Skip to content

Commit b75b2ba

Browse files
author
Peter Bengtsson
authored
check 'yarn audit' (#88)
* check 'yarn audit' * braces, handlebars, js-yaml * no name
1 parent 0142693 commit b75b2ba

File tree

3 files changed

+41
-125
lines changed

3 files changed

+41
-125
lines changed

.circleci/config.yml

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -30,6 +30,9 @@ jobs:
3030
name: Test
3131
command: yarn run test:ci
3232

33+
- run:
34+
command: yarn audit
35+
3336
lint:
3437
docker:
3538
# Image with python 3.6 and node 8

package.json

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -14,6 +14,11 @@
1414
"react-timeago": "4.4.0",
1515
"reactstrap": "8.0.0"
1616
},
17+
"resolutions": {
18+
"braces": ">=2.3.1",
19+
"handlebars": ">=4.0.13",
20+
"js-yaml": ">=3.13.0"
21+
},
1722
"scripts": {
1823
"analyze": "source-map-explorer build/static/js/main.*",
1924
"start": "react-scripts start",

yarn.lock

Lines changed: 33 additions & 125 deletions
Original file line numberDiff line numberDiff line change
@@ -1273,7 +1273,7 @@ arr-diff@^4.0.0:
12731273
resolved "https://registry.yarnpkg.com/arr-diff/-/arr-diff-4.0.0.tgz#d6461074febfec71e7e15235761a329a5dc7c520"
12741274
integrity sha1-1kYQdP6/7HHn4VI1dhoyml3HxSA=
12751275

1276-
arr-flatten@^1.0.1, arr-flatten@^1.1.0:
1276+
arr-flatten@^1.0.1:
12771277
version "1.1.0"
12781278
resolved "https://registry.yarnpkg.com/arr-flatten/-/arr-flatten-1.1.0.tgz#36048bbff4e7b47e136644316c99669ea5ae91f1"
12791279
integrity sha512-L3hKV5R/p5o81R7O02IGnwpDmkp6E982XhtbuwSe3O4qOtMMMtodicASA1Cny2U+aCXcNpml+m4dPsvsJ3jatg==
@@ -1411,7 +1411,7 @@ async@^1.5.2:
14111411
resolved "https://registry.yarnpkg.com/async/-/async-1.5.2.tgz#ec6a61ae56480c0c3cb241c95618e20892f9672a"
14121412
integrity sha1-7GphrlZIDAw8skHJVhjiCJL5Zyo=
14131413

1414-
async@^2.1.4, async@^2.5.0:
1414+
async@^2.1.4:
14151415
version "2.6.1"
14161416
resolved "https://registry.yarnpkg.com/async/-/async-2.6.1.tgz#b245a23ca71930044ec53fa46aa00a3e87c6a610"
14171417
integrity sha512-fNEiL2+AZt6AlAw/29Cr0UDe4sRAHCpEHh54WMz+Bb7QfNcFw4h3loofyJpLeQs4Yx7yuqu/2dLgM5hKOs6HlQ==
@@ -1826,30 +1826,12 @@ brace-expansion@^1.1.7:
18261826
balanced-match "^1.0.0"
18271827
concat-map "0.0.1"
18281828

