Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore(deps) Updated packages for security vulnerabilities #387

Open
wants to merge 17 commits into
base: develop
Choose a base branch
from
Open
Changes from 2 commits
Commits
Show all changes
17 commits
Select commit Hold shift + click to select a range
80ece5c
build(deps): bump yaml from 2.2.1 to 2.2.2 in /server/node-service
dependabot[bot] May 19, 2023
badc16c
Create renovate.json
sarvex May 19, 2023
b5388fd
build(deps): bump http-cache-semantics in /server/node-service
dependabot[bot] May 19, 2023
6ee3425
build(deps): bump vm2 from 3.9.14 to 3.9.19 in /server/node-service
dependabot[bot] May 19, 2023
aa56cdc
Merge pull request #4 from sarvex/dependabot/npm_and_yarn/server/node…
sarvex May 19, 2023
44d85cb
build(deps): bump json from 20200518 to 20230227 in /server/api-service
dependabot[bot] May 19, 2023
d798918
Merge pull request #7 from sarvex/dependabot/maven/server/api-service…
sarvex May 19, 2023
606be06
Merge pull request #6 from sarvex/dependabot/npm_and_yarn/server/node…
sarvex May 19, 2023
0b38824
Merge pull request #5 from sarvex/dependabot/npm_and_yarn/server/node…
sarvex May 19, 2023
e5d1334
build(deps): bump snowflake-jdbc
dependabot[bot] May 19, 2023
4d70946
build(deps-dev): bump spring-boot-starter-webflux
dependabot[bot] May 19, 2023
62f6803
Merge pull request #9 from sarvex/dependabot/maven/server/api-service…
sarvex May 19, 2023
9584eea
chore(deps): bump vm2 from 3.9.11 to 3.9.19 in /client
dependabot[bot] May 19, 2023
7575f53
Merge pull request #8 from sarvex/dependabot/maven/server/api-service…
sarvex May 19, 2023
81363dc
Merge pull request #3 from sarvex/dependabot/npm_and_yarn/client/vm2-…
sarvex May 19, 2023
696d4de
chore(deps): bump ua-parser-js from 1.0.2 to 1.0.33 in /client
dependabot[bot] May 19, 2023
dae0938
Merge pull request #10 from sarvex/dependabot/npm_and_yarn/client/ua-…
sarvex May 19, 2023
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
2 changes: 1 addition & 1 deletion server/node-service/package.json
Original file line number Diff line number Diff line change
@@ -67,7 +67,7 @@
"stylis": "^4.1.3",
"swagger-client": "^3.18.5",
"typescript": "^4.9.3",
"yaml": "^2.2.1"
"yaml": "^2.2.2"
},
"resolutions": {
"@apidevtools/json-schema-ref-parser": "9.0.7"
10 changes: 5 additions & 5 deletions server/node-service/yarn.lock
Original file line number Diff line number Diff line change
@@ -10444,7 +10444,7 @@ __metadata:
ts-jest: ^29.0.3
ts-node: ^10.9.1
typescript: ^4.9.3
yaml: ^2.2.1
yaml: ^2.2.2
languageName: unknown
linkType: soft

@@ -11138,10 +11138,10 @@ __metadata:
languageName: node
linkType: hard

"yaml@npm:^2.2.1":
version: 2.2.1
resolution: "yaml@npm:2.2.1::__archiveUrl=https%3A%2F%2Fregistry.npmjs.org%2Fyaml%2F-%2Fyaml-2.2.1.tgz"
checksum: 84f68cbe462d5da4e7ded4a8bded949ffa912bc264472e5a684c3d45b22d8f73a3019963a32164023bdf3d83cfb6f5b58ff7b2b10ef5b717c630f40bd6369a23
"yaml@npm:^2.2.2":
version: 2.2.2
resolution: "yaml@npm:2.2.2"
checksum: d90c235e099e30094dcff61ba3350437aef53325db4a6bcd04ca96e1bfe7e348b191f6a7a52b5211e2dbc4eeedb22a00b291527da030de7c189728ef3f2b4eb3
languageName: node
linkType: hard