From ff912ae44d2c14b42f8a495990ec61cd30cb4d69 Mon Sep 17 00:00:00 2001 From: dappnodedev Date: Mon, 11 Mar 2024 17:58:03 +0100 Subject: [PATCH] Bump js-yaml to 4.1.0 --- package.json | 2 +- src/files/compose/readCompose.ts | 2 +- yarn.lock | 9 ++++++++- 3 files changed, 10 insertions(+), 3 deletions(-) diff --git a/package.json b/package.json index d88d1d86..e240911a 100644 --- a/package.json +++ b/package.json @@ -52,7 +52,7 @@ "graphql": "^16.6.0", "image-size": "^0.8.1", "inquirer": "^6.2.1", - "js-yaml": "^3.12.1", + "js-yaml": "^4.1.0", "listr": "^0.14.3", "lodash-es": "^4.17.21", "mime-types": "^2.1.24", diff --git a/src/files/compose/readCompose.ts b/src/files/compose/readCompose.ts index 7e8d59ff..79315ffc 100644 --- a/src/files/compose/readCompose.ts +++ b/src/files/compose/readCompose.ts @@ -14,7 +14,7 @@ export function readCompose(paths?: ComposePaths): Compose { // Parse compose in try catch block to show a comprehensive error message try { - const compose = yaml.safeLoad(data); + const compose = yaml.load(data); if (!compose) throw Error("result is undefined"); if (typeof compose === "string") throw Error("result is a string"); return compose as Compose; diff --git a/yarn.lock b/yarn.lock index 85f2750d..8d5b6c0b 100644 --- a/yarn.lock +++ b/yarn.lock @@ -2571,7 +2571,7 @@ js-yaml@4.1.0: dependencies: argparse "^2.0.1" -js-yaml@^3.12.1, js-yaml@^3.13.1: +js-yaml@^3.13.1: version "3.14.0" resolved "https://registry.npmjs.org/js-yaml/-/js-yaml-3.14.0.tgz" integrity sha512-/4IbIeHcD9VMHFqDR/gQ7EdZdLimOvW2DdcxFjdyyZ9NsbS+ccrXqVWDtab/lRl5AlUqmpBx8EhPaWR+OtY17A== @@ -2579,6 +2579,13 @@ js-yaml@^3.12.1, js-yaml@^3.13.1: argparse "^1.0.7" esprima "^4.0.0" +js-yaml@^4.1.0: + version "4.1.0" + resolved "https://registry.yarnpkg.com/js-yaml/-/js-yaml-4.1.0.tgz#c1fb65f8f5017901cdd2c951864ba18458a10602" + integrity sha512-wpxZs9NoxZaJESJGIZTyDEaYpl0FKSA+FB9aJiyemKhMwkxQg63h4T1KJgUGHpTqPDNRcmmYLugrRjJlBtWvRA== + dependencies: + argparse "^2.0.1" + jsbn@~0.1.0: version "0.1.1" resolved "https://registry.npmjs.org/jsbn/-/jsbn-0.1.1.tgz"