Skip to content

Commit f608035

Browse files
authored
choore: pin octokit to secure versions (#946)
* chore: pin octokit version Signed-off-by: Kevin Shan <[email protected]> * chore: typo Signed-off-by: Kevin Shan <[email protected]> * chore: sort resolutions Signed-off-by: Kevin Shan <[email protected]> --------- Signed-off-by: Kevin Shan <[email protected]>
1 parent 9174eab commit f608035

File tree

3 files changed

+59
-46
lines changed

3 files changed

+59
-46
lines changed

dependency_licenses.txt

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -4751,7 +4751,7 @@ THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLI
47514751

47524752
-----
47534753

4754-
The following software may be included in this product: @octokit/plugin-request-log, @octokit/tsconfig. A copy of the source code may be downloaded from https://github.com/octokit/plugin-request-log.js.git (@octokit/plugin-request-log), https://github.com/octokit/tsconfig (@octokit/tsconfig). This software contains the following license and notice below:
4754+
The following software may be included in this product: @octokit/plugin-request-log. A copy of the source code may be downloaded from https://github.com/octokit/plugin-request-log.js.git. This software contains the following license and notice below:
47554755

47564756
MIT License Copyright (c) 2020 Octokit contributors
47574757

package.json

Lines changed: 11 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -124,17 +124,20 @@
124124
"typescript": "4.7.4"
125125
},
126126
"resolutions": {
127-
"minimist": "^1.2.6",
128-
"lodash": "^4.17.21",
129-
"node-fetch": "^2.6.7",
127+
"**/@aws-amplify/amplify-codegen-e2e-tests/**/cookie": "^0.7.0",
128+
"**/@aws-amplify/amplify-codegen-e2e-tests/**/fast-xml-parser": "^4.4.1",
129+
"@octokit/plugin-paginate-rest": "^9.2.2",
130+
"@octokit/request": "^8.4.1",
131+
"@octokit/request-error": "^5.1.1",
132+
"axios": "^1.7.4",
130133
"cross-fetch": "^2.2.6",
131134
"glob-parent": "^6.0.2",
132-
"parse-url": "^8.1.0",
133135
"graphql": "15.8.0",
134-
"xml2js": "0.5.0",
135-
"axios": "^1.7.4",
136-
"**/@aws-amplify/amplify-codegen-e2e-tests/**/fast-xml-parser": "^4.4.1",
137-
"**/@aws-amplify/amplify-codegen-e2e-tests/**/cookie": "^0.7.0"
136+
"lodash": "^4.17.21",
137+
"minimist": "^1.2.6",
138+
"node-fetch": "^2.6.7",
139+
"parse-url": "^8.1.0",
140+
"xml2js": "0.5.0"
138141
},
139142
"config": {
140143
"commitizen": {

yarn.lock

Lines changed: 47 additions & 37 deletions
Original file line numberDiff line numberDiff line change
@@ -6411,13 +6411,12 @@
64116411
before-after-hook "^2.2.0"
64126412
universal-user-agent "^6.0.0"
64136413

6414-
"@octokit/endpoint@^7.0.0":
6415-
version "7.0.6"
6416-
resolved "https://registry.npmjs.org/@octokit/endpoint/-/endpoint-7.0.6.tgz#791f65d3937555141fb6c08f91d618a7d645f1e2"
6417-
integrity sha512-5L4fseVRUsDFGR00tMWD/Trdeeihn999rTMGRMC1G/Ldi1uWlWJzI98H4Iak5DB/RVvQuyMYKqSK/R6mbSOQyg==
6414+
"@octokit/endpoint@^9.0.6":
6415+
version "9.0.6"
6416+
resolved "https://registry.npmjs.org/@octokit/endpoint/-/endpoint-9.0.6.tgz#114d912108fe692d8b139cfe7fc0846dfd11b6c0"
6417+
integrity sha512-H1fNTMA57HbkFESSt3Y9+FBICv+0jFceJFPWDePYlR/iMGrwM5ph+Dd4XRQs+8X+PUFURLQgX9ChPfhJ/1uNQw==
64186418
dependencies:
6419-
"@octokit/types" "^9.0.0"
6420-
is-plain-object "^5.0.0"
6419+
"@octokit/types" "^13.1.0"
64216420
universal-user-agent "^6.0.0"
64226421

64236422
"@octokit/graphql@^5.0.0":
@@ -6434,18 +6433,27 @@
64346433
resolved "https://registry.npmjs.org/@octokit/openapi-types/-/openapi-types-18.1.1.tgz#09bdfdabfd8e16d16324326da5148010d765f009"
64356434
integrity sha512-VRaeH8nCDtF5aXWnjPuEMIYf1itK/s3JYyJcWFJT8X9pSNnBtriDf7wlEWsGuhPLl4QIH4xM8fqTXDwJ3Mu6sw==
64366435

