From 23808d5d5de4832791bc0d53cb7719e00422a7e2 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 5 Jun 2023 17:34:05 +0000 Subject: [PATCH] fix: large-file/package.json & large-file/package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-LODASH-1018905 - https://snyk.io/vuln/SNYK-JS-LODASH-1040724 - https://snyk.io/vuln/SNYK-JS-LODASH-567746 - https://snyk.io/vuln/SNYK-JS-LODASH-608086 --- large-file/package-lock.json | 97 ++++++++++++++++++++++++++++-------- large-file/package.json | 2 +- 2 files changed, 78 insertions(+), 21 deletions(-) diff --git a/large-file/package-lock.json b/large-file/package-lock.json index fa2bba08..ee258010 100644 --- a/large-file/package-lock.json +++ b/large-file/package-lock.json @@ -5137,6 +5137,31 @@ "lodash.once": "^4.1.1" } }, + "@mongodb-js/compass-logging": { + "version": "1.1.6", + "resolved": "https://registry.npmjs.org/@mongodb-js/compass-logging/-/compass-logging-1.1.6.tgz", + "integrity": "sha512-RR7bykVNxt8tTcK4C/XJzjhpl/+RzlkILMcxpZ8k4nMtX+fe5LvpRBMGaJPwQsZVYJno7Fare8gJUaeVxU0SGg==", + "requires": { + "debug": "^4.2.0", + "is-electron-renderer": "^2.0.1", + "mongodb-log-writer": "^1.2.0" + }, + "dependencies": { + "debug": { + "version": "4.3.4", + "resolved": "https://registry.npmjs.org/debug/-/debug-4.3.4.tgz", + "integrity": "sha512-PRWFHuSU3eDtQJPvnNY7Jcket1j0t5OuOsFzPPzsekD52Zl8qUfFIPEiswXqIvHWGVHOgX+7G/vCNNhehwxfkQ==", + "requires": { + "ms": "2.1.2" + } + }, + "ms": { + "version": "2.1.2", + "resolved": "https://registry.npmjs.org/ms/-/ms-2.1.2.tgz", + "integrity": "sha512-sGkPx+VjMtmA6MX27oA4FBFELFCZZ4S4XqeGOXCv68tT+jb3vk/RyaKWP0PTKyWtmLSM0b+adUTEvbs1PEaH2w==" + } + } + }, "@mrmlnc/readdir-enhanced": { "version": "2.2.1", "resolved": "https://registry.npmjs.org/@mrmlnc/readdir-enhanced/-/readdir-enhanced-2.2.1.tgz", @@ -7034,33 +7059,42 @@ } }, "app-migrations": { - "version": "0.2.0", - "resolved": "https://registry.npmjs.org/app-migrations/-/app-migrations-0.2.0.tgz", - "integrity": "sha512-YCXqG8UaqMevQgeMKrALnaLSJHJX83HW9hjeQg1paLOSzCV1pV4EjHeRNnZpyXM3uONhV0I3tcsmTElPwmqfYQ==", - "requires": { - "async": "^3.1.0", - "debug": "^4.1.1", - "lodash": "4.17.15", + "version": "3.1.6", + "resolved": "https://registry.npmjs.org/app-migrations/-/app-migrations-3.1.6.tgz", + "integrity": "sha512-Lv/pDk4JjkbvFKtY+Ta5QYAHOS1BmgCa26RIufMAthAynI0vSzeh+10NNl8deWszyipbnvJOejwiIQJdNqj/Pw==", + "requires": { + "@mongodb-js/compass-logging": "^1.1.6", + "async": "^3.2.2", + "debug": "^4.2.0", + "lodash": "^4.17.21", "semver": "^7.1.1" }, "dependencies": { "async": { - "version": "3.2.0", - "resolved": "https://registry.npmjs.org/async/-/async-3.2.0.tgz", - "integrity": "sha512-TR2mEZFVOj2pLStYxLht7TyfuRzaydfpxr3k9RpHIzMgw7A64dzsdqCxH1WJyQdoe8T10nDXd9wnEigmiuHIZw==" + "version": "3.2.4", + "resolved": "https://registry.npmjs.org/async/-/async-3.2.4.tgz", + "integrity": "sha512-iAB+JbDEGXhyIUavoDl9WP/Jj106Kz9DEn1DPgYw5ruDn0e3Wgi3sKFm55sASdGBNOQB8F59d9qQ7deqrHA8wQ==" }, "debug": { - "version": "4.1.1", - "resolved": "https://registry.npmjs.org/debug/-/debug-4.1.1.tgz", - "integrity": "sha512-pYAIzeRo8J6KPEaJ0VWOh5Pzkbw/RetuzehGM7QRRX5he4fPHx2rdKMB256ehJCkX+XRQm16eZLqLNS8RSZXZw==", + "version": "4.3.4", + "resolved": "https://registry.npmjs.org/debug/-/debug-4.3.4.tgz", + "integrity": "sha512-PRWFHuSU3eDtQJPvnNY7Jcket1j0t5OuOsFzPPzsekD52Zl8qUfFIPEiswXqIvHWGVHOgX+7G/vCNNhehwxfkQ==", "requires": { - "ms": "^2.1.1" + "ms": "2.1.2" } }, "lodash": { - "version": "4.17.15", - "resolved": "https://registry.npmjs.org/lodash/-/lodash-4.17.15.tgz", - "integrity": "sha512-8xOcRHvCjnocdS5cpwXQXVzmmh5e5+saE2QGoeQmbKmRS6J3VQppPOIt0MnmE+4xlZoumy0GPG0D0MVIQbNA1A==" + "version": "4.17.21", + "resolved": "https://registry.npmjs.org/lodash/-/lodash-4.17.21.tgz", + "integrity": "sha512-v2kDEe57lecTulaDIuNTPy3Ry4gLGJ6Z1O3vE1krgXZNrsQ+LFTGHVxVjcXPs17LhbZVGedAJv8XZ1tvj5FvSg==" + }, + "lru-cache": { + "version": "6.0.0", + "resolved": "https://registry.npmjs.org/lru-cache/-/lru-cache-6.0.0.tgz", + "integrity": "sha512-Jo6dJ04CmSjuznwJSS3pUeWmd/H0ffTlkXXgwZi+eq1UCmqQwCh+eLsYOYCwY991i2Fah4h1BEMCx4qThGbsiA==", + "requires": { + "yallist": "^4.0.0" + } }, "ms": { "version": "2.1.2", @@ -7068,9 +7102,17 @@ "integrity": "sha512-sGkPx+VjMtmA6MX27oA4FBFELFCZZ4S4XqeGOXCv68tT+jb3vk/RyaKWP0PTKyWtmLSM0b+adUTEvbs1PEaH2w==" }, "semver": { - "version": "7.3.2", - "resolved": "https://registry.npmjs.org/semver/-/semver-7.3.2.tgz", - "integrity": "sha512-OrOb32TeeambH6UrhtShmF7CRDqhL6/5XpPNp2DuRH6+9QLw/orhp72j87v8Qa1ScDkvrrBNpZcDejAirJmfXQ==" + "version": "7.5.1", + "resolved": "https://registry.npmjs.org/semver/-/semver-7.5.1.tgz", + "integrity": "sha512-Wvss5ivl8TMRZXXESstBA4uR5iXgEN/VC5/sOcuXdVLzcdkz4HWetIoRfG5gb5X+ij/G9rw9YoGn3QoQ8OCSpw==", + "requires": { + "lru-cache": "^6.0.0" + } + }, + "yallist": { + "version": "4.0.0", + "resolved": "https://registry.npmjs.org/yallist/-/yallist-4.0.0.tgz", + "integrity": "sha512-3wdGidZyq5PB084XLES5TpOSRA3wjXAlIWMhum2kRcv/41Sn2emQ0dycQW4uZXLejwKvg6EsvbdlVL+FYEct7A==" } } }, @@ -25356,6 +25398,21 @@ "resolved": "https://registry.npmjs.org/mongodb-language-model/-/mongodb-language-model-1.6.0.tgz", "integrity": "sha512-Nb31lm2KhJin0AUvJhsdrnv8yfs6H0I2pOFgUfuZThGfeRr3V8IndxBxW8SEhOmJ1v42BVMWL6xMHbefVwjyHg==" }, + "mongodb-log-writer": { + "version": "1.2.0", + "resolved": "https://registry.npmjs.org/mongodb-log-writer/-/mongodb-log-writer-1.2.0.tgz", + "integrity": "sha512-FlY+Mxi4r4bgsmopKcG1pt9QoFYGh9Z/JRSvbBg8G8S1zrGPFEjqut5YG8BPfuFFQV/G9nVJDGMhbt3L5JUYww==", + "requires": { + "bson": "^4.5.1 || ^5.0.0" + }, + "dependencies": { + "bson": { + "version": "5.3.0", + "resolved": "https://registry.npmjs.org/bson/-/bson-5.3.0.tgz", + "integrity": "sha512-ukmCZMneMlaC5ebPHXIkP8YJzNl5DC41N5MAIvKDqLggdao342t4McltoJBQfQya/nHBWAcSsYRqlXPoQkTJag==" + } + } + }, "mongodb-ns": { "version": "2.0.0", "resolved": "https://registry.npmjs.org/mongodb-ns/-/mongodb-ns-2.0.0.tgz", diff --git a/large-file/package.json b/large-file/package.json index 0e6486e3..c1b3b48c 100644 --- a/large-file/package.json +++ b/large-file/package.json @@ -136,7 +136,7 @@ "ansi-styles": "3.2.1", "any-observable": "0.2.0", "anymatch": "^2.0.0", - "app-migrations": "^0.2.0", + "app-migrations": "^3.1.6", "app-root-path": "2.0.1", "aproba": "1.2.0", "argparse": "1.0.10",