From effa5c4b14d3b9cad401eb2115a8f76e5b1f4da9 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sat, 14 Mar 2020 01:18:14 +0000 Subject: [PATCH] fix: package.json & yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-MINIMIST-559764 --- package.json | 2 +- yarn.lock | 5 +++++ 2 files changed, 6 insertions(+), 1 deletion(-) diff --git a/package.json b/package.json index d964689..7ffbf0a 100644 --- a/package.json +++ b/package.json @@ -57,7 +57,7 @@ "babel-register": "^6.18.0", "chalk": "^1.1.3", "liftoff": "^2.3.0", - "minimist": "^1.2.0", + "minimist": "^1.2.2", "stream-to-promise": "^2.2.0", "subdir": "^0.0.3", "tildify": "^1.2.0", diff --git a/yarn.lock b/yarn.lock index 17490f8..bbe303a 100644 --- a/yarn.lock +++ b/yarn.lock @@ -2207,6 +2207,11 @@ minimist@1.2.0, minimist@^1.1.1, minimist@^1.2.0: version "1.2.0" resolved "https://registry.yarnpkg.com/minimist/-/minimist-1.2.0.tgz#a35008b20f41383eec1fb914f4cd5df79a264284" +minimist@^1.2.2: + version "1.2.5" + resolved "https://registry.yarnpkg.com/minimist/-/minimist-1.2.5.tgz#67d66014b66a6a8aaa0c083c5fd58df4e4e97602" + integrity sha512-FM9nNUYrRBAELZQT3xeZQ7fmMOBg6nWNmJKTcgsJeaLstP/UODVpGsr5OhXhhXg6f+qtJ8uiZ+PUxkDWcgIXLw== + mkdirp@0.5.x, "mkdirp@>=0.5 0", mkdirp@^0.5.0, mkdirp@^0.5.1, mkdirp@~0.5.1: version "0.5.1" resolved "https://registry.yarnpkg.com/mkdirp/-/mkdirp-0.5.1.tgz#30057438eac6cf7f8c4767f38648d6697d75c903"