1829-
braces@^1.8.2:
1830-
version "1.8.5"
1831-
resolved "https://registry.yarnpkg.com/braces/-/braces-1.8.5.tgz#ba77962e12dff969d6b76711e914b737857bf6a7"
1832-
integrity sha1-uneWLhLf+WnWt2cR6RS3N4V79qc=
1829+
braces@>=2.3.1, braces@^1.8.2, braces@^2.3.0, braces@^2.3.1:
1830+
version "3.0.1"
1831+
resolved "https://registry.yarnpkg.com/braces/-/braces-3.0.1.tgz#dd8f330ba1c895e39de73ec33e99275443ff0fed"
1832+
integrity sha512-Vmyh3JAr5DRUKCdRrC+WyAAsWBez8HLnBmVb6Ux2VYbvC8DjqMC228WHx24fiQG5BiDOVo+otK1scdkK5S6YNg==
18331833
dependencies:
1834-
expand-range "^1.8.1"
1835-
preserve "^0.2.0"
1836-
repeat-element "^1.1.2"
1837-
1838-
braces@^2.3.0, braces@^2.3.1:
1839-
version "2.3.2"
1840-
resolved "https://registry.yarnpkg.com/braces/-/braces-2.3.2.tgz#5979fd3f14cd531565e5fa2df1abfff1dfaee729"
1841-
integrity sha512-aNdbnj9P8PjdXU4ybaWLK2IF3jc/EoDYbC7AazW6to3TRsfXxscC9UXOB5iDiEQrkyIbWp2SLQda4+QAa7nc3w==
1842-
dependencies:
1843-
arr-flatten "^1.1.0"
1844-
array-unique "^0.3.2"
1845-
extend-shallow "^2.0.1"
1846-
fill-range "^4.0.0"
1847-
isobject "^3.0.1"
1848-
repeat-element "^1.1.2"
1849-
snapdragon "^0.8.1"
1850-
snapdragon-node "^2.0.1"
1851-
split-string "^3.0.2"
1852-
to-regex "^3.0.1"
1834+
fill-range "^7.0.1"
18531835

18541836
brorand@^1.0.1:
18551837
version "1.1.0"
@@ -3647,13 +3629,6 @@ expand-brackets@^2.1.4:
36473629
snapdragon "^0.8.1"
36483630
to-regex "^3.0.1"
36493631

3650-
expand-range@^1.8.1:
3651-
version "1.8.2"
3652-
resolved "https://registry.yarnpkg.com/expand-range/-/expand-range-1.8.2.tgz#a299effd335fe2721ebae8e257ec79644fc85337"
3653-
integrity sha1-opnv/TNf4nIeuujiV+x5ZE/IUzc=
3654-
dependencies:
3655-
fill-range "^2.1.0"
3656-
36573632
expect@^23.6.0:
36583633
version "23.6.0"
36593634
resolved "https://registry.yarnpkg.com/expect/-/expect-23.6.0.tgz#1e0c8d3ba9a581c87bd71fb9bc8862d443425f98"
@@ -3874,26 +3849,12 @@ [email protected]:
38743849
resolved "https://registry.yarnpkg.com/filesize/-/filesize-3.6.1.tgz#090bb3ee01b6f801a8a8be99d31710b3422bb317"
38753850
integrity sha512-7KjR1vv6qnicaPMi1iiTcI85CyYwRO/PSFCu6SvqL8jN2Wjt/NIYQTFtFs7fSDCYOstUkEWIQGFUg5YZQfjlcg==
38763851

3877-
fill-range@^2.1.0:
3878-
version "2.2.4"
3879-
resolved "https://registry.yarnpkg.com/fill-range/-/fill-range-2.2.4.tgz#eb1e773abb056dcd8df2bfdf6af59b8b3a936565"
3880-
integrity sha512-cnrcCbj01+j2gTG921VZPnHbjmdAf8oQV/iGeV2kZxGSyfYjjTyY79ErsK1WJWMpw6DaApEX72binqJE+/d+5Q==
3881-
dependencies:
3882-
is-number "^2.1.0"
3883-
isobject "^2.0.0"
3884-
randomatic "^3.0.0"
3885-
repeat-element "^1.1.2"
3886-
repeat-string "^1.5.2"
3887-
3888-
fill-range@^4.0.0:
3889-
version "4.0.0"
3890-
resolved "https://registry.yarnpkg.com/fill-range/-/fill-range-4.0.0.tgz#d544811d428f98eb06a63dc402d2403c328c38f7"
3891-
integrity sha1-1USBHUKPmOsGpj3EAtJAPDKMOPc=
3852+
fill-range@^7.0.1:
3853+
version "7.0.1"
3854+
resolved "https://registry.yarnpkg.com/fill-range/-/fill-range-7.0.1.tgz#1919a6a7c75fe38b2c7c77e5198535da9acdda40"
3855+
integrity sha512-qOo9F+dMUmC2Lcb4BbVvnKJxTPjCm+RRpe4gDuGrzkL7mEVl/djYSu2OdQ2Pa302N4oqkSg9ir6jaLWJ2USVpQ==
38923856
dependencies:
3893-
extend-shallow "^2.0.1"
3894-
is-number "^3.0.0"
3895-
repeat-string "^1.6.1"
3896-
to-regex-range "^2.1.0"
3857+
to-regex-range "^5.0.1"
38973858

