From 432fe141d4ec342c472af23d03e1352baa28c7ab Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sat, 22 Oct 2022 02:10:51 +0000 Subject: [PATCH] fix: package.json & yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-SES-3057928 --- package.json | 2 +- yarn.lock | 27 ++++----------------------- 2 files changed, 5 insertions(+), 24 deletions(-) diff --git a/package.json b/package.json index b96d4911e..df58b47e8 100644 --- a/package.json +++ b/package.json @@ -180,7 +180,7 @@ "rpc-cap": "^1.0.5", "safe-event-emitter": "^1.0.1", "safe-json-stringify": "^1.2.0", - "ses": "^0.6.5", + "ses": "^0.16.0", "single-call-balance-checker-abi": "^1.0.0", "string.prototype.matchall": "^3.0.1", "swappable-obj-proxy": "^1.1.0", diff --git a/yarn.lock b/yarn.lock index f11cf2366..b7f05b084 100644 --- a/yarn.lock +++ b/yarn.lock @@ -47,11 +47,6 @@ did-resolver "0.0.6" ipfs-did-document "^1.2.3" -"@agoric/make-hardener@^0.0.6": - version "0.0.6" - resolved "https://registry.yarnpkg.com/@agoric/make-hardener/-/make-hardener-0.0.6.tgz#5903748a71381bc37e23d571390aaff9973c37b2" - integrity sha512-OpZcNx/7bhHar0iuQ6D+FKYCMMxqKvYs4aC/bB5v/ffZaSM5sNAl98DnGL1mD9NSyZLGzAZ7D5XwJpe37BMldQ== - "@babel/code-frame@7.0.0": version "7.0.0" resolved "https://registry.yarnpkg.com/@babel/code-frame/-/code-frame-7.0.0.tgz#06e2ab19bdb535385559aabb5ba59729482800f8" @@ -9948,11 +9943,6 @@ eslint@^6.0.1: table "^5.2.3" text-table "^0.2.0" -esm@^3.2.25: - version "3.2.25" - resolved "https://registry.yarnpkg.com/esm/-/esm-3.2.25.tgz#342c18c29d56157688ba5ce31f8431fbb795cc10" - integrity sha512-U1suiZ2oDVWv4zPO56S0NcR5QriEahGtdN2OR6FiOG4WJvcjBVFB0qI4+eKoWFH483PKGuLuu6V8Z4T5g63UVA== - espree@6.1.1: version "6.1.1" resolved "https://registry.yarnpkg.com/espree/-/espree-6.1.1.tgz#7f80e5f7257fc47db450022d723e356daeb1e5de" @@ -22854,11 +22844,6 @@ realms-shim@^1.2.1: resolved "https://registry.yarnpkg.com/realms-shim/-/realms-shim-1.2.1.tgz#7d6afb2ad4007296b527a0b731fefd7b6620652d" integrity sha512-IS1OrGSFt3k1Sv4Re2NxNrul5XCnc7XRGpaLiBKPU97RKcxVg2NbcZm2YoG5kLo9Emk5YG1gGv9zlNtplQSrMA== -realms-shim@^1.2.2: - version "1.2.2" - resolved "https://registry.yarnpkg.com/realms-shim/-/realms-shim-1.2.2.tgz#bdf828ee316afa4c9ea2aab364d55b8ad7eb5904" - integrity sha512-NOskQ7IJEnHN4Dhu462Pf0Kl8YHSPjt6V+fVvrGSCs/SfAa433CLTyJ632DFsZC2ENBQ9p6tEZ3w+1Vkycuwyg== - recast@^0.11.17: version "0.11.23" resolved "https://registry.yarnpkg.com/recast/-/recast-0.11.23.tgz#451fd3004ab1e4df9b4e4b66376b2a21912462d3" @@ -24328,14 +24313,10 @@ servify@^0.1.12: request "^2.79.0" xhr "^2.3.3" -ses@^0.6.5: - version "0.6.5" - resolved "https://registry.yarnpkg.com/ses/-/ses-0.6.5.tgz#7032f9cb24d1403b52672669a79075fc6c9d1006" - integrity sha512-/lwDzNdPsDqmraY90GLZvLOw+XNYuV/aBt8nH8bfjhWAxAeNQeUjXHy/jVMwRiPGR/kf+fPKdFKNIFVJZyqGYw== - dependencies: - "@agoric/make-hardener" "^0.0.6" - esm "^3.2.25" - realms-shim "^1.2.2" +ses@^0.16.0: + version "0.16.0" + resolved "https://registry.yarnpkg.com/ses/-/ses-0.16.0.tgz#d405fff49daa8e19b1b04344e2a752c9268afa72" + integrity sha512-2oKCzl3W24aNqBifLWWEh3OGd+78+SY1GVKWP5ogrqBOjs3X1trwE2akx5pX4M1MFExqXoJGav1CmCq2KBMqOg== sesify-tofu@^2.0.4: version "2.0.4"