Skip to content

Navigation Menu

Sign in
Appearance settings

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Sign up
Appearance settings

Commit f3f91da

Browse files
author
Akos Kitta
committed
chore(deps): update vulnerable dependencies
Forced the resolution of the following npm packages to get rid of the security alerts: - `@babel/traverse@7.23.2` and - `crypto-js@4.2.0`. Upstream: eclipse-theia/theia#13024 Signed-off-by: Akos Kitta <a.kitta@arduino.cc>
1 parent 503533d commit f3f91da

File tree

2 files changed

+18
-14
lines changed

2 files changed

+18
-14
lines changed

‎package.json‎

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -9,6 +9,10 @@
99
"engines": {
1010
"node": ">=18.17.0 <21"
1111
},
12+
"resolutions": {
13+
"**/@babel/traverse": "^7.23.2",
14+
"**/crypto-js": "^4.2.0"
15+
},
1216
"devDependencies": {
1317
"@theia/cli": "1.41.0",
1418
"@typescript-eslint/eslint-plugin": "^5.59.0",

‎yarn.lock‎

Lines changed: 14 additions & 14 deletions
Original file line numberDiff line numberDiff line change
@@ -938,10 +938,10 @@
938938
"@babel/parser" "^7.22.15"
939939
"@babel/types" "^7.22.15"
940940

941-
"@babel/traverse@^7.23.0":
942-
version "7.23.0"
943-
resolved "https://registry.yarnpkg.com/@babel/traverse/-/traverse-7.23.0.tgz#18196ddfbcf4ccea324b7f6d3ada00d8c5a99c53"
944-
integrity sha512-t/QaEvyIoIkwzpiZ7aoSKK8kObQYeF7T2v+dazAYCb8SXtp58zEVkWW7zAnju8FNKNdr4ScAOEDmMItbyOmEYw==
941+
"@babel/traverse@^7.23.0", "@babel/traverse@^7.23.2":
942+
version "7.23.2"
943+
resolved "https://registry.yarnpkg.com/@babel/traverse/-/traverse-7.23.2.tgz#329c7a06735e144a506bdb2cad0268b7f46f4ad8"
944+
integrity sha512-azpe59SQ48qG6nu2CzcMLbxUudtN+dOM9kDbUqGq3HXUJRlo7i8fvPoxQUzYgLZ4cMVmuZgm8vvBpNeRhd6XSw==
945945
dependencies:
946946
"@babel/code-frame" "^7.22.13"
947947
"@babel/generator" "^7.23.0"
@@ -2698,9 +2698,9 @@
26982698
minimatch "^9.0.0"
26992699

27002700
"@types/auth0-js@^9.14.0":
2701-
version "9.21.1"
2702-
resolved "https://registry.yarnpkg.com/@types/auth0-js/-/auth0-js-9.21.1.tgz#3883693ae84746153507ea6e9bfa8c68811c1906"
2703-
integrity sha512-K8X2aBZynfeqjRI15P6fcpzcjAPXfppAVwaUNXxXnXmXMx66pz5IwQ5ZpzaDg8Q1P6aVF8+N2RZMTcBoOME9HA==
2701+
version "9.21.3"
2702+
resolved "https://registry.yarnpkg.com/@types/auth0-js/-/auth0-js-9.21.3.tgz#de88abd4df6bbc3b8ad2fe5e299c65304f8ed691"
2703+
integrity sha512-5IZHQSljfOREU1fngFcwUXjHUlCq/CM4K1zmVytX0EvH3QnX3cYwK6HCxRuxK7seYMm8yeviWUUkWV1kqK2+sg==
27042704

27052705
"@types/bent@^7.0.1":
27062706
version "7.3.5"
@@ -4108,9 +4108,9 @@ atomically@^1.7.0:
41084108
integrity sha512-Xcz9l0z7y9yQ9rdDaxlmaI4uJHf/T8g9hOEzJcsEqX2SjCj4J20uK7+ldkDHMbpJDK76wF7xEIgxc/vSlsfw5w==
41094109

41104110
auth0-js@^9.14.0:
4111-
version "9.23.0"
4112-
resolved "https://registry.yarnpkg.com/auth0-js/-/auth0-js-9.23.0.tgz#e0f825b12a43ab6696464790470944a59df9c28a"
4113-
integrity sha512-AtvbseCU+9/hwCPTGbV9UI7iYc2EmT7rN1dPiRxNUyT4RXIFAnJRkuCSEwa0mhS20jlMPD4b28l5354vxBbYzw==
4111+
version "9.23.2"
4112+
resolved "https://registry.yarnpkg.com/auth0-js/-/auth0-js-9.23.2.tgz#9760dc207c074995efd6fbc4d7b585e05709c85b"
4113+
integrity sha512-RiUBalXymeGjF0Ap/IyjKnsILO44eaFrSJDqchox6wUUWnJATGjEQLMTLzjWn8R1wZVKBGu1Fv7PPSViWhcYVQ==
41144114
dependencies:
41154115
base64-js "^1.5.1"
41164116
idtoken-verifier "^2.2.2"
@@ -5349,10 +5349,10 @@ cross-spawn@^7.0.0, cross-spawn@^7.0.1, cross-spawn@^7.0.2, cross-spawn@^7.0.3:
53495349
shebang-command "^2.0.0"
53505350
which "^2.0.1"
53515351

5352-
crypto-js@^4.1.1:
5353-
version "4.1.1"
5354-
resolved "https://registry.yarnpkg.com/crypto-js/-/crypto-js-4.1.1.tgz#9e485bcf03521041bd85844786b83fb7619736cf"
5355-
integrity sha512-o2JlM7ydqd3Qk9CA0L4NL6mTzU2sdx96a+oOfPu8Mkl/PK51vSyoi8/rQ8NknZtk44vq15lmhAj9CIAGwgeWKw==
5352+
crypto-js@^4.1.1, crypto-js@^4.2.0:
5353+
version "4.2.0"
5354+
resolved "https://registry.yarnpkg.com/crypto-js/-/crypto-js-4.2.0.tgz#4d931639ecdfd12ff80e8186dba6af2c2e856631"
5355+
integrity sha512-KALDyEYgpY+Rlob/iriUtjV6d5Eq+Y191A5g4UqLAi8CyGP9N1+FdVbkc1SxKc2r4YAYqG8JzO2KGL+AizD70Q==
53565356

53575357
css-loader@^6.2.0:
53585358
version "6.8.1"

0 commit comments

Comments
(0)

AltStyle によって変換されたページ (->オリジナル) /