38983859
38993860
version "1.1.1"
@@ -4286,12 +4247,12 @@ handle-thing@^2.0.0:
42864247
resolved "https://registry.yarnpkg.com/handle-thing/-/handle-thing-2.0.0.tgz#0e039695ff50c93fc288557d696f3c1dc6776754"
42874248
integrity sha512-d4sze1JNC454Wdo2fkuyzCr6aHcbL6PGGuFAz0Li/NcOm1tCHGnWDRmJP85dh9IhQErTc2svWFEX5xHIOo//kQ==
42884249

4289-
handlebars@^4.0.3:
4290-
version "4.0.12"
4291-
resolved "https://registry.yarnpkg.com/handlebars/-/handlebars-4.0.12.tgz#2c15c8a96d46da5e266700518ba8cb8d919d5bc5"
4292-
integrity sha512-RhmTekP+FZL+XNhwS1Wf+bTTZpdLougwt5pcgA1tuz6Jcx0fpH/7z0qd71RKnZHBCxIRBHfBOnio4gViPemNzA==
4250+
handlebars@>=4.0.13, handlebars@^4.0.3:
4251+
version "4.1.2"
4252+
resolved "https://registry.yarnpkg.com/handlebars/-/handlebars-4.1.2.tgz#b6b37c1ced0306b221e094fc7aca3ec23b131b67"
4253+
integrity sha512-nvfrjqvt9xQ8Z/w0ijewdD/vvWDTOweBUm96NTr66Wfvo1mJenBLwcYmPs3TIBP5ruzYGD7Hx/DaM9RmhroGPw==
42934254
dependencies:
4294-
async "^2.5.0"
4255+
neo-async "^2.6.0"
42954256
optimist "^0.6.1"
42964257
source-map "^0.6.1"
42974258
optionalDependencies:
@@ -5025,24 +4986,17 @@ is-glob@^4.0.0:
50254986
dependencies:
50264987
is-extglob "^2.1.1"
50274988

5028-
is-number@^2.1.0:
5029-
version "2.1.0"
5030-
resolved "https://registry.yarnpkg.com/is-number/-/is-number-2.1.0.tgz#01fcbbb393463a548f2f466cce16dece49db908f"
5031-
integrity sha1-Afy7s5NGOlSPL0ZszhbezknbkI8=
5032-
dependencies:
5033-
kind-of "^3.0.2"
5034-
50354989
is-number@^3.0.0:
50364990
version "3.0.0"
50374991
resolved "https://registry.yarnpkg.com/is-number/-/is-number-3.0.0.tgz#24fd6201a4782cf50561c810276afc7d12d71195"
50384992
integrity sha1-JP1iAaR4LPUFYcgQJ2r8fRLXEZU=
50394993
dependencies:
50404994
kind-of "^3.0.2"
50414995

5042-
is-number@^4.0.0:
5043-
version "4.0.0"
5044-
resolved "https://registry.yarnpkg.com/is-number/-/is-number-4.0.0.tgz#0026e37f5454d73e356dfe6564699867c6a7f0ff"
5045-
integrity sha512-rSklcAIlf1OmFdyAqbnWTLVelsQ58uvZ66S/ZyawjWqIviTWCjg2PzVGw8WUA+nNuPTqb4wgA+NszrJ+08LlgQ==
4996+
is-number@^7.0.0:
4997+
version "7.0.0"
4998+
resolved "https://registry.yarnpkg.com/is-number/-/is-number-7.0.0.tgz#7535345b896734d5f80c4d06c50955527a14f12b"
4999+
integrity sha512-41Cifkg6e8TylSpdtTpeLVMqvSBEVzTttHvERD741+pnZ8ANv0004MRL43QKPDlK9cGvNp6NZWZUBlbGXYxxng==
50465000

