From cf00622740667c3c820e1c4a0706f95458aa2be4 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sun, 30 Apr 2023 04:26:37 +0000 Subject: [PATCH] fix: deps/npm/node_modules/diff/package.json & deps/npm/node_modules/diff/.snyk to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-ANSIREGEX-1583908 - https://snyk.io/vuln/SNYK-JS-ENGINEIO-1056749 - https://snyk.io/vuln/SNYK-JS-GLOBPARENT-1016905 - https://snyk.io/vuln/SNYK-JS-KARMA-2395349 - https://snyk.io/vuln/SNYK-JS-KARMA-2396325 - https://snyk.io/vuln/SNYK-JS-MINIMATCH-3050818 - https://snyk.io/vuln/SNYK-JS-MOCHA-2863123 - https://snyk.io/vuln/SNYK-JS-NODEFORGE-2330875 - https://snyk.io/vuln/SNYK-JS-NODEFORGE-2331908 - https://snyk.io/vuln/SNYK-JS-NODEFORGE-2430337 - https://snyk.io/vuln/SNYK-JS-NODEFORGE-2430339 - https://snyk.io/vuln/SNYK-JS-NODEFORGE-2430341 - https://snyk.io/vuln/SNYK-JS-UAPARSERJS-1023599 - https://snyk.io/vuln/SNYK-JS-UAPARSERJS-1072471 The following vulnerabilities are fixed with a Snyk patch: - https://snyk.io/vuln/npm:minimatch:20160620 --- deps/npm/node_modules/diff/.snyk | 8 ++++++++ deps/npm/node_modules/diff/package.json | 16 +++++++++++----- 2 files changed, 19 insertions(+), 5 deletions(-) create mode 100644 deps/npm/node_modules/diff/.snyk diff --git a/deps/npm/node_modules/diff/.snyk b/deps/npm/node_modules/diff/.snyk new file mode 100644 index 00000000000000..f8f2be4e0020a9 --- /dev/null +++ b/deps/npm/node_modules/diff/.snyk @@ -0,0 +1,8 @@ +# Snyk (https://snyk.io) policy file, patches or ignores known vulnerabilities. +version: v1.25.0 +ignore: {} +# patches apply the minimum changes required to fix a vulnerability +patch: + 'npm:minimatch:20160620': + - istanbul > fileset > minimatch: + patched: '2023-04-30T04:26:29.082Z' diff --git a/deps/npm/node_modules/diff/package.json b/deps/npm/node_modules/diff/package.json index 2b6eea7f1cbff3..a2062ea40b148f 100644 --- a/deps/npm/node_modules/diff/package.json +++ b/deps/npm/node_modules/diff/package.json @@ -42,7 +42,9 @@ "scripts": { "clean": "rm -rf lib/ dist/", "build:node": "yarn babel --out-dir lib --source-maps=inline src", - "test": "grunt" + "test": "grunt", + "prepublish": "npm run snyk-protect", + "snyk-protect": "snyk-protect" }, "devDependencies": { "@babel/cli": "^7.2.3", @@ -69,19 +71,23 @@ "grunt-mocha-test": "^0.13.3", "grunt-webpack": "^3.1.3", "istanbul": "github:kpdecker/istanbul", - "karma": "^5.1.1", + "karma": "^6.3.16", "karma-chrome-launcher": "^3.1.0", "karma-mocha": "^2.0.1", "karma-mocha-reporter": "^2.0.0", "karma-sauce-launcher": "^4.1.5", "karma-sourcemap-loader": "^0.3.6", "karma-webpack": "^4.0.2", - "mocha": "^6.0.0", + "mocha": "^10.1.0", "rollup": "^1.0.2", "rollup-plugin-babel": "^4.2.0", "semver": "^7.3.2", "webpack": "^4.28.3", - "webpack-dev-server": "^3.1.14" + "webpack-dev-server": "^4.7.3" }, - "optionalDependencies": {} + "optionalDependencies": {}, + "snyk": true, + "dependencies": { + "@snyk/protect": "latest" + } }