From 50b0f25f936e27813aa1d1c42bad05f7b3f9280d Mon Sep 17 00:00:00 2001 From: Daniel Cassidy Date: Fri, 19 Jul 2019 04:51:00 +0100 Subject: [PATCH] fix(deps): move snyk to devDependencies --- package.json | 6 +-- yarn.lock | 113 +++++++++++++++++++++++++++++++++------------------ 2 files changed, 76 insertions(+), 43 deletions(-) diff --git a/package.json b/package.json index e343e690..32cae529 100644 --- a/package.json +++ b/package.json @@ -25,7 +25,8 @@ "cz-conventional-changelog": "2.1.0", "semantic-release": "15.13.18", "tslint": "5.18.0", - "typescript": "3.5.3" + "typescript": "3.5.3", + "snyk": "1.189.0" }, "peerDependencies": { "ts-loader": "^5.3.2 || ^6.0.0", @@ -47,8 +48,7 @@ "mini-css-extract-plugin": "^0.8.0", "postcss-loader": "^3.0.0", "style-loader": "^0.23.1", - "uglifyjs-webpack-plugin": "^2.1.1", - "snyk": "^1.189.0" + "uglifyjs-webpack-plugin": "^2.1.1" }, "config": { "commitizen": { diff --git a/yarn.lock b/yarn.lock index 544fba31..54453ec9 100644 --- a/yarn.lock +++ b/yarn.lock @@ -138,20 +138,20 @@ into-stream "^4.0.0" lodash "^4.17.4" -"@snyk/composer-lockfile-parser@1.0.3": - version "1.0.3" - resolved "https://registry.yarnpkg.com/@snyk/composer-lockfile-parser/-/composer-lockfile-parser-1.0.3.tgz#4b703883ec36f3cec63c64355031e06698c771f5" - integrity sha512-hb+6E7kMzWlcwfe//ILDoktBPKL2a3+RnJT/CXnzRXaiLQpsdkf5li4q2v0fmvd+4v7L3tTN8KM+//lJyviEkg== +"@snyk/composer-lockfile-parser@1.0.2": + version "1.0.2" + resolved "https://registry.yarnpkg.com/@snyk/composer-lockfile-parser/-/composer-lockfile-parser-1.0.2.tgz#d748e56076bc1c25b130c1f13ed705fa285a1994" + integrity sha512-kFzMajJLgWYsRTD+j1B79RckP1nYolM3UU9wJAo6VjvaBJ1R8E6IXmz0lEJBwK2zXM4EPrgk41ZqmoQS3hselQ== dependencies: - lodash "^4.17.13" + lodash "4.17.11" -"@snyk/dep-graph@1.10.0": - version "1.10.0" - resolved "https://registry.yarnpkg.com/@snyk/dep-graph/-/dep-graph-1.10.0.tgz#1080b08d53f03a5ef2e9def878586ac1bb20600c" - integrity sha512-QwQTmmnVb1mjAffGsjKKrwit8ahLWyhlKWQcTVZo9UXFgWAwiuCjTXKAXhijZjGvrXQzNf5KbIBu+SZ1Dq2toQ== +"@snyk/dep-graph@1.8.1": + version "1.8.1" + resolved "https://registry.yarnpkg.com/@snyk/dep-graph/-/dep-graph-1.8.1.tgz#4286dc42f691e826c4779a77722e7ac7fa692420" + integrity sha512-cWqJwuiU1+9hL0Fd/qgq0DYeWM/6mqPIa/B0yoEsHD8nR/IPFgalVvMbOSdPKeApvi/AxDzcRxr8tfqHJ7aq2w== dependencies: graphlib "^2.1.5" - lodash "^4.7.14" + lodash "^4" object-hash "^1.3.1" semver "^6.0.0" source-map-support "^0.5.11" @@ -942,6 +942,11 @@ chardet@^0.7.0: resolved "https://registry.yarnpkg.com/chardet/-/chardet-0.7.0.tgz#90094849f0937f2eedc2425d0d28a9e5f0cbad9e" integrity sha512-mT8iDcrh03qDGRRmoA2hmBJnxpllMR+0/0qlzjqZES6NdiWDcZkCNAk4rPFZ9Q85r27unkiNNg8ZOiwZXBHwcA== +child_process@1.0.2: + version "1.0.2" + resolved "https://registry.yarnpkg.com/child_process/-/child_process-1.0.2.tgz#b1f7e7fc73d25e7fd1d455adc94e143830182b5a" + integrity sha1-sffn/HPSXn/R1FWtyU4UODAYK1o= + chownr@^1.0.1, chownr@^1.1.1: version "1.1.1" resolved "https://registry.yarnpkg.com/chownr/-/chownr-1.1.1.tgz#54726b8b8fff4df053c42187e801fb4412df1494" @@ -2332,6 +2337,11 @@ fs.realpath@^1.0.0: resolved "https://registry.yarnpkg.com/fs.realpath/-/fs.realpath-1.0.0.tgz#1504ad2523158caa40db4a2787cb01411994ea4f" integrity sha1-FQStJSMVjKpA20onh8sBQRmU6k8= +fs@0.0.1-security: + version "0.0.1-security" + resolved "https://registry.yarnpkg.com/fs/-/fs-0.0.1-security.tgz#8a7bd37186b6dddf3813f23858b57ecaaf5e41d4" + integrity sha1-invTcYa23d84E/I4WLV+yq9eQdQ= + fstream@^1.0.0, fstream@^1.0.2: version "1.0.12" resolved "https://registry.yarnpkg.com/fstream/-/fstream-1.0.12.tgz#4e8ba8ee2d48be4f7d0de505455548eae5932045" @@ -2885,7 +2895,7 @@ inherits@2, inherits@2.0.4, inherits@^2.0.3, inherits@~2.0.1, inherits@~2.0.3: resolved "https://registry.yarnpkg.com/inherits/-/inherits-2.0.4.tgz#0fa2c64f932917c3433a0ded55363aae37416b7c" integrity sha512-k/vGaX4/Yla3WzyMCvTQOXYeIHvqOKtnqBduzTHpzpQZzAskKMhZ2K+EnBiSM9zGSoIFeMpXKxa4dYeZIQqewQ== -inherits@^2.0.1, inherits@~2.0.0: +inherits@2.0.3, inherits@^2.0.1, inherits@~2.0.0: version "2.0.3" resolved "https://registry.yarnpkg.com/inherits/-/inherits-2.0.3.tgz#633c2c83e3da42a502f52466022480f4208261de" integrity sha1-Yzwsg+PaQqUC9SRmAiSA9CCCYd4= @@ -3710,16 +3720,16 @@ lodash.without@~4.4.0: resolved "https://registry.yarnpkg.com/lodash.without/-/lodash.without-4.4.0.tgz#3cd4574a00b67bae373a94b748772640507b7aac" integrity sha1-PNRXSgC2e643OpS3SHcmQFB7eqw= -lodash@^4.17.10, lodash@^4.17.11, lodash@^4.17.12, lodash@^4.17.13, lodash@^4.17.14, lodash@^4.17.5, lodash@^4.7.14: - version "4.17.15" - resolved "https://registry.yarnpkg.com/lodash/-/lodash-4.17.15.tgz#b447f6670a0455bbfeedd11392eff330ea097548" - integrity sha512-8xOcRHvCjnocdS5cpwXQXVzmmh5e5+saE2QGoeQmbKmRS6J3VQppPOIt0MnmE+4xlZoumy0GPG0D0MVIQbNA1A== - -lodash@^4.17.3, lodash@^4.17.4, lodash@^4.2.1: +lodash@4.17.11, lodash@^4.17.3, lodash@^4.17.4, lodash@^4.2.1: version "4.17.11" resolved "https://registry.yarnpkg.com/lodash/-/lodash-4.17.11.tgz#b39ea6229ef607ecd89e2c8df12536891cac9b8d" integrity sha512-cQKh8igo5QUhZ7lg38DYWAxMvjSAKG0A8wGSVimP07SIUEK2UO+arSRKbRZWtelMtN5V0Hkwh5ryOto/SshYIg== +lodash@^4, lodash@^4.17.10, lodash@^4.17.11, lodash@^4.17.12, lodash@^4.17.14, lodash@^4.17.5: + version "4.17.15" + resolved "https://registry.yarnpkg.com/lodash/-/lodash-4.17.15.tgz#b447f6670a0455bbfeedd11392eff330ea097548" + integrity sha512-8xOcRHvCjnocdS5cpwXQXVzmmh5e5+saE2QGoeQmbKmRS6J3VQppPOIt0MnmE+4xlZoumy0GPG0D0MVIQbNA1A== + longest@^1.0.1: version "1.0.1" resolved "https://registry.yarnpkg.com/longest/-/longest-1.0.1.tgz#30a0b2da38f73770e8294a0d22e6625ed77d0097" @@ -4959,6 +4969,14 @@ path-type@^3.0.0: dependencies: pify "^3.0.0" +path@0.12.7: + version "0.12.7" + resolved "https://registry.yarnpkg.com/path/-/path-0.12.7.tgz#d4dc2a506c4ce2197eb481ebfcd5b36c0140b10f" + integrity sha1-1NwqUGxM4hl+tIHr/NWzbAFAsQ8= + dependencies: + process "^0.11.1" + util "^0.10.3" + performance-now@^2.1.0: version "2.1.0" resolved "https://registry.yarnpkg.com/performance-now/-/performance-now-2.1.0.tgz#6309f4e0e5fa913ec1c69307ae364b4b377c9e7b" @@ -5373,6 +5391,11 @@ process-nextick-args@~2.0.0: resolved "https://registry.yarnpkg.com/process-nextick-args/-/process-nextick-args-2.0.1.tgz#7820d9b16120cc55ca9ae7792680ae7dba6d7fe2" integrity sha512-3ouUOpQhtgrbOa17J7+uxOTpITYWaGP7/AhoR3+A+/1e9skrzelGi/dXzEYyvbxubEF6Wn2ypscTKiKJFFn1ag== +process@^0.11.1: + version "0.11.10" + resolved "https://registry.yarnpkg.com/process/-/process-0.11.10.tgz#7332300e840161bda3e69a1d1d91a7d4bc16f182" + integrity sha1-czIwDoQBYb2j5podHZGn1LwW8YI= + promise-inflight@^1.0.1, promise-inflight@~1.0.1: version "1.0.1" resolved "https://registry.yarnpkg.com/promise-inflight/-/promise-inflight-1.0.1.tgz#98472870bf228132fcbdd868129bad12c3c029e3" @@ -6229,12 +6252,12 @@ snyk-module@1.9.1, snyk-module@^1.6.0, snyk-module@^1.9.1: debug "^3.1.0" hosted-git-info "^2.7.1" -snyk-mvn-plugin@2.3.1: - version "2.3.1" - resolved "https://registry.yarnpkg.com/snyk-mvn-plugin/-/snyk-mvn-plugin-2.3.1.tgz#5897dd56c1aa8042158106813025825df749bd23" - integrity sha512-2RgBnYe3Upc7SL+sL7MmnoCoJV/TZZ7q2L0J1BAbjoD/4cca4q0TCR6QVLzytHf4fSqc6QjSMjTUfmAo0kgsBg== +snyk-mvn-plugin@2.3.0: + version "2.3.0" + resolved "https://registry.yarnpkg.com/snyk-mvn-plugin/-/snyk-mvn-plugin-2.3.0.tgz#a76cfc0041ecc4333f2c6f6f72138f1e4621da24" + integrity sha512-LOSiJu+XUPVqKCXcnQPLhlyTGm3ikDwjvYw5fpiEnvjMWkMDd8IfzZqulqreebJDmadUpP7Cn0fabfx7TszqxA== dependencies: - lodash "^4.17.13" + lodash "4.17.11" tslib "1.9.3" snyk-nodejs-lockfile-parser@1.13.0: @@ -6267,12 +6290,12 @@ snyk-paket-parser@1.4.3: dependencies: tslib "^1.9.3" -snyk-php-plugin@1.6.3: - version "1.6.3" - resolved "https://registry.yarnpkg.com/snyk-php-plugin/-/snyk-php-plugin-1.6.3.tgz#a47ff8d8e46edc709a9e90d25f9dad44e2c64178" - integrity sha512-S9GAVnL2ieaS/wvhq+ywUDrOlt477+em//XkqIqdJEFNUgFyxwrXjQgB0paehP8PBQQ+RySIV/MMgIFb3+6IwA== +snyk-php-plugin@1.6.2: + version "1.6.2" + resolved "https://registry.yarnpkg.com/snyk-php-plugin/-/snyk-php-plugin-1.6.2.tgz#f5ad6f081d2afc6dfc496cbce68165bdcd2e87ed" + integrity sha512-6QM7HCmdfhuXSNGFgNOVC+GVT1Y2UfBoO+TAeV1uM1CdRGPJziz12F79a1Qyc9YGuiAwmm5DtdatUgKraC8gdA== dependencies: - "@snyk/composer-lockfile-parser" "1.0.3" + "@snyk/composer-lockfile-parser" "1.0.2" snyk-policy@1.13.5: version "1.13.5" @@ -6325,11 +6348,14 @@ snyk-resolve@1.0.1, snyk-resolve@^1.0.0, snyk-resolve@^1.0.1: debug "^3.1.0" then-fs "^2.0.0" -snyk-sbt-plugin@2.5.7: - version "2.5.7" - resolved "https://registry.yarnpkg.com/snyk-sbt-plugin/-/snyk-sbt-plugin-2.5.7.tgz#fb127619630906a081bbf2a75ea13b1141fd4906" - integrity sha512-nVGsYq/EZfSFzKaXJvUTqaf9phH5+EgZNN3ynN9Y54EO8Lh4Dljnd/gBIQzxHMI2joQDH4FMB3ojDZeiCkeQ1Q== +snyk-sbt-plugin@2.5.2: + version "2.5.2" + resolved "https://registry.yarnpkg.com/snyk-sbt-plugin/-/snyk-sbt-plugin-2.5.2.tgz#d04ef61b83e34a8e835d5045ffc3e5560b9abbe7" + integrity sha512-2PNxLpTmazSArZlDTTF72lG7kXStHcqQsTaFRulU5InelAbI9GGK1/taI++qbdMhHjxRUKuYMsXyttxIBfSQTg== dependencies: + child_process "1.0.2" + fs "0.0.1-security" + path "0.12.7" semver "^6.1.2" tmp "^0.1.0" tree-kill "^1.2.1" @@ -6351,12 +6377,12 @@ snyk-try-require@1.3.1, snyk-try-require@^1.1.1, snyk-try-require@^1.3.1: lru-cache "^4.0.0" then-fs "^2.0.0" -snyk@^1.189.0: - version "1.194.0" - resolved "https://registry.yarnpkg.com/snyk/-/snyk-1.194.0.tgz#caf93b549bee9e3b9e6cf051143d58963ffd57d6" - integrity sha512-wcon9W88WkjRBtlSTBVBkUqdelbu/1Af2Hy5KLh7Cq2QYfkGoyc7M0FgxVhMTN1nlL5BWG8CsK8Rr++h12aMPA== +snyk@1.189.0: + version "1.189.0" + resolved "https://registry.yarnpkg.com/snyk/-/snyk-1.189.0.tgz#62c7e84f83231c60d318841cdbb49efa4928a351" + integrity sha512-oaWsFAoRlpAOaUBCyskHtxdMMXeOG0PS8dzo3fmUmMbLzfDY7ZqvX8nLe2ALrKa+QRZshbrGy62107LoAksEYQ== dependencies: - "@snyk/dep-graph" "1.10.0" + "@snyk/dep-graph" "1.8.1" "@snyk/gemfile" "1.2.0" "@types/agent-base" "^4.2.0" abbrev "^1.1.1" @@ -6368,7 +6394,7 @@ snyk@^1.189.0: git-url-parse "11.1.2" glob "^7.1.3" inquirer "^6.2.2" - lodash "^4.17.14" + lodash "^4.17.11" needle "^2.2.4" opn "^5.5.0" os-name "^3.0.0" @@ -6380,15 +6406,15 @@ snyk@^1.189.0: snyk-go-plugin "1.10.2" snyk-gradle-plugin "2.12.5" snyk-module "1.9.1" - snyk-mvn-plugin "2.3.1" + snyk-mvn-plugin "2.3.0" snyk-nodejs-lockfile-parser "1.13.0" snyk-nuget-plugin "1.10.0" - snyk-php-plugin "1.6.3" + snyk-php-plugin "1.6.2" snyk-policy "1.13.5" snyk-python-plugin "1.10.2" snyk-resolve "1.0.1" snyk-resolve-deps "4.0.3" - snyk-sbt-plugin "2.5.7" + snyk-sbt-plugin "2.5.2" snyk-tree "^1.0.0" snyk-try-require "1.3.1" source-map-support "^0.5.11" @@ -7278,6 +7304,13 @@ util.promisify@1.0.0, util.promisify@~1.0.0: define-properties "^1.1.2" object.getownpropertydescriptors "^2.0.3" +util@^0.10.3: + version "0.10.4" + resolved "https://registry.yarnpkg.com/util/-/util-0.10.4.tgz#3aa0125bfe668a4672de58857d3ace27ecb76901" + integrity sha512-0Pm9hTQ3se5ll1XihRic3FDIku70C+iHUdT/W926rSgHV5QgXsYbKZN8MSC3tJtSkhuROzvsQjAaFENRXr+19A== + dependencies: + inherits "2.0.3" + utila@^0.4.0, utila@~0.4: version "0.4.0" resolved "https://registry.yarnpkg.com/utila/-/utila-0.4.0.tgz#8a16a05d445657a3aea5eecc5b12a4fa5379772c"