50475001
is-obj@^1.0.0, is-obj@^1.0.1:
50485002
version "1.0.1"
@@ -5631,10 +5585,10 @@ js-tokens@^3.0.2:
56315585
resolved "https://registry.yarnpkg.com/js-tokens/-/js-tokens-3.0.2.tgz#9866df395102130e38f7f996bceb65443209c25b"
56325586
integrity sha1-mGbfOVECEw449/mWvOtlRDIJwls=
56335587

5634-
js-yaml@^3.12.0, js-yaml@^3.7.0, js-yaml@^3.9.0:
5635-
version "3.12.1"
5636-
resolved "https://registry.yarnpkg.com/js-yaml/-/js-yaml-3.12.1.tgz#295c8632a18a23e054cf5c9d3cecafe678167600"
5637-
integrity sha512-um46hB9wNOKlwkHgiuyEVAybXBjwFUV0Z/RaHJblRd9DXltue9FTYvzCr9ErQrK9Adz5MU4gHWVaNUfdmrC8qA==
5588+
js-yaml@>=3.13.0, js-yaml@^3.12.0, js-yaml@^3.7.0, js-yaml@^3.9.0:
5589+
version "3.13.1"
5590+
resolved "https://registry.yarnpkg.com/js-yaml/-/js-yaml-3.13.1.tgz#aff151b30bfdfa8e49e05da22e7415e9dfa37847"
5591+
integrity sha512-YfbcO7jXDdyj0DGxYVSlSeQNHbD7XPWvrVWeVUujrQEoZzWJIRrCPoyk6kL6IAjAG2IolMK4T0hNUe0HOUs5Jw==
56385592
dependencies:
56395593
argparse "^1.0.7"
56405594
esprima "^4.0.0"
@@ -5788,7 +5742,7 @@ kind-of@^2.0.1:
57885742
dependencies:
57895743
is-buffer "^1.0.2"
57905744

5791-
kind-of@^3.0.2, kind-of@^3.0.3, kind-of@^3.2.0:
5745+
kind-of@^3.0.2, kind-of@^3.0.3:
57925746
version "3.2.2"
57935747
resolved "https://registry.yarnpkg.com/kind-of/-/kind-of-3.2.2.tgz#31ea21a734bab9bbb0f32466d893aea51e4a3c64"
57945748
integrity sha1-MeohpzS6ubuw8yRm2JOupR5KPGQ=
@@ -6066,11 +6020,6 @@ map-visit@^1.0.0:
60666020
dependencies:
60676021
object-visit "^1.0.0"
60686022

6069-
math-random@^1.0.1:
6070-
version "1.0.4"
6071-
resolved "https://registry.yarnpkg.com/math-random/-/math-random-1.0.4.tgz#5dd6943c938548267016d4e34f057583080c514c"
6072-
integrity sha512-rUxjysqif/BZQH2yhd5Aaq7vXMSx9NdEsQcyA07uEzIvxgI7zIr33gGsh+RU0/XjmQpCW7RsVof1vlkvQVCK5A==
6073-
60746023
md5.js@^1.3.4:
60756024
version "1.3.5"
60766025
resolved "https://registry.yarnpkg.com/md5.js/-/md5.js-1.3.5.tgz#b5d07b8e3216e3e27cd728d72f70d1e6a342005f"
@@ -6399,7 +6348,7 @@ [email protected]:
63996348
resolved "https://registry.yarnpkg.com/negotiator/-/negotiator-0.6.1.tgz#2b327184e8992101177b28563fb5e7102acd0ca9"
64006349
integrity sha1-KzJxhOiZIQEXeyhWP7XnECrNDKk=
64016350

