Skip to content

Commit

Permalink
fix: package.json, package-lock.json & .snyk to reduce vulnerabilities
Browse files Browse the repository at this point in the history
The following vulnerabilities are fixed with a Snyk patch:
- https://snyk.io/vuln/SNYK-JS-LODASH-567746
  • Loading branch information
snyk-bot authored and StephanGerbeth committed Apr 30, 2020
1 parent 092ba43 commit e2f97b6
Showing 1 changed file with 88 additions and 1 deletion.
89 changes: 88 additions & 1 deletion .snyk
Original file line number Diff line number Diff line change
@@ -1,5 +1,5 @@
# Snyk (https://snyk.io) policy file, patches or ignores known vulnerabilities.
version: v1.13.5
version: v1.14.1
ignore: {}
# patches apply the minimum changes required to fix a vulnerability
patch:
Expand Down Expand Up @@ -46,3 +46,90 @@ patch:
patched: '2019-11-09T11:21:02.392Z'
- semantic-release > @semantic-release/npm > npm > libnpm > libnpmsearch > npm-registry-fetch > make-fetch-happen > https-proxy-agent:
patched: '2019-11-09T11:21:02.392Z'
SNYK-JS-LODASH-567746:
- '@babel/register > lodash':
patched: '2020-04-30T18:37:16.663Z'
- babel-preset-minify > lodash:
patched: '2020-04-30T18:37:16.663Z'
- eslint > lodash:
patched: '2020-04-30T18:37:16.663Z'
- semantic-release > lodash:
patched: '2020-04-30T18:37:16.663Z'
- '@babel/preset-env > @babel/plugin-transform-block-scoping > lodash':
patched: '2020-04-30T18:37:16.663Z'
- babel-eslint > @babel/traverse > lodash:
patched: '2020-04-30T18:37:16.663Z'
- babel-preset-minify > babel-plugin-minify-dead-code-elimination > lodash:
patched: '2020-04-30T18:37:16.663Z'
- rollup-plugin-babel-minify > babel-preset-minify > lodash:
patched: '2020-04-30T18:37:16.663Z'
- eslint > inquirer > lodash:
patched: '2020-04-30T18:37:16.663Z'
- eslint > table > lodash:
patched: '2020-04-30T18:37:16.663Z'
- rollup-plugin-babel-minify > @babel/core > lodash:
patched: '2020-04-30T18:37:16.663Z'
- semantic-release > @semantic-release/release-notes-generator > lodash:
patched: '2020-04-30T18:37:16.663Z'
- '@babel/preset-env > @babel/plugin-transform-classes > @babel/helper-define-map > lodash':
patched: '2020-04-30T18:37:16.663Z'
- rollup-plugin-babel > @babel/helper-module-imports > @babel/types > lodash:
patched: '2020-04-30T18:37:16.663Z'
- babel-eslint > @babel/traverse > @babel/generator > lodash:
patched: '2020-04-30T18:37:16.663Z'
- nyc > istanbul-lib-instrument > @babel/traverse > lodash:
patched: '2020-04-30T18:37:16.663Z'
- babel-plugin-istanbul > istanbul-lib-instrument > @babel/core > lodash:
patched: '2020-04-30T18:37:16.663Z'
- rollup-plugin-babel-minify > babel-preset-minify > babel-plugin-minify-dead-code-elimination > lodash:
patched: '2020-04-30T18:37:16.663Z'
- rollup-plugin-babel-minify > @babel/core > @babel/traverse > lodash:
patched: '2020-04-30T18:37:16.663Z'
- semantic-release > @semantic-release/release-notes-generator > conventional-commits-parser > lodash:
patched: '2020-04-30T18:37:16.663Z'
- semantic-release > @semantic-release/release-notes-generator > conventional-changelog-writer > lodash:
patched: '2020-04-30T18:37:16.663Z'
- '@babel/preset-env > @babel/plugin-transform-unicode-regex > @babel/helper-create-regexp-features-plugin > @babel/helper-regex > lodash':
patched: '2020-04-30T18:37:16.663Z'
- nyc > istanbul-lib-instrument > @babel/traverse > @babel/generator > lodash:
patched: '2020-04-30T18:37:16.663Z'
- babel-eslint > @babel/traverse > @babel/generator > @babel/types > lodash:
patched: '2020-04-30T18:37:16.663Z'
- babel-plugin-istanbul > istanbul-lib-instrument > @babel/core > @babel/traverse > lodash:
patched: '2020-04-30T18:37:16.663Z'
- rollup-plugin-babel-minify > @babel/core > @babel/helpers > @babel/traverse > lodash:
patched: '2020-04-30T18:37:16.663Z'
- '@babel/preset-env > @babel/preset-modules > @babel/plugin-transform-dotall-regex > @babel/helper-create-regexp-features-plugin > @babel/helper-regex > lodash':
patched: '2020-04-30T18:37:16.663Z'
- nyc > istanbul-lib-instrument > @babel/core > @babel/helpers > @babel/traverse > lodash:
patched: '2020-04-30T18:37:16.663Z'
- babel-eslint > @babel/traverse > @babel/helper-function-name > @babel/template > @babel/types > lodash:
patched: '2020-04-30T18:37:16.663Z'
- babel-plugin-istanbul > istanbul-lib-instrument > @babel/core > @babel/helpers > @babel/traverse > lodash:
patched: '2020-04-30T18:37:16.663Z'
- rollup-plugin-babel-minify > @babel/core > @babel/helpers > @babel/traverse > @babel/generator > lodash:
patched: '2020-04-30T18:37:16.663Z'
- '@babel/preset-env > @babel/plugin-transform-exponentiation-operator > @babel/helper-builder-binary-assignment-operator-visitor > @babel/helper-explode-assignable-expression > @babel/traverse > @babel/generator > lodash':
patched: '2020-04-30T18:37:16.663Z'
- nyc > istanbul-lib-instrument > @babel/core > @babel/helper-module-transforms > @babel/helper-replace-supers > @babel/traverse > lodash:
patched: '2020-04-30T18:37:16.663Z'
- babel-plugin-istanbul > istanbul-lib-instrument > @babel/core > @babel/helpers > @babel/traverse > @babel/generator > lodash:
patched: '2020-04-30T18:37:16.663Z'
- rollup-plugin-babel-minify > @babel/core > @babel/helpers > @babel/traverse > @babel/generator > @babel/types > lodash:
patched: '2020-04-30T18:37:16.663Z'
- '@babel/preset-env > @babel/plugin-transform-exponentiation-operator > @babel/helper-builder-binary-assignment-operator-visitor > @babel/helper-explode-assignable-expression > @babel/traverse > @babel/generator > @babel/types > lodash':
patched: '2020-04-30T18:37:16.663Z'
- nyc > istanbul-lib-instrument > @babel/core > @babel/helpers > @babel/traverse > @babel/helper-split-export-declaration > @babel/types > lodash:
patched: '2020-04-30T18:37:16.663Z'
- babel-plugin-istanbul > istanbul-lib-instrument > @babel/core > @babel/helpers > @babel/traverse > @babel/helper-split-export-declaration > @babel/types > lodash:
patched: '2020-04-30T18:37:16.663Z'
- rollup-plugin-babel-minify > @babel/core > @babel/helpers > @babel/traverse > @babel/helper-function-name > @babel/template > @babel/types > lodash:
patched: '2020-04-30T18:37:16.663Z'
- nyc > istanbul-lib-instrument > @babel/core > @babel/helper-module-transforms > @babel/helper-replace-supers > @babel/traverse > @babel/helper-split-export-declaration > @babel/types > lodash:
patched: '2020-04-30T18:37:16.663Z'
- '@babel/preset-env > @babel/plugin-transform-exponentiation-operator > @babel/helper-builder-binary-assignment-operator-visitor > @babel/helper-explode-assignable-expression > @babel/traverse > @babel/helper-function-name > @babel/template > @babel/types > lodash':
patched: '2020-04-30T18:37:16.663Z'
- babel-plugin-istanbul > istanbul-lib-instrument > @babel/core > @babel/helpers > @babel/traverse > @babel/helper-function-name > @babel/helper-get-function-arity > @babel/types > lodash:
patched: '2020-04-30T18:37:16.663Z'
- nyc > istanbul-lib-instrument > @babel/core > @babel/helper-module-transforms > @babel/helper-replace-supers > @babel/traverse > @babel/helper-function-name > @babel/template > @babel/types > lodash:
patched: '2020-04-30T18:37:16.663Z'

0 comments on commit e2f97b6

Please sign in to comment.