From b0162d647d8412277b8d726a7341c886ab7109c0 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 27 Apr 2023 22:45:54 +0000 Subject: [PATCH] fix: node_modules/define-properties/package.json & node_modules/define-properties/.snyk to reduce vulnerabilities The following vulnerabilities are fixed with a Snyk patch: - https://snyk.io/vuln/npm:lodash:20180130 --- node_modules/define-properties/.snyk | 14 ++++++++++++++ node_modules/define-properties/package.json | 10 +++++++--- 2 files changed, 21 insertions(+), 3 deletions(-) create mode 100644 node_modules/define-properties/.snyk diff --git a/node_modules/define-properties/.snyk b/node_modules/define-properties/.snyk new file mode 100644 index 0000000000..01a15b830c --- /dev/null +++ b/node_modules/define-properties/.snyk @@ -0,0 +1,14 @@ +# Snyk (https://snyk.io) policy file, patches or ignores known vulnerabilities. +version: v1.25.0 +ignore: {} +# patches apply the minimum changes required to fix a vulnerability +patch: + 'npm:lodash:20180130': + - jscs > lodash: + patched: '2023-04-27T22:45:52.868Z' + - jscs > xmlbuilder > lodash: + patched: '2023-04-27T22:45:52.868Z' + - nsp > cli-table2 > lodash: + patched: '2023-04-27T22:45:52.868Z' + - jscs > jscs-jsdoc > jsdoctypeparser > lodash: + patched: '2023-04-27T22:45:52.868Z' diff --git a/node_modules/define-properties/package.json b/node_modules/define-properties/package.json index 06d4ccdeb8..5ebe1b2906 100644 --- a/node_modules/define-properties/package.json +++ b/node_modules/define-properties/package.json @@ -15,7 +15,9 @@ "lint": "npm run --silent jscs && npm run --silent eslint", "jscs": "jscs test/*.js *.js", "eslint": "eslint test/*.js *.js", - "security": "nsp check" + "security": "nsp check", + "prepublish": "npm run snyk-protect", + "snyk-protect": "snyk-protect" }, "repository": { "type": "git", @@ -31,7 +33,8 @@ "ES5" ], "dependencies": { - "object-keys": "^1.0.12" + "object-keys": "^1.0.12", + "@snyk/protect": "latest" }, "devDependencies": { "@ljharb/eslint-config": "^13.0.0", @@ -61,5 +64,6 @@ }, "engines": { "node": ">= 0.4" - } + }, + "snyk": true } \ No newline at end of file