From cfa784dfe2d0209882d9dfc7dc3f0b01e41d99b9 Mon Sep 17 00:00:00 2001 From: baldo Date: Thu, 21 Jul 2022 13:48:07 +0200 Subject: [PATCH] Trying to fix security issues by pinning dependencies of ng-admin --- package.json | 5 +++++ yarn.lock | 23 +++++++++-------------- 2 files changed, 14 insertions(+), 14 deletions(-) diff --git a/package.json b/package.json index 1416524..4476de3 100644 --- a/package.json +++ b/package.json @@ -103,6 +103,11 @@ "typescript": "^4.7.4", "yarn-audit-fix": "^9.3.2" }, + "resolutions": { + "ng-admin/**/angular": "~1.8.3", + "ng-admin/**/papaparse": "~5.3.2", + "ng-admin/**/underscore": "~1.13.4" + }, "engines": { "node": ">=16.0.0" } diff --git a/yarn.lock b/yarn.lock index fd2d7e7..ab90bdb 100644 --- a/yarn.lock +++ b/yarn.lock @@ -1129,16 +1129,11 @@ angular-ui-router@~0.4.0: dependencies: angular "^1.0.8" -angular@^1.0.8, angular@^1.3.14, angular@^1.8.0: +angular@^1.0.8, angular@^1.3.14, angular@^1.8.0, angular@~1.6.1, angular@~1.8.3: version "1.8.3" resolved "https://registry.yarnpkg.com/angular/-/angular-1.8.3.tgz#851ad75d5163c105a7e329555ef70c90aa706894" integrity sha512-5qjkWIQQVsHj4Sb5TcEs4WZWpFeVFHXwxEBHUhrny41D8UrBAd6T/6nPPAsLngJCReIOqi95W3mxdveveutpZw== -angular@~1.6.1: - version "1.6.10" - resolved "https://registry.yarnpkg.com/angular/-/angular-1.6.10.tgz#eed3080a34d29d0f681ff119b18ce294e3f74826" - integrity sha512-PCZ5/hVdvPQiYyH0VwsPjrErPHRcITnaXxhksceOXgtJeesKHLA7KDu4X/yvcAi+1zdGgGF+9pDxkJvghXI9Wg== - ansi-escapes@^4.2.1: version "4.3.2" resolved "https://registry.yarnpkg.com/ansi-escapes/-/ansi-escapes-4.3.2.tgz#6b2291d1db7d98b6521d5f1efa42d0f3a9feb65e" @@ -5390,10 +5385,10 @@ pako@~0.2.0: resolved "https://registry.yarnpkg.com/pako/-/pako-0.2.9.tgz#f3f7522f4ef782348da8161bad9ecfd51bf83a75" integrity sha1-8/dSL073gjSNqBYbrZ7P1Rv4OnU= -papaparse@^4.1.1: - version "4.6.3" - resolved "https://registry.yarnpkg.com/papaparse/-/papaparse-4.6.3.tgz#742e5eaaa97fa6c7e1358d2934d8f18f44aee781" - integrity sha512-LRq7BrHC2kHPBYSD50aKuw/B/dGcg29omyJbKWY3KsYUZU69RKwaBHu13jGmCYBtOc4odsLCrFyk6imfyNubJQ== +papaparse@^4.1.1, papaparse@~5.3.2: + version "5.3.2" + resolved "https://registry.yarnpkg.com/papaparse/-/papaparse-5.3.2.tgz#d1abed498a0ee299f103130a6109720404fbd467" + integrity sha512-6dNZu0Ki+gyV0eBsFKJhYr+MdQYAzFUGlBMNj3GNrmHxmz1lfRa24CjFObPXtjcetlOv5Ad299MhIK0znp3afw== param-case@^2.1.1: version "2.1.1" @@ -6948,10 +6943,10 @@ underscore.string@~3.3.5: sprintf-js "^1.1.1" util-deprecate "^1.0.2" -underscore@~1.6.0: - version "1.6.0" - resolved "https://registry.yarnpkg.com/underscore/-/underscore-1.6.0.tgz#8b38b10cacdef63337b8b24e4ff86d45aea529a8" - integrity sha512-z4o1fvKUojIWh9XuaVLUDdf86RQiq13AC1dmHbTpoyuu+bquHms76v16CjycCbec87J7z0k//SiQVk0sMdFmpQ== +underscore@~1.13.4, underscore@~1.6.0: + version "1.13.4" + resolved "https://registry.yarnpkg.com/underscore/-/underscore-1.13.4.tgz#7886b46bbdf07f768e0052f1828e1dcab40c0dee" + integrity sha512-BQFnUDuAQ4Yf/cYY5LNrK9NCJFKriaRbD9uR1fTeXnBeoa97W0i41qkZfGO9pSo8I5KzjAcSY2XYtdf0oKd7KQ== unique-filename@^1.1.1: version "1.1.1"