From a4197b94313c0ced86a64147108dcfe008da9f21 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 6 Nov 2023 02:22:42 +0000 Subject: [PATCH] fix: docs/package.json, docs/package-lock.json & docs/.snyk to reduce vulnerabilities The following vulnerabilities are fixed with a Snyk patch: - https://snyk.io/vuln/SNYK-JS-LODASH-567746 --- docs/.snyk | 30 ++++++++++++++++++++++++++++++ docs/package-lock.json | 5 +++++ docs/package.json | 10 +++++++--- 3 files changed, 42 insertions(+), 3 deletions(-) create mode 100644 docs/.snyk diff --git a/docs/.snyk b/docs/.snyk new file mode 100644 index 000000000000..a98675e2ef89 --- /dev/null +++ b/docs/.snyk @@ -0,0 +1,30 @@ +# Snyk (https://snyk.io) policy file, patches or ignores known vulnerabilities. +version: v1.25.1 +ignore: {} +# patches apply the minimum changes required to fix a vulnerability +patch: + SNYK-JS-LODASH-567746: + - gatsby-theme-docz > gatsby > gatsby-cli > gatsby-recipes > remark-mdxjs > @babel/core > lodash: + patched: '2023-11-06T02:22:04.497Z' + id: SNYK-JS-LODASH-567746 + path: >- + gatsby-theme-docz > gatsby > gatsby-cli > gatsby-recipes > + remark-mdxjs > @babel/core > lodash + - docz > gatsby > gatsby-cli > gatsby-recipes > remark-mdxjs > @babel/core > lodash: + patched: '2023-11-06T02:22:04.497Z' + id: SNYK-JS-LODASH-567746 + path: >- + docz > gatsby > gatsby-cli > gatsby-recipes > remark-mdxjs > + @babel/core > lodash + - gatsby-theme-docz > gatsby > gatsby-cli > gatsby-recipes > remark-mdxjs > @babel/core > @babel/helper-module-transforms > lodash: + patched: '2023-11-06T02:22:04.497Z' + id: SNYK-JS-LODASH-567746 + path: >- + gatsby-theme-docz > gatsby > gatsby-cli > gatsby-recipes > + remark-mdxjs > @babel/core > @babel/helper-module-transforms > lodash + - docz > gatsby > gatsby-cli > gatsby-recipes > remark-mdxjs > @babel/core > @babel/helper-module-transforms > lodash: + patched: '2023-11-06T02:22:04.497Z' + id: SNYK-JS-LODASH-567746 + path: >- + docz > gatsby > gatsby-cli > gatsby-recipes > remark-mdxjs > + @babel/core > @babel/helper-module-transforms > lodash diff --git a/docs/package-lock.json b/docs/package-lock.json index 411f0894056d..e131f6b1484f 100644 --- a/docs/package-lock.json +++ b/docs/package-lock.json @@ -2691,6 +2691,11 @@ } } }, + "@snyk/protect": { + "version": "1.1238.0", + "resolved": "https://registry.npmjs.org/@snyk/protect/-/protect-1.1238.0.tgz", + "integrity": "sha512-5n309NbhWl2g51ylyQguWOFQ1ahUW+BLkwiKRGW15f04HCi/Mc2gdInjvyAT8131UHgoMiEubDymT6F8Kdn2lA==" + }, "@styled-system/background": { "version": "5.1.2", "resolved": "https://registry.npmjs.org/@styled-system/background/-/background-5.1.2.tgz", diff --git a/docs/package.json b/docs/package.json index 87f5f3fc6b0d..1d99ef03d5d9 100644 --- a/docs/package.json +++ b/docs/package.json @@ -39,7 +39,8 @@ "react-helmet": "^6.1.0", "swagger-ui-react": "^3.36.2", "theme-ui": "^0.3.1", - "three": "^0.68.0" + "three": "^0.68.0", + "@snyk/protect": "latest" }, "devDependencies": { "eslint-config-airbnb": "^18.2.1", @@ -61,7 +62,9 @@ "clean": "gatsby clean", "lint": "eslint src/ --ext .ts,.js,.tsx,.jsx", "lint-fix": "eslint --fix src/ --ext .ts,.js,.tsx,.jsx", - "test": "echo \"Write tests! -> https://gatsby.dev/unit-testing\" && exit 1" + "test": "echo \"Write tests! -> https://gatsby.dev/unit-testing\" && exit 1", + "prepare": "npm run snyk-protect", + "snyk-protect": "snyk-protect" }, "repository": { "type": "git", @@ -75,5 +78,6 @@ }, "bugs": { "url": "https://github.com/gatsbyjs/gatsby/issues" - } + }, + "snyk": true }