6436+
"@octokit/openapi-types@^20.0.0":
6437+
version "20.0.0"
6438+
resolved "https://registry.npmjs.org/@octokit/openapi-types/-/openapi-types-20.0.0.tgz#9ec2daa0090eeb865ee147636e0c00f73790c6e5"
6439+
integrity sha512-EtqRBEjp1dL/15V7WiX5LJMIxxkdiGJnabzYx5Apx4FkQIFgAfKumXeYAqqJCj1s+BMX4cPFIFC4OLCR6stlnA==
6440+
6441+
"@octokit/openapi-types@^23.0.1":
6442+
version "23.0.1"
6443+
resolved "https://registry.npmjs.org/@octokit/openapi-types/-/openapi-types-23.0.1.tgz#3721646ecd36b596ddb12650e0e89d3ebb2dd50e"
6444+
integrity sha512-izFjMJ1sir0jn0ldEKhZ7xegCTj/ObmEDlEfpFrx4k/JyZSMRHbO3/rBwgE7f3m2DHt+RrNGIVw4wSmwnm3t/g==
6445+
64376446
"@octokit/plugin-enterprise-rest@^6.0.1":
64386447
version "6.0.1"
64396448
resolved "https://registry.npmjs.org/@octokit/plugin-enterprise-rest/-/plugin-enterprise-rest-6.0.1.tgz#e07896739618dab8da7d4077c658003775f95437"
64406449
integrity sha512-93uGjlhUD+iNg1iWhUENAtJata6w5nE+V4urXOAlIXdco6xNZtUSfYY8dzp3Udy74aqO/B5UZL80x/YMa5PKRw==
64416450

6442-
"@octokit/plugin-paginate-rest@^6.1.2":
6443-
version "6.1.2"
6444-
resolved "https://registry.npmjs.org/@octokit/plugin-paginate-rest/-/plugin-paginate-rest-6.1.2.tgz#f86456a7a1fe9e58fec6385a85cf1b34072341f8"
6445-
integrity sha512-qhrmtQeHU/IivxucOV1bbI/xZyC/iOBhclokv7Sut5vnejAIAEXVcGQeRpQlU39E0WwK9lNvJHphHri/DB6lbQ==
6451+
"@octokit/plugin-paginate-rest@^6.1.2", "@octokit/plugin-paginate-rest@^9.2.2":
6452+
version "9.2.2"
6453+
resolved "https://registry.npmjs.org/@octokit/plugin-paginate-rest/-/plugin-paginate-rest-9.2.2.tgz#c516bc498736bcdaa9095b9a1d10d9d0501ae831"
6454+
integrity sha512-u3KYkGF7GcZnSD/3UP0S7K5XUFT2FkOQdcfXZGZQPGv3lm4F2Xbf71lvjldr8c1H3nNbF+33cLEkWYbokGWqiQ==
64466455
dependencies:
6447-
"@octokit/tsconfig" "^1.0.2"
6448-
"@octokit/types" "^9.2.3"
6456+
"@octokit/types" "^12.6.0"
64496457

64506458
"@octokit/plugin-request-log@^1.0.4":
64516459
version "1.0.4"
@@ -6459,25 +6467,23 @@
64596467
dependencies:
64606468
"@octokit/types" "^10.0.0"
64616469

6462-
"@octokit/request-error@^3.0.0":
6463-
version "3.0.3"
6464-
resolved "https://registry.npmjs.org/@octokit/request-error/-/request-error-3.0.3.tgz#ef3dd08b8e964e53e55d471acfe00baa892b9c69"
6465-
integrity sha512-crqw3V5Iy2uOU5Np+8M/YexTlT8zxCfI+qu+LxUB7SZpje4Qmx3mub5DfEKSO8Ylyk0aogi6TYdf6kxzh2BguQ==
6470+
"@octokit/request-error@^3.0.0", "@octokit/request-error@^5.1.1":
6471+
version "5.1.1"
6472+
resolved "https://registry.npmjs.org/@octokit/request-error/-/request-error-5.1.1.tgz#b9218f9c1166e68bb4d0c89b638edc62c9334805"
6473+
integrity sha512-v9iyEQJH6ZntoENr9/yXxjuezh4My67CBSu9r6Ve/05Iu5gNgnisNWOsoJHTP6k0Rr0+HQIpnH+kyammu90q/g==
64666474
dependencies:
6467-
"@octokit/types" "^9.0.0"
6475+
"@octokit/types" "^13.1.0"
64686476
deprecation "^2.0.0"
64696477
once "^1.4.0"
64706478

