Skip to content

Commit 10fc8f7

Browse files
committed
fix: package.json & yarn.lock to reduce vulnerabilities
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-VM2-5772825 - https://snyk.io/vuln/SNYK-JS-VM2-5772823 - https://snyk.io/vuln/SNYK-JS-VALIDATOR-13395830
1 parent db90a7e commit 10fc8f7

File tree

2 files changed

+25
-10
lines changed

2 files changed

+25
-10
lines changed

package.json

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -110,8 +110,8 @@
110110
"underscore": "^1.8.3",
111111
"uuid": "^3.3.3",
112112
"uuid-by-string": "^3.0.2",
113-
"validator": "^9.0.0",
114-
"vm2": "^3.9.2",
113+
"validator": "^13.15.20",
114+
"vm2": "^3.10.0",
115115
"xlsx-populate": "^1.20.1",
116116
"xlsx-stream-reader": "^1.1.0",
117117
"xss": "^1.0.6",

yarn.lock

Lines changed: 23 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -1280,6 +1280,13 @@ acorn-walk@^6.0.1:
12801280
resolved "https://registry.yarnpkg.com/acorn-walk/-/acorn-walk-6.2.0.tgz#123cb8f3b84c2171f1f7fb252615b1c78a6b1a8c"
12811281
integrity sha512-7evsyfH1cLOCdAzZAd43Cic04yKydNx0cF+7tiA19p1XnLLPU4dpCQOqpjqwokFe//vS0QqfqqjCS2JkiIs0cA==
12821282

1283+
acorn-walk@^8.3.4:
1284+
version "8.3.4"
1285+
resolved "https://registry.yarnpkg.com/acorn-walk/-/acorn-walk-8.3.4.tgz#794dd169c3977edf4ba4ea47583587c5866236b7"
1286+
integrity sha512-ueEepnujpqee2o5aIYnvHU6C0A42MNdsIDeqy5BydrkuC5R1ZuUFnm27EeFJGoEHJQgn3uleRvmTXaJgfXbt4g==
1287+
dependencies:
1288+
acorn "^8.11.0"
1289+
12831290
acorn@^5.5.3:
12841291
version "5.7.3"
12851292
resolved "https://registry.yarnpkg.com/acorn/-/acorn-5.7.3.tgz#67aa231bf8812974b85235a96771eb6bd07ea279"
@@ -1290,6 +1297,11 @@ acorn@^6.0.1:
12901297
resolved "https://registry.yarnpkg.com/acorn/-/acorn-6.4.0.tgz#b659d2ffbafa24baf5db1cdbb2c94a983ecd2784"
12911298
integrity sha512-gac8OEcQ2Li1dxIEWGZzsp2BitJxwkwcOm0zHAJLcPJaVvm58FRnk6RkuLRpU1EujipU2ZFODv2P9DLMfnV8mw==
12921299

1300+
acorn@^8.11.0, acorn@^8.14.1:
1301+
version "8.15.0"
1302+
resolved "https://registry.yarnpkg.com/acorn/-/acorn-8.15.0.tgz#a360898bc415edaac46c8241f6383975b930b816"
1303+
integrity sha512-NZyJarBfL7nWwIq+FDL6Zp/yHEhePMNnnJ0y3qfieCrmNvYct8uvtiV41UvlSe6apAfk0fY1FbWx+NwfmpvtTg==
1304+
12931305
add-stream@^1.0.0:
12941306
version "1.0.0"
12951307
resolved "https://registry.yarnpkg.com/add-stream/-/add-stream-1.0.0.tgz#6a7990437ca736d5e1288db92bd3266d5f5cb2aa"
@@ -10564,10 +10576,10 @@ validate-npm-package-license@^3.0.1:
1056410576
spdx-correct "^3.0.0"
1056510577
spdx-expression-parse "^3.0.0"
1056610578

10567-
validator@^9.0.0:
10568-
version "9.4.1"
10569-
resolved "https://registry.yarnpkg.com/validator/-/validator-9.4.1.tgz#abf466d398b561cd243050112c6ff1de6cc12663"
10570-
integrity sha512-YV5KjzvRmSyJ1ee/Dm5UED0G+1L4GZnLN3w6/T+zZm8scVua4sOhYKWTUrKa0H/tMiJyO9QLHMPN+9mB/aMunA==
10579+
validator@^13.15.20:
10580+
version "13.15.20"
10581+
resolved "https://registry.yarnpkg.com/validator/-/validator-13.15.20.tgz#054e9238109538a1bf46ae3e1290845a64fa2186"
10582+
integrity sha512-KxPOq3V2LmfQPP4eqf3Mq/zrT0Dqp2Vmx2Bn285LwVahLc+CsxOM0crBHczm8ijlcjZ0Q5Xd6LW3z3odTPnlrw==
1057110583

1057210584
vary@^1, vary@~1.1.2:
1057310585
version "1.1.2"
@@ -10583,10 +10595,13 @@ [email protected]:
1058310595
core-util-is "1.0.2"
1058410596
extsprintf "^1.2.0"
1058510597

10586-
vm2@^3.9.2:
10587-
version "3.9.2"
10588-
resolved "https://registry.yarnpkg.com/vm2/-/vm2-3.9.2.tgz#a4085d2d88a808a1b3c06d5478c2db3222a9cc30"
10589-
integrity sha512-nzyFmHdy2FMg7mYraRytc2jr4QBaUY3TEGe3q3bK8EgS9WC98wxn2jrPxS/ruWm+JGzrEIIeufKweQzVoQEd+Q==
10598+
vm2@^3.10.0:
10599+
version "3.10.0"
10600+
resolved "https://registry.yarnpkg.com/vm2/-/vm2-3.10.0.tgz#bd241fbf37fed0b7d0050e40ad08d7be6ba33d57"
10601+
integrity sha512-3ggF4Bs0cw4M7Rxn19/Cv3nJi04xrgHwt4uLto+zkcZocaKwP/nKP9wPx6ggN2X0DSXxOOIc63BV1jvES19wXQ==
10602+
dependencies:
10603+
acorn "^8.14.1"
10604+
acorn-walk "^8.3.4"
1059010605

1059110606
w3c-hr-time@^1.0.1:
1059210607
version "1.0.1"

0 commit comments

Comments
 (0)