6402-
neo-async@^2.5.0:
6351+
neo-async@^2.5.0, neo-async@^2.6.0:
64036352
version "2.6.0"
64046353
resolved "https://registry.yarnpkg.com/neo-async/-/neo-async-2.6.0.tgz#b9d15e4d71c6762908654b5183ed38b753340835"
64056354
integrity sha512-MFh0d/Wa7vkKO3Y3LlacqAEeHK0mckVqzDieUKTT+KGxi+zIpeVsFxymkIiRpbpDziHc290Xr9A1O4Om7otoRA==
@@ -7748,11 +7697,6 @@ prelude-ls@~1.1.2:
77487697
resolved "https://registry.yarnpkg.com/prelude-ls/-/prelude-ls-1.1.2.tgz#21932a549f5e52ffd9a827f570e04be62a97da54"
77497698
integrity sha1-IZMqVJ9eUv/ZqCf1cOBL5iqX2lQ=
77507699

7751-
preserve@^0.2.0:
7752-
version "0.2.0"
7753-
resolved "https://registry.yarnpkg.com/preserve/-/preserve-0.2.0.tgz#815ed1f6ebc65926f865b310c0713bcb3315ce4b"
7754-
integrity sha1-gV7R9uvGWSb4ZbMQwHE7yzMVzks=
7755-
77567700
77577701
version "1.17.0"
77587702
resolved "https://registry.yarnpkg.com/prettier/-/prettier-1.17.0.tgz#53b303676eed22cc14a9f0cec09b477b3026c008"
@@ -7948,15 +7892,6 @@ [email protected]:
79487892
dependencies:
79497893
performance-now "^2.1.0"
79507894

7951-
randomatic@^3.0.0:
7952-
version "3.1.1"
7953-
resolved "https://registry.yarnpkg.com/randomatic/-/randomatic-3.1.1.tgz#b776efc59375984e36c537b2f51a1f0aff0da1ed"
7954-
integrity sha512-TuDE5KxZ0J461RVjrJZCJc+J+zCkTb1MbH9AQUq68sMhOMcy9jLcb3BrZKgp9q9Ncltdg4QVqWrH02W2EFFVYw==
7955-
dependencies:
7956-
is-number "^4.0.0"
7957-
kind-of "^6.0.0"
7958-
math-random "^1.0.1"
7959-
79607895
randombytes@^2.0.0, randombytes@^2.0.1, randombytes@^2.0.5:
79617896
version "2.0.6"
79627897
resolved "https://registry.yarnpkg.com/randombytes/-/randombytes-2.0.6.tgz#d302c522948588848a8d300c932b44c24231da80"
@@ -8429,16 +8364,6 @@ renderkid@^2.0.1:
84298364
strip-ansi "^3.0.0"
84308365
utila "^0.4.0"
84318366

8432-
repeat-element@^1.1.2:
8433-
version "1.1.3"
8434-
resolved "https://registry.yarnpkg.com/repeat-element/-/repeat-element-1.1.3.tgz#782e0d825c0c5a3bb39731f84efee6b742e6b1ce"
8435-
integrity sha512-ahGq0ZnV5m5XtZLMb+vP76kcAM5nkLqk0lpqAuojSKGgQtn4eRi4ZZGm2olo2zKFH+sMsWaqOCW1dqAnOru72g==
8436-
8437-
repeat-string@^1.5.2, repeat-string@^1.6.1:
8438-
version "1.6.1"
8439-
resolved "https://registry.yarnpkg.com/repeat-string/-/repeat-string-1.6.1.tgz#8dcae470e1c88abc2d600fff4a776286da75e637"
8440-
integrity sha1-jcrkcOHIirwtYA//Sndihtp15jc=
8441-
84428367
repeating@^2.0.0:
84438368
version "2.0.1"
84448369
resolved "https://registry.yarnpkg.com/repeating/-/repeating-2.0.1.tgz#5214c53a926d3552707527fbab415dbc08d06dda"
@@ -8880,22 +8805,6 @@ slice-ansi@^2.1.0:
88808805
astral-regex "^1.0.0"
88818806
is-fullwidth-code-point "^2.0.0"
88828807

