From fc1b2b7a27e82f3a898d7f049fa5c023b4593ec6 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 29 May 2020 00:48:32 +0100 Subject: [PATCH 1/2] fix: interface/src/package.json & interface/src/yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-CODEMIRROR-569611 --- interface/src/package.json | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/interface/src/package.json b/interface/src/package.json index fc7a92fc..96625d5f 100644 --- a/interface/src/package.json +++ b/interface/src/package.json @@ -56,7 +56,7 @@ "autosuggest-highlight": "^3.1.1", "babel-inline-import-loader": "^0.0.5", "babel-plugin-inline-import": "^2.0.6", - "codemirror": "^5.36.0", + "codemirror": "^5.54.0", "copy-webpack-plugin": "^4.5.1", "history": "^4.7.2", "immutability-helper": "^2.6.6", From 99ebca7a03befac8d905f519c812381874a02c8d Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 29 May 2020 00:48:33 +0100 Subject: [PATCH 2/2] fix: interface/src/package.json & interface/src/yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-CODEMIRROR-569611 --- interface/src/yarn.lock | 7 ++++--- 1 file changed, 4 insertions(+), 3 deletions(-) diff --git a/interface/src/yarn.lock b/interface/src/yarn.lock index da07c2f7..a458787a 100644 --- a/interface/src/yarn.lock +++ b/interface/src/yarn.lock @@ -1495,9 +1495,10 @@ code-point-at@^1.0.0: version "1.1.0" resolved "https://registry.yarnpkg.com/code-point-at/-/code-point-at-1.1.0.tgz#0d070b4d043a5bea33a2f1a40e2edb3d9a4ccf77" -codemirror@^5.36.0: - version "5.36.0" - resolved "https://registry.yarnpkg.com/codemirror/-/codemirror-5.36.0.tgz#1172ad9dc298056c06e0b34e5ccd23825ca15b40" +codemirror@^5.54.0: + version "5.54.0" + resolved "https://registry.yarnpkg.com/codemirror/-/codemirror-5.54.0.tgz#82b6adf662b29eeb7b867fe7839d49e25e4a0b38" + integrity sha512-Pgf3surv4zvw+KaW3doUU7pGjF0BPU8/sj7eglWJjzni46U/DDW8pu3nZY0QgQKUcICDXRkq8jZmq0y6KhxM3Q== collection-visit@^1.0.0: version "1.0.0"