6471-
"@octokit/request@^6.0.0":
6472-
version "6.2.8"
6473-
resolved "https://registry.npmjs.org/@octokit/request/-/request-6.2.8.tgz#aaf480b32ab2b210e9dadd8271d187c93171d8eb"
6474-
integrity sha512-ow4+pkVQ+6XVVsekSYBzJC0VTVvh/FCTUUgTsboGq+DTeWdyIFV8WSCdo0RIxk6wSkBTHqIK1mYuY7nOBXOchw==
6479+
"@octokit/request@^6.0.0", "@octokit/request@^8.4.1":
6480+
version "8.4.1"
6481+
resolved "https://registry.npmjs.org/@octokit/request/-/request-8.4.1.tgz#715a015ccf993087977ea4365c44791fc4572486"
6482+
integrity sha512-qnB2+SY3hkCmBxZsR/MPCybNmbJe4KAlfWErXq+rBKkQJlbjdJeS85VI9r8UqeLYLvnAenU8Q1okM/0MBsAGXw==
64756483
dependencies:
6476-
"@octokit/endpoint" "^7.0.0"
6477-
"@octokit/request-error" "^3.0.0"
6478-
"@octokit/types" "^9.0.0"
6479-
is-plain-object "^5.0.0"
6480-
node-fetch "^2.6.7"
6484+
"@octokit/endpoint" "^9.0.6"
6485+
"@octokit/request-error" "^5.1.1"
6486+
"@octokit/types" "^13.1.0"
64816487
universal-user-agent "^6.0.0"
64826488

64836489
"@octokit/rest@^19.0.3":
@@ -6490,19 +6496,28 @@
64906496
"@octokit/plugin-request-log" "^1.0.4"
64916497
"@octokit/plugin-rest-endpoint-methods" "^7.1.2"
64926498

6493-
"@octokit/tsconfig@^1.0.2":
6494-
version "1.0.2"
6495-
resolved "https://registry.npmjs.org/@octokit/tsconfig/-/tsconfig-1.0.2.tgz#59b024d6f3c0ed82f00d08ead5b3750469125af7"
6496-
integrity sha512-I0vDR0rdtP8p2lGMzvsJzbhdOWy405HcGovrspJ8RRibHnyRgggUSNO5AIox5LmqiwmatHKYsvj6VGFHkqS7lA==
6497-
64986499
"@octokit/types@^10.0.0":
64996500
version "10.0.0"
65006501
resolved "https://registry.npmjs.org/@octokit/types/-/types-10.0.0.tgz#7ee19c464ea4ada306c43f1a45d444000f419a4a"
65016502
integrity sha512-Vm8IddVmhCgU1fxC1eyinpwqzXPEYu0NrYzD3YZjlGjyftdLBTeqNblRC0jmJmgxbJIsQlyogVeGnrNaaMVzIg==
65026503
dependencies:
65036504
"@octokit/openapi-types" "^18.0.0"
65046505

6505-
"@octokit/types@^9.0.0", "@octokit/types@^9.2.3":
6506+
"@octokit/types@^12.6.0":
6507+
version "12.6.0"
6508+
resolved "https://registry.npmjs.org/@octokit/types/-/types-12.6.0.tgz#8100fb9eeedfe083aae66473bd97b15b62aedcb2"
6509+
integrity sha512-1rhSOfRa6H9w4YwK0yrf5faDaDTb+yLyBUKOCV4xtCDB5VmIPqd/v9yr9o6SAzOAlRxMiRiCic6JVM1/kunVkw==
6510+
dependencies:
6511+
"@octokit/openapi-types" "^20.0.0"
6512+
6513+
"@octokit/types@^13.1.0":
6514+
version "13.8.0"
6515+
resolved "https://registry.npmjs.org/@octokit/types/-/types-13.8.0.tgz#3815885e5abd16ed9ffeea3dced31d37ce3f8a0a"
6516+
integrity sha512-x7DjTIbEpEWXK99DMd01QfWy0hd5h4EN+Q7shkdKds3otGQP+oWE/y0A76i1OvH9fygo4ddvNf7ZvF0t78P98A==
6517+
dependencies:
6518+
"@octokit/openapi-types" "^23.0.1"
6519+
6520+
"@octokit/types@^9.0.0":
65066521
version "9.3.2"
65076522
resolved "https://registry.npmjs.org/@octokit/types/-/types-9.3.2.tgz#3f5f89903b69f6a2d196d78ec35f888c0013cac5"
65086523
integrity sha512-D4iHGTdAnEEVsB8fl95m1hiz7D5YiRdQ9b/OEb3BYRVwbLsGHcRVPz+u+BgRLNk0Q0/4iZCBqDN96j2XNxfXrA==
@@ -11988,11 +12003,6 @@ is-plain-object@^2.0.4:
1198812003
dependencies:
1198912004
isobject "^3.0.1"
1199012005

11991-
is-plain-object@^5.0.0:
11992-
version "5.0.0"
11993-
resolved "https://registry.npmjs.org/is-plain-object/-/is-plain-object-5.0.0.tgz#4427f50ab3429e9025ea7d52e9043a9ef4159344"
11994-
integrity sha512-VRSzKkbMm5jMDoKLbltAkFQ5Qr7VDiTFGXxYFXXowVj387GeGNOCsOH6Msy00SGZ3Fp84b1Naa1psqgcCIEP5Q==
11995-
1199612006
is-potential-custom-element-name@^1.0.1:
1199712007
version "1.0.1"
1199812008
resolved "https://registry.npmjs.org/is-potential-custom-element-name/-/is-potential-custom-element-name-1.0.1.tgz#171ed6f19e3ac554394edf78caa05784a45bebb5"

0 commit comments

Comments
 (0)