fix: package.json, yarn.lock & .snyk to reduce vulnerabilities
The following vulnerabilities are fixed with a Snyk patch: - https://snyk.io/vuln/SNYK-JS-LODASH-567746
This commit is contained in:
@@ -1,5 +1,5 @@
|
|||||||
# Snyk (https://snyk.io) policy file, patches or ignores known vulnerabilities.
|
# Snyk (https://snyk.io) policy file, patches or ignores known vulnerabilities.
|
||||||
version: v1.15.0
|
version: v1.19.0
|
||||||
ignore: {}
|
ignore: {}
|
||||||
# patches apply the minimum changes required to fix a vulnerability
|
# patches apply the minimum changes required to fix a vulnerability
|
||||||
patch:
|
patch:
|
||||||
@@ -215,3 +215,37 @@ patch:
|
|||||||
patched: '2020-05-01T01:01:38.423Z'
|
patched: '2020-05-01T01:01:38.423Z'
|
||||||
- nuxt > @nuxt/telemetry > inquirer > lodash:
|
- nuxt > @nuxt/telemetry > inquirer > lodash:
|
||||||
patched: '2020-06-21T15:59:31.404Z'
|
patched: '2020-06-21T15:59:31.404Z'
|
||||||
|
- snyk > graphlib > lodash:
|
||||||
|
patched: '2020-11-26T07:00:40.521Z'
|
||||||
|
- snyk > @snyk/snyk-cocoapods-plugin > @snyk/dep-graph > graphlib > lodash:
|
||||||
|
patched: '2020-11-26T07:00:40.521Z'
|
||||||
|
- snyk > snyk-go-plugin > @snyk/dep-graph > graphlib > lodash:
|
||||||
|
patched: '2020-11-26T07:00:40.521Z'
|
||||||
|
- snyk > snyk-cpp-plugin > @snyk/dep-graph > graphlib > lodash:
|
||||||
|
patched: '2020-11-26T07:00:40.521Z'
|
||||||
|
- snyk > snyk-docker-plugin > @snyk/dep-graph > graphlib > lodash:
|
||||||
|
patched: '2020-11-26T07:00:40.521Z'
|
||||||
|
- snyk > snyk-gradle-plugin > @snyk/java-call-graph-builder > graphlib > lodash:
|
||||||
|
patched: '2020-11-26T07:00:40.521Z'
|
||||||
|
- snyk > snyk-docker-plugin > snyk-nodejs-lockfile-parser > graphlib > lodash:
|
||||||
|
patched: '2020-11-26T07:00:40.521Z'
|
||||||
|
- snyk > snyk-mvn-plugin > @snyk/java-call-graph-builder > graphlib > lodash:
|
||||||
|
patched: '2020-11-26T07:00:40.521Z'
|
||||||
|
- snyk > snyk-gradle-plugin > @snyk/cli-interface > @snyk/dep-graph > graphlib > lodash:
|
||||||
|
patched: '2020-11-26T07:00:40.521Z'
|
||||||
|
- snyk > snyk-mvn-plugin > @snyk/cli-interface > @snyk/dep-graph > graphlib > lodash:
|
||||||
|
patched: '2020-11-26T07:00:40.521Z'
|
||||||
|
- snyk > @snyk/snyk-cocoapods-plugin > @snyk/cocoapods-lockfile-parser > @snyk/dep-graph > graphlib > lodash:
|
||||||
|
patched: '2020-11-26T07:00:40.521Z'
|
||||||
|
- snyk > snyk-php-plugin > @snyk/cli-interface > @snyk/dep-graph > graphlib > lodash:
|
||||||
|
patched: '2020-11-26T07:00:40.521Z'
|
||||||
|
- snyk > snyk-python-plugin > snyk-poetry-lockfile-parser > @snyk/dep-graph > graphlib > lodash:
|
||||||
|
patched: '2020-11-26T07:00:40.521Z'
|
||||||
|
- snyk > snyk-python-plugin > snyk-poetry-lockfile-parser > @snyk/cli-interface > @snyk/dep-graph > graphlib > lodash:
|
||||||
|
patched: '2020-11-26T07:00:40.521Z'
|
||||||
|
- snyk > @snyk/dep-graph > graphlib > lodash:
|
||||||
|
patched: '2020-11-26T07:00:40.521Z'
|
||||||
|
- snyk > snyk-nodejs-lockfile-parser > graphlib > lodash:
|
||||||
|
patched: '2020-11-26T07:00:40.521Z'
|
||||||
|
- snyk > snyk-go-plugin > graphlib > lodash:
|
||||||
|
patched: '2020-11-26T07:00:40.521Z'
|
||||||
|
|||||||
+1
-1
@@ -31,7 +31,7 @@
|
|||||||
"nuxt-composition-api": "^0.9.3",
|
"nuxt-composition-api": "^0.9.3",
|
||||||
"nuxt-i18n": "^6.0.1",
|
"nuxt-i18n": "^6.0.1",
|
||||||
"sass-loader": "^7.0.3",
|
"sass-loader": "^7.0.3",
|
||||||
"snyk": "^1.425.4",
|
"snyk": "^1.431.1",
|
||||||
"vue": "^2.6.10",
|
"vue": "^2.6.10",
|
||||||
"vue-numeral-filter": "^1.1.1",
|
"vue-numeral-filter": "^1.1.1",
|
||||||
"vuetify": "^2.1.9"
|
"vuetify": "^2.1.9"
|
||||||
|
|||||||
@@ -12366,7 +12366,7 @@ snyk-try-require@1.3.1, snyk-try-require@^1.1.1, snyk-try-require@^1.3.1:
|
|||||||
lru-cache "^4.0.0"
|
lru-cache "^4.0.0"
|
||||||
then-fs "^2.0.0"
|
then-fs "^2.0.0"
|
||||||
|
|
||||||
snyk@^1.425.4:
|
snyk@1.431.1, snyk@^1.431.1:
|
||||||
version "1.431.1"
|
version "1.431.1"
|
||||||
resolved "https://registry.yarnpkg.com/snyk/-/snyk-1.431.1.tgz#1e360dae1b63d83f74fe90979f7b9a0fb1607aa7"
|
resolved "https://registry.yarnpkg.com/snyk/-/snyk-1.431.1.tgz#1e360dae1b63d83f74fe90979f7b9a0fb1607aa7"
|
||||||
integrity sha512-OW48lG89ffLsSZPHwsjfdqQcu3XG6aRQOkwASPCgTAGcVcnXzS9XHB89h0gLsDzk0fZRskEVgYpvXdh4RFjNqA==
|
integrity sha512-OW48lG89ffLsSZPHwsjfdqQcu3XG6aRQOkwASPCgTAGcVcnXzS9XHB89h0gLsDzk0fZRskEVgYpvXdh4RFjNqA==
|
||||||
|
|||||||
Reference in New Issue
Block a user