8883-
snapdragon-node@^2.0.1:
8884-
version "2.1.1"
8885-
resolved "https://registry.yarnpkg.com/snapdragon-node/-/snapdragon-node-2.1.1.tgz#6c175f86ff14bdb0724563e8f3c1b021a286853b"
8886-
integrity sha512-O27l4xaMYt/RSQ5TR3vpWCAB5Kb/czIcqUFOM/C4fYcLnbZUc1PkjTAMjof2pBWaSTwOUd6qUHcFGVGj7aIwnw==
8887-
dependencies:
8888-
define-property "^1.0.0"
8889-
isobject "^3.0.0"
8890-
snapdragon-util "^3.0.1"
8891-
8892-
snapdragon-util@^3.0.1:
8893-
version "3.0.1"
8894-
resolved "https://registry.yarnpkg.com/snapdragon-util/-/snapdragon-util-3.0.1.tgz#f956479486f2acd79700693f6f7b805e45ab56e2"
8895-
integrity sha512-mbKkMdQKsjX4BAL4bRYTj21edOf8cN7XHdYUJEe+Zn99hVEYcMvKPct1IqNe7+AZPirn8BCDOQBHQZknqmKlZQ==
8896-
dependencies:
8897-
kind-of "^3.2.0"
8898-
88998808
snapdragon@^0.8.1:
89008809
version "0.8.2"
89018810
resolved "https://registry.yarnpkg.com/snapdragon/-/snapdragon-0.8.2.tgz#64922e7c565b0e14204ba1aa7d6964278d25182d"
@@ -9047,7 +8956,7 @@ spdy@^4.0.0:
90478956
select-hose "^2.0.0"
90488957
spdy-transport "^3.0.0"
90498958

9050-
split-string@^3.0.1, split-string@^3.0.2:
8959+
split-string@^3.0.1:
90518960
version "3.1.0"
90528961
resolved "https://registry.yarnpkg.com/split-string/-/split-string-3.1.0.tgz#7cb09dda3a86585705c64b39a6466038682e8fe2"
90538962
integrity sha512-NzNVhJDYpwceVVii8/Hu6DKfD2G+NrQHlS/V/qgv763EYudVwEcMQNxd2lh+0VrUByXN/oJkl5grOhYWvQUYiw==
@@ -9480,13 +9389,12 @@ to-object-path@^0.3.0:
94809389
dependencies:
94819390
kind-of "^3.0.2"
94829391

9483-
to-regex-range@^2.1.0:
9484-
version "2.1.1"
9485-
resolved "https://registry.yarnpkg.com/to-regex-range/-/to-regex-range-2.1.1.tgz#7c80c17b9dfebe599e27367e0d4dd5590141db38"
9486-
integrity sha1-fIDBe53+vlmeJzZ+DU3VWQFB2zg=
9392+
to-regex-range@^5.0.1:
9393+
version "5.0.1"
9394+
resolved "https://registry.yarnpkg.com/to-regex-range/-/to-regex-range-5.0.1.tgz#1648c44aae7c8d988a326018ed72f5b4dd0392e4"
9395+
integrity sha512-65P7iz6X5yEr1cwcgvQxbbIw7Uk3gOy5dIdtZ4rDveLqhrdJP+Li/Hx6tyK0NEb+2GCyneCMJiGqrADCSNk8sQ==
94879396
dependencies:
9488-
is-number "^3.0.0"
9489-
repeat-string "^1.6.1"
9397+
is-number "^7.0.0"
94909398

94919399
to-regex@^3.0.1, to-regex@^3.0.2:
94929400
version "3.0.2"

0 commit comments

Comments
 (0)