From 25e82381c62845fc95593ad709580bf35d2acac0 Mon Sep 17 00:00:00 2001 From: Jeroen Claassens Date: Wed, 1 Apr 2020 12:20:25 +0200 Subject: [PATCH] build: upgrade kind-of to fix security vulnerability CVE-2019-20149 https://github.com/jonschlinkert/kind-of/pull/31 --- package.json | 5 +++-- yarn.lock | 47 ++++++++--------------------------------------- 2 files changed, 11 insertions(+), 41 deletions(-) diff --git a/package.json b/package.json index 114ac54b..6726c177 100644 --- a/package.json +++ b/package.json @@ -44,7 +44,7 @@ }, "devDependencies": { "@favware/eslint-config": "^3.3.0", - "@rws-air/eslint-config": "^3.0.11", + "@rws-air/eslint-config": "^3.0.12", "@types/history": "^4.7.5", "@types/node": "^13.9.8", "@types/react": "^16.9.31", @@ -81,6 +81,7 @@ }, "resolutions": { "acorn": "^6.4.1", - "minimist": "^1.2.2" + "minimist": "^1.2.2", + "kind-of": "^6.0.3" } } diff --git a/yarn.lock b/yarn.lock index 71bd66b0..82194480 100644 --- a/yarn.lock +++ b/yarn.lock @@ -1620,10 +1620,10 @@ resolved "https://registry.yarnpkg.com/@nodelib/fs.stat/-/fs.stat-1.1.3.tgz#2b5a3ab3f918cca48a8c754c08168e3f03eba61b" integrity sha512-shAmDyaQC4H92APFoIaVDHCx5bStIocgvbwQyxPRrbUY20V1EYTbSDchWbuwlMG3V17cprZhA6+78JfB+3DTPw== -"@rws-air/eslint-config@^3.0.11": - version "3.0.11" - resolved "https://registry.yarnpkg.com/@rws-air/eslint-config/-/eslint-config-3.0.11.tgz#5b5691d8f0ecf4f42c270c4ac494259f1b9e6475" - integrity sha512-Mv4Qea3dIN80foZw/kv+rwILaQTY7PCpXLZthTNjSA+Cs8ahkWtP2v8gUE5o7gWJm+qMldual8eN9GAxgTPdFA== +"@rws-air/eslint-config@^3.0.12": + version "3.0.12" + resolved "https://registry.yarnpkg.com/@rws-air/eslint-config/-/eslint-config-3.0.12.tgz#e4b83e9fc38dec601b2d2abc72e08332b690feb3" + integrity sha512-2lsHLeCDddMsMJbqGlXWjXvAM7od1tUGCymaZ4dKAZVO7eokeHOd7OX8Co6R8T27f4bBe4hHTKz1897zpMikXw== dependencies: "@typescript-eslint/eslint-plugin" "^2.25.0" "@typescript-eslint/parser" "^2.25.0" @@ -6221,11 +6221,6 @@ is-binary-path@~2.1.0: dependencies: binary-extensions "^2.0.0" -is-buffer@^1.0.2, is-buffer@^1.1.5: - version "1.1.6" - resolved "https://registry.yarnpkg.com/is-buffer/-/is-buffer-1.1.6.tgz#efaa2ea9daa0d7ab2ea13a97b2b8ad51fefbe8be" - integrity sha512-NcdALwpXkTm5Zvvbk7owOUSvVvBKDgKP5/ewfXEznmQFfs4ZRmanOeKBTjRVjka3QFoN6XJ+9F3USqfHqTaU5w== - is-callable@^1.1.4, is-callable@^1.1.5: version "1.1.5" resolved "https://registry.yarnpkg.com/is-callable/-/is-callable-1.1.5.tgz#f7e46b596890456db74e7f6e976cb3273d06faab" @@ -7226,36 +7221,10 @@ killable@^1.0.1: resolved "https://registry.yarnpkg.com/killable/-/killable-1.0.1.tgz#4c8ce441187a061c7474fb87ca08e2a638194892" integrity sha512-LzqtLKlUwirEUyl/nicirVmNiPvYs7l5n8wOPP7fyJVpUPkvCnW/vuiXGpylGUlnPDnB7311rARzAt3Mhswpjg== -kind-of@^2.0.1: - version "2.0.1" - resolved "https://registry.yarnpkg.com/kind-of/-/kind-of-2.0.1.tgz#018ec7a4ce7e3a86cb9141be519d24c8faa981b5" - integrity sha1-AY7HpM5+OobLkUG+UZ0kyPqpgbU= - dependencies: - is-buffer "^1.0.2" - -kind-of@^3.0.2, kind-of@^3.0.3, kind-of@^3.2.0: - version "3.2.2" - resolved "https://registry.yarnpkg.com/kind-of/-/kind-of-3.2.2.tgz#31ea21a734bab9bbb0f32466d893aea51e4a3c64" - integrity sha1-MeohpzS6ubuw8yRm2JOupR5KPGQ= - dependencies: - is-buffer "^1.1.5" - -kind-of@^4.0.0: - version "4.0.0" - resolved "https://registry.yarnpkg.com/kind-of/-/kind-of-4.0.0.tgz#20813df3d712928b207378691a45066fae72dd57" - integrity sha1-IIE989cSkosgc3hpGkUGb65y3Vc= - dependencies: - is-buffer "^1.1.5" - -kind-of@^5.0.0: - version "5.1.0" - resolved "https://registry.yarnpkg.com/kind-of/-/kind-of-5.1.0.tgz#729c91e2d857b7a419a1f9aa65685c4c33f5845d" - integrity sha512-NGEErnH6F2vUuXDh+OlbcKW7/wOcfdRHaZ7VWtqCztfHri/++YKmP51OdWeGPuqCOba6kk2OTe5d02VmTB80Pw== - -kind-of@^6.0.0, kind-of@^6.0.2: - version "6.0.2" - resolved "https://registry.yarnpkg.com/kind-of/-/kind-of-6.0.2.tgz#01146b36a6218e64e58f3a8d66de5d7fc6f6d051" - integrity sha512-s5kLOcnH0XqDO+FvuaLX8DDjZ18CGFk7VygH40QoKPUQhW4e2rvM0rwUq0t8IQDOwYSeLK01U90OjzBTme2QqA== +kind-of@^2.0.1, kind-of@^3.0.2, kind-of@^3.0.3, kind-of@^3.2.0, kind-of@^4.0.0, kind-of@^5.0.0, kind-of@^6.0.0, kind-of@^6.0.2, kind-of@^6.0.3: + version "6.0.3" + resolved "https://registry.yarnpkg.com/kind-of/-/kind-of-6.0.3.tgz#07c05034a6c349fa06e24fa35aa76db4580ce4dd" + integrity sha512-dcS1ul+9tmeD95T+x28/ehLgd9mENa3LsvDTtzm3vyBEO7RPptvAD+t44WVXaUjTBRcrpFeFlC8WCruUR456hw== kleur@^3.0.3: version "3.0.3"