From c4b40896fa11f713d1dbfe5fa849cc1630108e64 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 13 May 2024 17:55:45 +0000 Subject: [PATCH] fix: script/package.json & script/package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-BRACES-6838727 - https://snyk.io/vuln/SNYK-JS-MICROMATCH-6838728 --- script/package-lock.json | 63 ++++++++++++++++++++-------------------- script/package.json | 2 +- 2 files changed, 32 insertions(+), 33 deletions(-) diff --git a/script/package-lock.json b/script/package-lock.json index cfe72374360..520130facc4 100644 --- a/script/package-lock.json +++ b/script/package-lock.json @@ -1,13 +1,8 @@ { "name": "atom-build-scripts", - "requires": true, "lockfileVersion": 1, + "requires": true, "dependencies": { - "7zip-bin": { - "version": "4.0.2", - "resolved": "https://registry.npmjs.org/7zip-bin/-/7zip-bin-4.0.2.tgz", - "integrity": "sha512-XtGk+IF57pr852UK1AhQJXqmm1WmSgS5uISL+LPs0z/iAxXouMvdlLJrHPeukP6gd7yR2rDTMSMkHNODgwIq7A==" - }, "@babel/code-frame": { "version": "7.0.0", "resolved": "https://registry.npmjs.org/@babel/code-frame/-/code-frame-7.0.0.tgz", @@ -309,6 +304,11 @@ "@wdio/config": "^5.9.1" } }, + "7zip-bin": { + "version": "4.0.2", + "resolved": "https://registry.npmjs.org/7zip-bin/-/7zip-bin-4.0.2.tgz", + "integrity": "sha512-XtGk+IF57pr852UK1AhQJXqmm1WmSgS5uISL+LPs0z/iAxXouMvdlLJrHPeukP6gd7yR2rDTMSMkHNODgwIq7A==" + }, "abbrev": { "version": "1.1.1", "resolved": "https://registry.npmjs.org/abbrev/-/abbrev-1.1.1.tgz", @@ -4630,12 +4630,11 @@ } }, "klaw-sync": { - "version": "1.1.2", - "resolved": "https://registry.npmjs.org/klaw-sync/-/klaw-sync-1.1.2.tgz", - "integrity": "sha1-tbxnokTiYbDqcdl+WG6gUh5zSpo=", + "version": "2.0.0", + "resolved": "https://registry.npmjs.org/klaw-sync/-/klaw-sync-2.0.0.tgz", + "integrity": "sha512-oVlOdGavyyts4sCQ0gpTOvqVfWb8jwPxxhWbRWlh9Ztv1cNH+BE5vrV0QkQamONC9dKgbgl42Ve/vPNCtsb6FA==", "requires": { - "graceful-fs": "^4.1.11", - "micromatch": "^2.3.11" + "graceful-fs": "^4.1.11" } }, "known-css-properties": { @@ -5433,7 +5432,6 @@ "resolved": "https://registry.npmjs.org/npm/-/npm-6.2.0.tgz", "integrity": "sha512-GnlNsOnxwVJX4WSfyQY0gY3LnUX2cc46XU0eu1g+WSuZgDRUGmw8tuptitJu6byp0RWGT8ZEAKajblwdhQHN8A==", "requires": { - "JSONStream": "^1.3.3", "abbrev": "~1.1.1", "ansicolors": "~0.3.2", "ansistyles": "~0.1.3", @@ -5472,6 +5470,7 @@ "init-package-json": "^1.10.3", "is-cidr": "^2.0.6", "json-parse-better-errors": "^1.0.2", + "JSONStream": "^1.3.3", "lazy-property": "~1.0.0", "libcipm": "^2.0.0", "libnpmhook": "^4.0.1", @@ -5552,14 +5551,6 @@ "write-file-atomic": "^2.3.0" }, "dependencies": { - "JSONStream": { - "version": "1.3.3", - "bundled": true, - "requires": { - "jsonparse": "^1.2.0", - "through": ">=2.2.7 <3" - } - }, "abbrev": { "version": "1.1.1", "bundled": true @@ -6605,6 +6596,14 @@ "version": "1.3.1", "bundled": true }, + "JSONStream": { + "version": "1.3.3", + "bundled": true, + "requires": { + "jsonparse": "^1.2.0", + "through": ">=2.2.7 <3" + } + }, "jsprim": { "version": "1.4.1", "bundled": true, @@ -7815,6 +7814,13 @@ "version": "2.0.0", "bundled": true }, + "string_decoder": { + "version": "1.1.1", + "bundled": true, + "requires": { + "safe-buffer": "~5.1.0" + } + }, "string-width": { "version": "2.1.1", "bundled": true, @@ -7840,13 +7846,6 @@ } } }, - "string_decoder": { - "version": "1.1.1", - "bundled": true, - "requires": { - "safe-buffer": "~5.1.0" - } - }, "stringstream": { "version": "0.0.6", "bundled": true @@ -9874,6 +9873,11 @@ } } }, + "string_decoder": { + "version": "0.10.31", + "resolved": "https://registry.npmjs.org/string_decoder/-/string_decoder-0.10.31.tgz", + "integrity": "sha1-YuIDvEF2bGwoyfyEMB2rHFMQ+pQ=" + }, "string-width": { "version": "1.0.2", "resolved": "https://registry.npmjs.org/string-width/-/string-width-1.0.2.tgz", @@ -9884,11 +9888,6 @@ "strip-ansi": "^3.0.0" } }, - "string_decoder": { - "version": "0.10.31", - "resolved": "https://registry.npmjs.org/string_decoder/-/string_decoder-0.10.31.tgz", - "integrity": "sha1-YuIDvEF2bGwoyfyEMB2rHFMQ+pQ=" - }, "stringify-entities": { "version": "1.3.2", "resolved": "https://registry.npmjs.org/stringify-entities/-/stringify-entities-1.3.2.tgz", diff --git a/script/package.json b/script/package.json index 2cdedfcb073..14b22906c7a 100644 --- a/script/package.json +++ b/script/package.json @@ -27,7 +27,7 @@ "fs-extra": "0.30.0", "glob": "7.0.3", "joanna": "0.0.10", - "klaw-sync": "^1.1.2", + "klaw-sync": "^2.0.0", "legal-eagle": "0.14.0", "lodash.startcase": "4.4.0", "lodash.template": "4.4.0",