Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Snyk] Fix for 9 vulnerabilities #26

Open
wants to merge 19 commits into
base: main
Choose a base branch
from
Open
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
19 commits
Select commit Hold shift + click to select a range
5f861c5
fix: deps/uv/docs/requirements.txt to reduce vulnerabilities
snyk-bot May 2, 2023
6ce3053
fix: upgrade multiple dependencies with Snyk
snyk-bot May 3, 2023
70497e0
fix: upgrade globals from 10.1.0 to 10.4.0
snyk-bot May 3, 2023
04c3980
fix: upgrade tempy from 0.5.0 to 0.7.1
snyk-bot May 3, 2023
6292d1a
Merge pull request #7 from leonardoadame/snyk-upgrade-2995fc05233b7a0…
leonardoadame May 12, 2023
616a8bf
Merge pull request #6 from leonardoadame/snyk-upgrade-4d5b4bd486c2748…
leonardoadame May 12, 2023
a614a8a
fix: deps/uv/docs/requirements.txt to reduce vulnerabilities
snyk-bot May 24, 2023
52682c9
Merge pull request #10 from leonardoadame/snyk-fix-8d86d74fb78e75dbf9…
leonardoadame Jun 12, 2023
2e2374f
Merge pull request #3 from leonardoadame/snyk-fix-3fed45732244c5baec2…
leonardoadame Jun 16, 2023
eb66b7e
fix: tools/node_modules/eslint/node_modules/@babel/core/package.json …
snyk-bot Jun 20, 2023
47a5b14
fix: tools/node_modules/eslint/node_modules/@babel/eslint-parser/pack…
snyk-bot Jun 20, 2023
30fc1d1
fix: deps/v8/tools/package.json & deps/v8/tools/package-lock.json to …
snyk-bot Jun 20, 2023
1100bde
fix: tools/node_modules/eslint/node_modules/@babel/helper-compilation…
snyk-bot Jun 21, 2023
853f217
Merge pull request #13 from leonardoadame/snyk-fix-ee8912d3a9cd5262aa…
leonardoadame Jun 22, 2023
35fab6e
Merge pull request #15 from leonardoadame/snyk-fix-900859a513e8ed4cc8…
leonardoadame Jun 22, 2023
f827f4a
Merge pull request #14 from leonardoadame/snyk-fix-b7180ea97e108aabee…
leonardoadame Jun 22, 2023
73ba401
Merge pull request #4 from leonardoadame/snyk-upgrade-f919faf2a9ba7c3…
leonardoadame Jun 22, 2023
d735ea2
Merge pull request #12 from leonardoadame/snyk-fix-763b7501c41ba23cc9…
leonardoadame Jun 24, 2023
49e3f78
fix: tools/node_modules/eslint/node_modules/gensync/package.json to r…
snyk-bot Jul 6, 2023
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Jump to
Jump to file
Failed to load files.
Diff view
Diff view
9 changes: 5 additions & 4 deletions deps/uv/docs/requirements.txt
Expand Up @@ -4,9 +4,9 @@ Sphinx==3.5.4
# dependencies
alabaster==0.7.12
appdirs==1.4.3
Babel==2.9.0
Babel==2.9.1
CacheControl==0.12.6
certifi==2019.11.28
certifi==2022.12.7
chardet==3.0.4
colorama==0.4.3
contextlib2==0.6.0
Expand All @@ -28,7 +28,7 @@ Pygments==2.8.1
pyparsing==2.4.6
pytoml==0.1.21
pytz==2021.1
requests==2.22.0
requests==2.31.0
retrying==1.3.3
six==1.14.0
snowballstemmer==2.1.0
Expand All @@ -38,5 +38,6 @@ sphinxcontrib-htmlhelp==1.0.3
sphinxcontrib-jsmath==1.0.1
sphinxcontrib-qthelp==1.0.3
sphinxcontrib-serializinghtml==1.1.4
urllib3==1.25.8
urllib3==1.26.5
webencodings==0.5.1
setuptools>=65.5.1 # not directly required, pinned by Snyk to avoid a vulnerability
551 changes: 445 additions & 106 deletions deps/v8/tools/clusterfuzz/js_fuzzer/package-lock.json

Large diffs are not rendered by default.

14 changes: 7 additions & 7 deletions deps/v8/tools/clusterfuzz/js_fuzzer/package.json
Expand Up @@ -10,15 +10,15 @@
"author": "ochang@google.com",
"license": "ISC",
"dependencies": {
"@babel/generator": "^7.1.3",
"@babel/template": "^7.1.2",
"@babel/traverse": "^7.1.4",
"@babel/types": "^7.1.3",
"@babel/parser": "^7.1.3",
"@babel/generator": "^7.21.4",
"@babel/template": "^7.20.7",
"@babel/traverse": "^7.21.4",
"@babel/types": "^7.21.4",
"@babel/parser": "^7.21.4",
"commander": "^2.11.0",
"globals": "^10.1.0",
"globals": "^10.4.0",
"tempfile": "^3.0.0",
"tempy": "^0.5.0"
"tempy": "^0.7.1"
},
"devDependencies": {
"eslint": "^6.8.0",
Expand Down
734 changes: 379 additions & 355 deletions deps/v8/tools/package-lock.json

Large diffs are not rendered by default.

2 changes: 1 addition & 1 deletion deps/v8/tools/package.json
Expand Up @@ -2,6 +2,6 @@
"name": "v8-tools",
"version": "1.0.0",
"dependencies": {
"local-web-server": "^4.2.1"
"local-web-server": "^5.0.0"
}
}

Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.

Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.

Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.

4 changes: 2 additions & 2 deletions tools/node_modules/eslint/node_modules/gensync/package.json

Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.