From fc3f26c246762cf0b04f148221a053e1d7c0dfba Mon Sep 17 00:00:00 2001 From: "dependabot-preview[bot]" <27856297+dependabot-preview[bot]@users.noreply.github.com> Date: Thu, 28 May 2020 01:31:33 +0000 Subject: [PATCH] build(deps): bump snyk from 1.329.0 to 1.330.2 Bumps [snyk](https://github.com/snyk/snyk) from 1.329.0 to 1.330.2. - [Release notes](https://github.com/snyk/snyk/releases) - [Changelog](https://github.com/snyk/snyk/blob/master/.releaserc) - [Commits](https://github.com/snyk/snyk/compare/v1.329.0...v1.330.2) Signed-off-by: dependabot-preview[bot] --- package.json | 2 +- yarn.lock | 64 ++++++++++++++++++++++++++++++++++++---------------- 2 files changed, 46 insertions(+), 20 deletions(-) diff --git a/package.json b/package.json index c840cb11..901f71e9 100644 --- a/package.json +++ b/package.json @@ -53,7 +53,7 @@ "pg": "^8.2.1", "sequelize": "^5.21.11", "serve-favicon": "^2.5.0", - "snyk": "^1.329.0", + "snyk": "^1.330.2", "uuid": "^8.1.0", "winston": "^3.2.1" }, diff --git a/yarn.lock b/yarn.lock index 10f4b5d3..fe4a449d 100644 --- a/yarn.lock +++ b/yarn.lock @@ -730,7 +730,7 @@ source-map-support "^0.5.19" tslib "^1.11.1" -"@snyk/dep-graph@1.18.4", "@snyk/dep-graph@^1.18.2": +"@snyk/dep-graph@1.18.4": version "1.18.4" resolved "https://registry.yarnpkg.com/@snyk/dep-graph/-/dep-graph-1.18.4.tgz#4dfb1681d56090ca1f04a3bcd6593cbb8bf1a576" integrity sha512-SePWsDyD7qrLxFifIieEl4GqyOODfOnP0hmUweTG5YcMroAV5nARGAUcjxREGzbXMcUpPfZhAaqFjYgzUDH8dQ== @@ -742,6 +742,18 @@ source-map-support "^0.5.19" tslib "^1.11.1" +"@snyk/dep-graph@^1.17.0", "@snyk/dep-graph@^1.18.2": + version "1.19.0" + resolved "https://registry.yarnpkg.com/@snyk/dep-graph/-/dep-graph-1.19.0.tgz#dfb2699520225e715083f6dd590bb91b55e99ba1" + integrity sha512-/0phOICMk4hkX2KtZgi+4KNd5G9oYDIlxQDQk+ui2xl4gonPvK6Q5MFzHP7Xet1YY/XoU33ox41i+IO48qZ+zQ== + dependencies: + "@snyk/graphlib" "2.1.9-patch" + lodash.isequal "^4.5.0" + object-hash "^2.0.3" + semver "^6.0.0" + source-map-support "^0.5.19" + tslib "^2.0.0" + "@snyk/gemfile@1.2.0": version "1.2.0" resolved "https://registry.yarnpkg.com/@snyk/gemfile/-/gemfile-1.2.0.tgz#919857944973cce74c650e5428aaf11bcd5c0457" @@ -3578,7 +3590,7 @@ ip@1.1.5, ip@^1.1.5: resolved "https://registry.yarnpkg.com/ip/-/ip-1.1.5.tgz#bdded70114290828c0a039e72ef25f5aaec4354a" integrity sha1-vd7XARQpCCjAoDnnLvJfWq7ENUo= -ipaddr.js@1.9.1: +ipaddr.js@1.9.1, ipaddr.js@^1.9.1: version "1.9.1" resolved "https://registry.yarnpkg.com/ipaddr.js/-/ipaddr.js-1.9.1.tgz#bff38543eeb8984825079ff3a2a8e6cbd46781b3" integrity sha512-0KI/607xoxSToH7GjN1FfSbLoU0+btTicjsQSWQlh/hZykN8KpmMf7uYwPW3R+akZ6R/w18ZlXSHBYXiYUPO3g== @@ -4560,6 +4572,11 @@ lodash.isboolean@^3.0.3: resolved "https://registry.yarnpkg.com/lodash.isboolean/-/lodash.isboolean-3.0.3.tgz#6c2e171db2a257cd96802fd43b01b20d5f5870f6" integrity sha1-bC4XHbKiV82WgC/UOwGyDV9YcPY= +lodash.isequal@^4.5.0: + version "4.5.0" + resolved "https://registry.yarnpkg.com/lodash.isequal/-/lodash.isequal-4.5.0.tgz#415c4478f2bcc30120c22ce10ed3226f7d3e18e0" + integrity sha1-QVxEePK8wwEgwizhDtMib30+GOA= + lodash.isinteger@^4.0.4: version "4.0.4" resolved "https://registry.yarnpkg.com/lodash.isinteger/-/lodash.isinteger-4.0.4.tgz#619c0af3d03f8b04c31f5882840b77b11cd68343" @@ -4908,10 +4925,10 @@ nconf@^0.10.0: secure-keys "^1.0.0" yargs "^3.19.0" -needle@^2.2.4, needle@^2.3.3, needle@^2.4.0: - version "2.4.1" - resolved "https://registry.yarnpkg.com/needle/-/needle-2.4.1.tgz#14af48732463d7475696f937626b1b993247a56a" - integrity sha512-x/gi6ijr4B7fwl6WYL9FwlCvRQKGlUNvnceho8wxkwXqN8jvVmmmATTmZPRRG7b/yC1eode26C2HO9jl78Du9g== +needle@^2.3.3, needle@^2.4.0, needle@^2.5.0: + version "2.5.0" + resolved "https://registry.yarnpkg.com/needle/-/needle-2.5.0.tgz#e6fc4b3cc6c25caed7554bd613a5cf0bac8c31c0" + integrity sha512-o/qITSDR0JCyCKEQ1/1bnUXMmznxabbwi/Y4WwJElf+evwJNFNwIDMCCt5IigFVxgeGBJESLohGtIS9gEzo1fA== dependencies: debug "^3.2.6" iconv-lite "^0.4.4" @@ -6329,17 +6346,18 @@ snyk-go-plugin@1.14.0: tmp "0.1.0" tslib "^1.10.0" -snyk-gradle-plugin@3.2.7: - version "3.2.7" - resolved "https://registry.yarnpkg.com/snyk-gradle-plugin/-/snyk-gradle-plugin-3.2.7.tgz#3a4f37afeac00407d7051891a0e3ee4d69f6866f" - integrity sha512-fBgQpRwfuHGuPvYGEjgNBtuwnkNAV9sv17lG+eWdQO3ntkAKnt1RyzQydAdffK2e8339XM6Mg/1EPYuIGIY3TA== +snyk-gradle-plugin@^3.3.3: + version "3.3.3" + resolved "https://registry.yarnpkg.com/snyk-gradle-plugin/-/snyk-gradle-plugin-3.3.3.tgz#77743d8fcc6a3414641f8fd2d2de68ecdc4c1067" + integrity sha512-MS1zdaSUtVlCmHW25qyRMPeSNNTnTxrwG1qWq3t1As28BmiFwdEyUZrwz5urMCWyCQ1LhK38x0fbD1yE68dSuA== dependencies: "@snyk/cli-interface" "2.3.2" + "@snyk/dep-graph" "^1.17.0" "@types/debug" "^4.1.4" - chalk "^2.4.2" + chalk "^3.0.0" debug "^4.1.1" - tmp "0.0.33" - tslib "^1.9.3" + tmp "0.2.1" + tslib "^2.0.0" snyk-module@3.1.0: version "3.1.0" @@ -6505,10 +6523,10 @@ snyk-try-require@1.3.1, snyk-try-require@^1.1.1, snyk-try-require@^1.3.1: lru-cache "^4.0.0" then-fs "^2.0.0" -snyk@^1.329.0: - version "1.329.0" - resolved "https://registry.yarnpkg.com/snyk/-/snyk-1.329.0.tgz#76304c54cd69abd3a5237ba1ad73521caff97507" - integrity sha512-eDHfnLYgxVSuAzIJPBBhPqRN+6c5eWsQA+ff67OR9Qn4JUgI3MSuyxPJ3o6JPoyE/qYZfKhdFnyqBBz1eUu3oQ== +snyk@^1.330.2: + version "1.330.2" + resolved "https://registry.yarnpkg.com/snyk/-/snyk-1.330.2.tgz#384142bc53ea8760113a39f75fbb08d214b3823b" + integrity sha512-2iElwCTVLscX6qXu3dXva8EJD/LNyz7Q8atnvAWp7TC7MJow6MDTNwptmpKaMdod18p3z7yF6JKb/etTikXxog== dependencies: "@snyk/cli-interface" "2.6.0" "@snyk/dep-graph" "1.18.3" @@ -6526,7 +6544,8 @@ snyk@^1.329.0: debug "^3.1.0" diff "^4.0.1" glob "^7.1.3" - needle "^2.2.4" + ipaddr.js "^1.9.1" + needle "^2.5.0" open "^7.0.3" os-name "^3.0.0" proxy-agent "^3.1.1" @@ -6535,7 +6554,7 @@ snyk@^1.329.0: snyk-config "3.1.0" snyk-docker-plugin "3.5.2" snyk-go-plugin "1.14.0" - snyk-gradle-plugin "3.2.7" + snyk-gradle-plugin "^3.3.3" snyk-module "3.1.0" snyk-mvn-plugin "2.15.2" snyk-nodejs-lockfile-parser "1.22.0" @@ -7050,6 +7069,13 @@ tmp@0.1.0, tmp@^0.1.0: dependencies: rimraf "^2.6.3" +tmp@0.2.1: + version "0.2.1" + resolved "https://registry.yarnpkg.com/tmp/-/tmp-0.2.1.tgz#8457fc3037dcf4719c251367a1af6500ee1ccf14" + integrity sha512-76SUhtfqR2Ijn+xllcI5P1oyannHNHByD80W1q447gU3mp9G9PSpGdWmjUOHRDPiHYacIk66W7ubDTuPF3BEtQ== + dependencies: + rimraf "^3.0.0" + tmpl@1.0.x: version "1.0.4" resolved "https://registry.yarnpkg.com/tmpl/-/tmpl-1.0.4.tgz#23640dd7b42d00433911140820e5cf440e521dd1"