Skip to content

Commit fc9a255

Browse files
committed
[fix] Updated serialize-javascript and minimatch to address CVEs (5m)
1 parent 7a39170 commit fc9a255

2 files changed

Lines changed: 12 additions & 20 deletions

File tree

package.json

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -44,6 +44,7 @@
4444
"package-json": "^7.0.0",
4545
"printf": "^0.6.1",
4646
"semver": "^7.5.2",
47+
"serialize-javascript": "^7.0.3",
4748
"set-value": "^4.0.1",
4849
"ssri": "^8.0.1",
4950
"tmp": "^0.2.4",

yarn.lock

Lines changed: 11 additions & 20 deletions
Original file line numberDiff line numberDiff line change
@@ -9232,16 +9232,16 @@ mini-css-extract-plugin@^2.5.2:
92329232
schema-utils "^4.0.0"
92339233

92349234
"minimatch@2 || 3", minimatch@^3.0.0, minimatch@^3.0.2, minimatch@^3.0.4, minimatch@^3.1.1:
9235-
version "3.1.2"
9236-
resolved "https://registry.yarnpkg.com/minimatch/-/minimatch-3.1.2.tgz#19cd194bfd3e428f049a70817c038d89ab4be35b"
9237-
integrity sha512-J7p63hRiAjw1NDEww1W7i37+ByIrOWO5XQQAzZ3VOcL0PNybwpfmV/N05zFAzwQ9USyEcX6t3UO+K5aqBQOIHw==
9235+
version "3.1.5"
9236+
resolved "https://registry.yarnpkg.com/minimatch/-/minimatch-3.1.5.tgz#580c88f8d5445f2bd6aa8f3cadefa0de79fbd69e"
9237+
integrity sha512-VgjWUsnnT6n+NUk6eZq77zeFdpW2LWDzP6zFGrCbHXiYNul5Dzqk2HHQ5uFH2DNW5Xbp8+jVzaeNt94ssEEl4w==
92389238
dependencies:
92399239
brace-expansion "^1.1.7"
92409240

92419241
minimatch@^8.0.2:
9242-
version "8.0.4"
9243-
resolved "https://registry.yarnpkg.com/minimatch/-/minimatch-8.0.4.tgz#847c1b25c014d4e9a7f68aaf63dedd668a626229"
9244-
integrity sha512-W0Wvr9HyFXZRGIDgCicunpQ299OKXs9RgZfaukz4qAW/pJhcpUfupc9c+OObPOFueNy8VSrZgEmDtk6Kh4WzDA==
9242+
version "8.0.7"
9243+
resolved "https://registry.yarnpkg.com/minimatch/-/minimatch-8.0.7.tgz#954766e22da88a3e0a17ad93b58c15c9d8a579de"
9244+
integrity sha512-V+1uQNdzybxa14e/p00HZnQNNcTjnRJjDxg2V8wtkjFctq4M7hXFws4oekyTP0Jebeq7QYtpFyOeBAjc88zvYg==
92459245
dependencies:
92469246
brace-expansion "^2.0.1"
92479247

@@ -10117,13 +10117,6 @@ qunit@^2.9.3:
1011710117
node-watch "0.7.3"
1011810118
tiny-glob "0.2.9"
1011910119

10120-
randombytes@^2.1.0:
10121-
version "2.1.0"
10122-
resolved "https://registry.yarnpkg.com/randombytes/-/randombytes-2.1.0.tgz#df6f84372f0270dc65cdf6291349ab7a473d4f2a"
10123-
integrity sha512-vYl3iOX+4CKUWuxGi9Ukhie6fsqXqS9FE2Zaic4tNFD2N2QQaXOMFbuKK4QmDHC0JO6B1Zp41J0LpT0oR68amQ==
10124-
dependencies:
10125-
safe-buffer "^5.1.0"
10126-
1012710120
range-parser@~1.2.1:
1012810121
version "1.2.1"
1012910122
resolved "https://registry.yarnpkg.com/range-parser/-/range-parser-1.2.1.tgz#3cf37023d199e1c24d1a55b84800c2f3e6468031"
@@ -10599,7 +10592,7 @@ safe-buffer@5.1.2, safe-buffer@~5.1.1:
1059910592
resolved "https://registry.yarnpkg.com/safe-buffer/-/safe-buffer-5.1.2.tgz#991ec69d296e0313747d59bdfd2b745c35f8828d"
1060010593
integrity sha512-Gd2UZBJDkXlY7GbJxfsE8/nvKkUEU1G38c1siN6QP6a9PT9MmHB8GnpscSmMJSoF8LOIrt8ud/wPtojys4G6+g==
1060110594

10602-
safe-buffer@5.2.1, safe-buffer@>=5.1.0, safe-buffer@^5.1.0, safe-buffer@^5.1.2, safe-buffer@~5.2.0:
10595+
safe-buffer@5.2.1, safe-buffer@>=5.1.0, safe-buffer@^5.1.2, safe-buffer@~5.2.0:
1060310596
version "5.2.1"
1060410597
resolved "https://registry.yarnpkg.com/safe-buffer/-/safe-buffer-5.2.1.tgz#1eaf9fa9bdb1fdd4ec75f58f9cdb4e6b7827eec6"
1060510598
integrity sha512-rp3So07KcdmmKbGvgaNxQSJr7bGVSVk5S9Eq1F+ppbRo70+YeaDxkw5Dd8NPN+GD6bjnYm2VuPuCXmpuYvmCXQ==
@@ -10690,12 +10683,10 @@ send@~0.19.0, send@~0.19.1:
1069010683
range-parser "~1.2.1"
1069110684
statuses "~2.0.2"
1069210685

10693-
serialize-javascript@^6.0.2:
10694-
version "6.0.2"
10695-
resolved "https://registry.yarnpkg.com/serialize-javascript/-/serialize-javascript-6.0.2.tgz#defa1e055c83bf6d59ea805d8da862254eb6a6c2"
10696-
integrity sha512-Saa1xPByTTq2gdeFZYLLo+RFE35NHZkAbqZeWNd3BpzppeVisAqpDjcp8dyf6uIvEqJRd46jemmyA4iFIeVk8g==
10697-
dependencies:
10698-
randombytes "^2.1.0"
10686+
serialize-javascript@^6.0.2, serialize-javascript@^7.0.3:
10687+
version "7.0.4"
10688+
resolved "https://registry.yarnpkg.com/serialize-javascript/-/serialize-javascript-7.0.4.tgz#c517735bd5b7631dd1fc191ee19cbb713ff8e05c"
10689+
integrity sha512-DuGdB+Po43Q5Jxwpzt1lhyFSYKryqoNjQSA9M92tyw0lyHIOur+XCalOUe0KTJpyqzT8+fQ5A0Jf7vCx/NKmIg==
1069910690

1070010691
serve-static@~1.16.2:
1070110692
version "1.16.3"

0 commit comments

Comments
 (0)