From 248993a8ab12a07346120f8a16cd9479788805b6 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 5 May 2020 22:51:38 -0400 Subject: [PATCH 1/2] fix: .snyk & package.json to reduce vulnerabilities The following vulnerabilities are fixed with a Snyk patch: - https://snyk.io/vuln/SNYK-JS-LODASH-567746 --- .snyk | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/.snyk b/.snyk index 2477e28..6ed6620 100644 --- a/.snyk +++ b/.snyk @@ -1,8 +1,11 @@ # Snyk (https://snyk.io) policy file, patches or ignores known vulnerabilities. -version: v1.13.5 +version: v1.14.1 ignore: {} # patches apply the minimum changes required to fix a vulnerability patch: SNYK-JS-LODASH-450202: - request-promise > lodash: patched: '2019-07-10T02:51:34.504Z' + SNYK-JS-LODASH-567746: + - request-promise > lodash: + patched: '2020-05-06T02:51:36.997Z' From 8fec0d71b2d606b4adc0ae97c2007db4ced7472e Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 5 May 2020 22:51:39 -0400 Subject: [PATCH 2/2] fix: .snyk & package.json to reduce vulnerabilities The following vulnerabilities are fixed with a Snyk patch: - https://snyk.io/vuln/SNYK-JS-LODASH-567746 --- package.json | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/package.json b/package.json index 7e83251..57c92fe 100644 --- a/package.json +++ b/package.json @@ -7,7 +7,7 @@ "watch": "tsc-watch --onSuccess \"node ./index.js\"", "build": "tsc", "lint": "busbud-tslint", - "prepublish": "npm run snyk-protect; npm run build", + "prepublish": "yarn run snyk-protect; npm run build", "test": "npm run lint", "snyk-protect": "snyk protect" }, @@ -36,7 +36,7 @@ "request-promise": "3.0.0", "tsc-watch": "2.1.2", "urijs": "1.16.1", - "snyk": "^1.192.4" + "snyk": "^1.319.0" }, "devDependencies": { "@types/bluebird": "3.5.26",