From 6263161a7793f6c2010bccac1b3ed539f049bd5c Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sun, 8 Sep 2024 23:29:57 +0000 Subject: [PATCH] fix: sails/webnified-app/package.json & sails/webnified-app/.snyk to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-SOCKETIO-1024859 - https://snyk.io/vuln/SNYK-JS-UGLIFYJS-1727251 - https://snyk.io/vuln/SNYK-JS-UNDERSCORE-1080984 - https://snyk.io/vuln/SNYK-JS-VALIDATOR-1090599 - https://snyk.io/vuln/SNYK-JS-VALIDATOR-1090601 - https://snyk.io/vuln/SNYK-JS-VALIDATOR-1090602 - https://snyk.io/vuln/SNYK-JS-WS-1296835 - https://snyk.io/vuln/SNYK-JS-XMLHTTPREQUEST-1082935 - https://snyk.io/vuln/SNYK-JS-HAWK-6969142 - https://snyk.io/vuln/npm:ws:20171108 - https://snyk.io/vuln/SNYK-JS-EJS-2803307 - https://snyk.io/vuln/SNYK-JS-LODASH-6139239 - https://snyk.io/vuln/SNYK-JS-QS-3153490 - https://snyk.io/vuln/SNYK-JS-LODASH-450202 - https://snyk.io/vuln/SNYK-JS-LODASH-608086 - https://snyk.io/vuln/SNYK-JS-LODASH-73638 - https://snyk.io/vuln/SNYK-JS-LODASH-1040724 - https://snyk.io/vuln/SNYK-JS-GRUNT-2813632 - https://snyk.io/vuln/SNYK-JS-REQUEST-3361831 - https://snyk.io/vuln/SNYK-JS-GRUNT-2635969 - https://snyk.io/vuln/npm:hoek:20180212 - https://snyk.io/vuln/npm:lodash:20180130 - https://snyk.io/vuln/npm:uglify-js:20150824 - https://snyk.io/vuln/SNYK-JS-JSYAML-174129 - https://snyk.io/vuln/npm:ejs:20161128 - https://snyk.io/vuln/SNYK-JS-MINIMATCH-1019388 - https://snyk.io/vuln/SNYK-JS-MONGODB-473855 - https://snyk.io/vuln/npm:fresh:20170908 - https://snyk.io/vuln/npm:minimatch:20160620 - https://snyk.io/vuln/npm:qs:20140806 - https://snyk.io/vuln/npm:qs:20170213 - https://snyk.io/vuln/npm:validator:20130705 - https://snyk.io/vuln/npm:ws:20160624 - https://snyk.io/vuln/SNYK-JS-LODASH-1018905 - https://snyk.io/vuln/SNYK-JS-HAWK-2808852 - https://snyk.io/vuln/npm:tunnel-agent:20170305 - https://snyk.io/vuln/SNYK-JS-GRUNT-597546 - https://snyk.io/vuln/SNYK-JS-LODASH-73639 - https://snyk.io/vuln/npm:qs:20140806-1 - https://snyk.io/vuln/npm:ws:20160104 - https://snyk.io/vuln/npm:cookie-signature:20160804 - https://snyk.io/vuln/SNYK-JS-EJS-1049328 - https://snyk.io/vuln/SNYK-JS-EXPRESS-6474509 - https://snyk.io/vuln/npm:ejs:20161130 - https://snyk.io/vuln/npm:ejs:20161130-1 - https://snyk.io/vuln/npm:clean-css:20180306 - https://snyk.io/vuln/npm:express:20140912 - https://snyk.io/vuln/SNYK-JS-EJS-6689533 - https://snyk.io/vuln/SNYK-JS-MINIMATCH-3050818 - https://snyk.io/vuln/npm:send:20151103 - https://snyk.io/vuln/npm:uglify-js:20151024 - https://snyk.io/vuln/npm:validator:20160218 - https://snyk.io/vuln/npm:ws:20160920 - https://snyk.io/vuln/npm:request:20160119 - https://snyk.io/vuln/npm:send:20140912 - https://snyk.io/vuln/npm:validator:20150313 - https://snyk.io/vuln/npm:node-uuid:20160328 - https://snyk.io/vuln/npm:hawk:20160119 - https://snyk.io/vuln/npm:mime:20170907 The following vulnerabilities are fixed with a Snyk patch: - https://snyk.io/vuln/npm:minimatch:20160620 --- sails/webnified-app/.snyk | 10 +++++++ sails/webnified-app/package.json | 48 +++++++++++++++++--------------- 2 files changed, 36 insertions(+), 22 deletions(-) create mode 100644 sails/webnified-app/.snyk diff --git a/sails/webnified-app/.snyk b/sails/webnified-app/.snyk new file mode 100644 index 0000000..bde8396 --- /dev/null +++ b/sails/webnified-app/.snyk @@ -0,0 +1,10 @@ +# Snyk (https://snyk.io) policy file, patches or ignores known vulnerabilities. +version: v1.25.1 +ignore: {} +# patches apply the minimum changes required to fix a vulnerability +patch: + 'npm:minimatch:20160620': + - sails > glob > minimatch: + patched: '2024-09-08T23:29:53.588Z' + id: 'npm:minimatch:20160620' + path: sails > glob > minimatch diff --git a/sails/webnified-app/package.json b/sails/webnified-app/package.json index 282609a..85170ad 100644 --- a/sails/webnified-app/package.json +++ b/sails/webnified-app/package.json @@ -1,24 +1,28 @@ { - "name": "webnified-app", - "private": true, - "version": "0.1.3", - "description": "a Sails application", - "dependencies": { - "sails": "0.9.8", - "grunt": "0.4.1", - "sails-disk": "~0.9.0", - "ejs": "0.8.4", - "optimist": "0.3.4", - "mailchimp-api": "2.0.4", - "winston": "0.7.3", - "winston-papertrail": "0.1.4" - }, - "scripts": { - "start": "node app.js", - "debug": "node debug app.js" - }, - "main": "app.js", - "repository": "", - "author": "", - "license": "" + "name": "webnified-app", + "private": true, + "version": "0.1.3", + "description": "a Sails application", + "dependencies": { + "sails": "1.5.11", + "grunt": "0.4.1", + "sails-disk": "~0.9.0", + "ejs": "0.8.4", + "optimist": "0.3.4", + "mailchimp-api": "2.0.4", + "winston": "0.7.3", + "winston-papertrail": "0.1.4", + "@snyk/protect": "latest" + }, + "scripts": { + "start": "node app.js", + "debug": "node debug app.js", + "prepublish": "npm run snyk-protect", + "snyk-protect": "snyk-protect" + }, + "main": "app.js", + "repository": "", + "author": "", + "license": "", + "snyk": true } \ No newline at end of file