From 4b635c20f32590cc2de7d366fd75a0642bbea000 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 17 Jan 2022 01:33:05 +0000 Subject: [PATCH] fix: package.json & package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-MARKED-2342073 - https://snyk.io/vuln/SNYK-JS-MARKED-2342082 --- package-lock.json | 49 +++++++++++++++++++++-------------------------- package.json | 4 ++-- 2 files changed, 24 insertions(+), 29 deletions(-) diff --git a/package-lock.json b/package-lock.json index 7cc3216b4..464d0afae 100644 --- a/package-lock.json +++ b/package-lock.json @@ -5970,9 +5970,9 @@ "integrity": "sha512-xZmuPTa3rlZoIbtDUyJKZQimJV3bxCmzMIO2c9Pz9afyDro6kr7R79GwcB6mRhuoPmV2p1Vb66WOJH7F886WKQ==" }, "@types/marked": { - "version": "2.0.4", - "resolved": "https://registry.npmjs.org/@types/marked/-/marked-2.0.4.tgz", - "integrity": "sha512-L9VRSe0Id8xbPL99mUo/4aKgD7ZoRwFZqUQScNKHi2pFjF9ZYSMNShUHD6VlMT6J/prQq0T1mxuU25m3R7dFzg==" + "version": "4.0.1", + "resolved": "https://registry.npmjs.org/@types/marked/-/marked-4.0.1.tgz", + "integrity": "sha512-ZigEmCWdNUU7IjZEuQ/iaimYdDHWHfTe3kg8ORfKjyGYd9RWumPoOJRQXB0bO+XLkNwzCthW3wUIQtANaEZ1ag==" }, "@types/minimatch": { "version": "3.0.5", @@ -8839,9 +8839,9 @@ "dev": true }, "codemirror": { - "version": "5.62.2", - "resolved": "https://registry.npmjs.org/codemirror/-/codemirror-5.62.2.tgz", - "integrity": "sha512-tVFMUa4J3Q8JUd1KL9yQzQB0/BJt7ZYZujZmTPgo/54Lpuq3ez4C8x/ATUY/wv7b7X3AUq8o3Xd+2C5ZrCGWHw==" + "version": "5.65.0", + "resolved": "https://registry.npmjs.org/codemirror/-/codemirror-5.65.0.tgz", + "integrity": "sha512-gWEnHKEcz1Hyz7fsQWpK7P0sPI2/kSkRX2tc7DFA6TmZuDN75x/1ejnH/Pn8adYKrLEA1V2ww6L00GudHZbSKw==" }, "codemirror-spell-checker": { "version": "1.1.2", @@ -10829,29 +10829,24 @@ } }, "easymde": { - "version": "2.15.0", - "resolved": "https://registry.npmjs.org/easymde/-/easymde-2.15.0.tgz", - "integrity": "sha512-9jMRIVvKt1d0UjRN45yotUYECAM4xvw0TTAQw8sYDONP++keWJVnd8Xrn+V+vQEN/v9/X0SWEoo1rFSgCooGpw==", + "version": "2.16.1", + "resolved": "https://registry.npmjs.org/easymde/-/easymde-2.16.1.tgz", + "integrity": "sha512-FihYgjRsKfhGNk89SHSqxKLC4aJ1kfybPWW6iAmtb5GnXu+tnFPSzSaGBmk1RRlCuhFSjhF0SnIMGVPjEzkr6g==", "requires": { - "@types/codemirror": "0.0.109", - "@types/marked": "^2.0.2", - "codemirror": "^5.61.0", + "@types/codemirror": "^5.60.4", + "@types/marked": "^4.0.1", + "codemirror": "^5.63.1", "codemirror-spell-checker": "1.1.2", - "marked": "^2.0.3" + "marked": "^4.0.10" }, "dependencies": { "@types/codemirror": { - "version": "0.0.109", - "resolved": "https://registry.npmjs.org/@types/codemirror/-/codemirror-0.0.109.tgz", - "integrity": "sha512-cSdiHeeLjvGn649lRTNeYrVCDOgDrtP+bDDSFDd1TF+i0jKGPDRozno2NOJ9lTniso+taiv4kiVS8dgM8Jm5lg==", + "version": "5.60.5", + "resolved": "https://registry.npmjs.org/@types/codemirror/-/codemirror-5.60.5.tgz", + "integrity": "sha512-TiECZmm8St5YxjFUp64LK0c8WU5bxMDt9YaAek1UqUb9swrSCoJhh92fWu1p3mTEqlHjhB5sY7OFBhWroJXZVg==", "requires": { "@types/tern": "*" } - }, - "marked": { - "version": "2.1.3", - "resolved": "https://registry.npmjs.org/marked/-/marked-2.1.3.tgz", - "integrity": "sha512-/Q+7MGzaETqifOMWYEA7HVMaZb4XbcRfaOzcSsHZEith83KGlvaSG33u0SKu89Mj5h+T8V2hM+8O45Qc5XTgwA==" } } }, @@ -18626,9 +18621,9 @@ } }, "marked": { - "version": "2.1.3", - "resolved": "https://registry.npmjs.org/marked/-/marked-2.1.3.tgz", - "integrity": "sha512-/Q+7MGzaETqifOMWYEA7HVMaZb4XbcRfaOzcSsHZEith83KGlvaSG33u0SKu89Mj5h+T8V2hM+8O45Qc5XTgwA==" + "version": "4.0.10", + "resolved": "https://registry.npmjs.org/marked/-/marked-4.0.10.tgz", + "integrity": "sha512-+QvuFj0nGgO970fySghXGmuw+Fd0gD2x3+MqCWLIPf5oxdv1Ka6b2q+z9RP01P/IaKPMEramy+7cNy/Lw8c3hw==" }, "match-sorter": { "version": "6.3.1", @@ -25613,9 +25608,9 @@ } }, "typo-js": { - "version": "1.2.0", - "resolved": "https://registry.npmjs.org/typo-js/-/typo-js-1.2.0.tgz", - "integrity": "sha512-dELuLBVa2jvWdU/CHTKi2L/POYaRupv942k+vRsFXsM17acXesQGAiGCio82RW7fvcr7bkuD/Zj8XpUh6aPC2A==" + "version": "1.2.1", + "resolved": "https://registry.npmjs.org/typo-js/-/typo-js-1.2.1.tgz", + "integrity": "sha512-bTGLjbD3WqZDR3CgEFkyi9Q/SS2oM29ipXrWfDb4M74ea69QwKAECVceYpaBu0GfdnASMg9Qfl67ttB23nePHg==" }, "umd": { "version": "3.0.3", diff --git a/package.json b/package.json index 9747d7cdc..04496295e 100644 --- a/package.json +++ b/package.json @@ -17,14 +17,14 @@ "date-fns": "^2.26.0", "date-fns-tz": "^1.1.6", "dompurify": "^2.3.0", - "easymde": "^2.15.0", + "easymde": "^2.16.1", "escape-string-regexp": "^4.0.0", "eslint-plugin-only-warn": "^1.0.2", "html-react-parser": "^1.2.7", "immutability-helper": "^3.0.1", "js-base64": "^3.7.2", "lodash": "^4.17.21", - "marked": "^2.1.3", + "marked": "^4.0.10", "moment-timezone": "^0.5.33", "prop-types": "^15.7.2", "react": "^16.10.2",