774
bs-logger "0.x"
87448775
buffer-from "1.x"
87458776
fast-json-stable-stringify "2.x"
87468777
json5 "2.x"
87478778
lodash.memoize "4.x"
87488779
make-error "1.x"
8749-
mkdirp "0.x"
8780+
micromatch "4.x"
8781+
mkdirp "1.x"
87508782
resolve "1.x"
8751-
semver "^5.5"
8752-
yargs-parser "^16.1.0"
8783+
semver "6.x"
8784+
yargs-parser "18.x"
87538785

87548786
ts-node@^8.6.2:
87558787
version "8.6.2"
@@ -9466,6 +9498,14 @@ yaml@^1.7.2:
94669498
dependencies:
94679499
"@babel/runtime" "^7.8.7"
94689500

9501+
9502+
version "18.1.2"
9503+
resolved "https://registry.yarnpkg.com/yargs-parser/-/yargs-parser-18.1.2.tgz#2f482bea2136dbde0861683abea7756d30b504f1"
9504+
integrity sha512-hlIPNR3IzC1YuL1c2UwwDKpXlNFBqD1Fswwh1khz5+d8Cq/8yc/Mn0i+rQXduu8hcrFKvO7Eryk+09NecTQAAQ==
9505+
dependencies:
9506+
camelcase "^5.0.0"
9507+
decamelize "^1.2.0"
9508+
94699509
yargs-parser@^10.0.0:
94709510
version "10.1.0"
94719511
resolved "https://registry.yarnpkg.com/yargs-parser/-/yargs-parser-10.1.0.tgz#7202265b89f7e9e9f2e5765e0fe735a905edbaa8"

0 commit comments

Comments
 (0)