diff --git a/package.json b/package.json index c399c3afe..2d61902cd 100644 --- a/package.json +++ b/package.json @@ -37,7 +37,7 @@ "react-router-dom": "5.1.2", "react-scripts": "3.2.0", "react-sound": "1.2.0", - "snyk": "1.230.5", + "snyk": "1.230.8", "socket.io-client": "2.3.0", "superagent": "5.1.0", "typeface-roboto": "0.0.75", diff --git a/yarn.lock b/yarn.lock index 7804af66c..e4164194c 100644 --- a/yarn.lock +++ b/yarn.lock @@ -1372,10 +1372,10 @@ dependencies: tslib "^1.9.3" -"@snyk/cocoapods-lockfile-parser@2.0.2": - version "2.0.2" - resolved "https://registry.yarnpkg.com/@snyk/cocoapods-lockfile-parser/-/cocoapods-lockfile-parser-2.0.2.tgz#6a3c236483d1c952f40a6d46f290e967235f7f19" - integrity sha512-DSSlljXGhSECdx7KhK7QlBiGC82fM2dZMzhcWxOsqyUVqzjArRGS9i4CRl/WMK5WDlLgc5bn5Xmpmp/g5Hf9YQ== +"@snyk/cocoapods-lockfile-parser@2.0.4": + version "2.0.4" + resolved "https://registry.yarnpkg.com/@snyk/cocoapods-lockfile-parser/-/cocoapods-lockfile-parser-2.0.4.tgz#296421454ba2ee9248ce1f13da57aa1b10b54de7" + integrity sha512-d57bajPjqCiNXMuyMmt9Zt98zbjABZUFw+91B705flzV6oB7OThgtA40Eoin6iatYoStIx28bC3T6b0mScy/iA== dependencies: "@snyk/dep-graph" "^1.11.0" "@snyk/ruby-semver" "^2.0.4" @@ -1428,13 +1428,13 @@ dependencies: lodash "^4.17.14" -"@snyk/snyk-cocoapods-plugin@1.0.2": - version "1.0.2" - resolved "https://registry.yarnpkg.com/@snyk/snyk-cocoapods-plugin/-/snyk-cocoapods-plugin-1.0.2.tgz#2d9012fc2be35917f8225b50da83635330fbb59a" - integrity sha512-eb8cawvz2vDLg/DRyzDDgv7+oZhsojNXxF8anX2Iq4ws8GZjd9CrMMMaSU7QehcT4h7jH5ITzbB1HOp+XHm3rw== +"@snyk/snyk-cocoapods-plugin@1.0.3": + version "1.0.3" + resolved "https://registry.yarnpkg.com/@snyk/snyk-cocoapods-plugin/-/snyk-cocoapods-plugin-1.0.3.tgz#eb685590e6a478e1d86f1042c9493426f2f9764a" + integrity sha512-AHAA7z23nPi1eHODsDxeSkl73Ze3yphuqJjMl39ie323EzBDcb9g6uAACrk0Qn2K/K2D8uyxMAf2zDtc+JGQfw== dependencies: "@snyk/cli-interface" "1.5.0" - "@snyk/cocoapods-lockfile-parser" "2.0.2" + "@snyk/cocoapods-lockfile-parser" "2.0.4" "@snyk/dep-graph" "1.13.0" source-map-support "^0.5.7" tslib "^1.9.3" @@ -5761,9 +5761,10 @@ https-browserify@^1.0.0: resolved "https://registry.yarnpkg.com/https-browserify/-/https-browserify-1.0.0.tgz#ec06c10e0a34c0f2faf199f7fd7fc78fffd03c73" integrity sha1-7AbBDgo0wPL68Zn3/X/Hj//QPHM= -"https-proxy-agent-snyk-fork@git://github.com/snyk/node-https-proxy-agent#fix/https-agent-vuln": - version "2.2.2-fixed-mitm-vuln" - resolved "git://github.com/snyk/node-https-proxy-agent#5e86ccb682d0c833c8daa25ee6f91c670161cd66" +https-proxy-agent@^2.2.1: + version "2.2.2" + resolved "https://registry.yarnpkg.com/https-proxy-agent/-/https-proxy-agent-2.2.2.tgz#271ea8e90f836ac9f119daccd39c19ff7dfb0793" + integrity sha512-c8Ndjc9Bkpfx/vCJueCPy0jlP4ccCCSNDp8xwCZzPjKJUm+B+u9WX2x98Qx4n1PiMNTWo3D7KK5ifNV/yJyRzg== dependencies: agent-base "^4.3.0" debug "^3.1.0" @@ -8361,15 +8362,16 @@ p-try@^2.0.0: resolved "https://registry.yarnpkg.com/p-try/-/p-try-2.2.0.tgz#cb2868540e313d61de58fafbe35ce9004d5540e6" integrity sha512-R4nPAVTAU0B9D35/Gk3uJf/7XYbQcyohSKdvAxIRSNghFl4e71hVoGnBNQz9cWaXxO2I10KTC+3jMdvvoKw6dQ== -"pac-proxy-agent@git://github.com/snyk/node-pac-proxy-agent.git#fix/https-proxy-agent-vuln": +pac-proxy-agent@^3.0.0: version "3.0.0" - resolved "git://github.com/snyk/node-pac-proxy-agent.git#e962ea0fe8db650a55e349e1b422e3ac99bfe451" + resolved "https://registry.yarnpkg.com/pac-proxy-agent/-/pac-proxy-agent-3.0.0.tgz#11d578b72a164ad74bf9d5bac9ff462a38282432" + integrity sha512-AOUX9jES/EkQX2zRz0AW7lSx9jD//hQS8wFXBvcnd/J2Py9KaMJMqV/LPqJssj1tgGufotb2mmopGPR15ODv1Q== dependencies: agent-base "^4.2.0" debug "^3.1.0" get-uri "^2.0.0" http-proxy-agent "^2.1.0" - https-proxy-agent-snyk-fork "git://github.com/snyk/node-https-proxy-agent#fix/https-agent-vuln" + https-proxy-agent "^2.2.1" pac-resolver "^3.0.0" raw-body "^2.2.0" socks-proxy-agent "^4.0.1" @@ -9446,16 +9448,17 @@ proxy-addr@~2.0.5: forwarded "~0.1.2" ipaddr.js "1.9.0" -"proxy-agent@git://github.com/snyk/node-proxy-agent.git#fix/https-agent-vuln": +proxy-agent@*: version "3.1.0" - resolved "git://github.com/snyk/node-proxy-agent.git#c25ef74cbe593a4d60a71ff3053466e4b3171711" + resolved "https://registry.yarnpkg.com/proxy-agent/-/proxy-agent-3.1.0.tgz#3cf86ee911c94874de4359f37efd9de25157c113" + integrity sha512-IkbZL4ClW3wwBL/ABFD2zJ8iP84CY0uKMvBPk/OceQe/cEjrxzN1pMHsLwhbzUoRhG9QbSxYC+Z7LBkTiBNvrA== dependencies: agent-base "^4.2.0" debug "^3.1.0" http-proxy-agent "^2.1.0" - https-proxy-agent-snyk-fork "git://github.com/snyk/node-https-proxy-agent#fix/https-agent-vuln" + https-proxy-agent "^2.2.1" lru-cache "^4.1.2" - pac-proxy-agent "git://github.com/snyk/node-pac-proxy-agent.git#fix/https-proxy-agent-vuln" + pac-proxy-agent "^3.0.0" proxy-from-env "^1.0.0" socks-proxy-agent "^4.0.1" @@ -10795,15 +10798,15 @@ snyk-try-require@1.3.1, snyk-try-require@^1.1.1, snyk-try-require@^1.3.1: lru-cache "^4.0.0" then-fs "^2.0.0" -snyk@1.230.5: - version "1.230.5" - resolved "https://registry.yarnpkg.com/snyk/-/snyk-1.230.5.tgz#d47a012af6facefe05065c935afe332b5ea889de" - integrity sha512-kzy6FHMyneVXcezBVO0xRbEDSZSPj9Z/fDH4HFwOm5cpm/HErQ8B86fO6KtfSNIsruWUFcobEzP1q41nOdleAQ== +snyk@1.230.8: + version "1.230.8" + resolved "https://registry.yarnpkg.com/snyk/-/snyk-1.230.8.tgz#57eb910be770b8da1eef33cbf8a8355b49907e68" + integrity sha512-pTj/GZMNrY/ML0C5fqD/bK560CYDbVx+LIMspFUCbVxpaFbc4oqfIvKLanDO4uUXUI5fuWcNVGQvYd6TT91GAQ== dependencies: "@snyk/cli-interface" "^2.0.3" "@snyk/dep-graph" "1.12.0" "@snyk/gemfile" "1.2.0" - "@snyk/snyk-cocoapods-plugin" "1.0.2" + "@snyk/snyk-cocoapods-plugin" "1.0.3" "@types/agent-base" "^4.2.0" "@types/restify" "^4.3.6" abbrev "^1.1.1" @@ -10819,7 +10822,7 @@ snyk@1.230.5: needle "^2.2.4" opn "^5.5.0" os-name "^3.0.0" - proxy-agent "git://github.com/snyk/node-proxy-agent.git#fix/https-agent-vuln" + proxy-agent "*" proxy-from-env "^1.0.0" semver "^6.0.0" snyk-config "^2.2.1"