Skip to content

Commit ce0396d

Browse files
authored
Merge pull request #41 from lucassabreu/sec-update
chore: semver vulnerable to Regular Expression Denial of Service
2 parents 4c27c37 + 554262b commit ce0396d

File tree

3 files changed

+27
-19
lines changed

3 files changed

+27
-19
lines changed

package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -26,6 +26,6 @@
2626
"prettier": "^2.7.1",
2727
"rollup": "^2.78.0",
2828
"rollup-plugin-node-externals": "^4.1.1",
29-
"rollup-plugin-typescript2": "^0.32.1"
29+
"rollup-plugin-typescript2": "^0.35.0"
3030
}
3131
}

rollup.config.js

Lines changed: 1 addition & 12 deletions
Original file line numberDiff line numberDiff line change
@@ -25,18 +25,7 @@ export default {
2525
preferBuiltins: true,
2626
mainFields: ["main"],
2727
}),
28-
commonjs({
29-
// dynamicRequireTargets: [
30-
// // include using a glob pattern (either a string or an array of strings)
31-
// "node_modules/logform/*.js",
32-
// "node_modules/logform/*.js",
33-
// // exclude files that are known to not be required dynamically, this allows for better optimizations
34-
// "!node_modules/logform/index.js",
35-
// "!node_modules/logform/format.js",
36-
// "!node_modules/logform/levels.js",
37-
// "!node_modules/logform/browser.js",
38-
// ],
39-
}),
28+
commonjs({}),
4029
typescript({
4130
useTsconfigDeclarationDir: true,
4231
}),

yarn.lock

Lines changed: 25 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -447,6 +447,13 @@ locate-path@^6.0.0:
447447
dependencies:
448448
p-locate "^5.0.0"
449449

450+
lru-cache@^6.0.0:
451+
version "6.0.0"
452+
resolved "https://registry.yarnpkg.com/lru-cache/-/lru-cache-6.0.0.tgz#6d6fe6570ebd96aaf90fcad1dafa3b2566db3a94"
453+
integrity sha512-Jo6dJ04CmSjuznwJSS3pUeWmd/H0ffTlkXXgwZi+eq1UCmqQwCh+eLsYOYCwY991i2Fah4h1BEMCx4qThGbsiA==
454+
dependencies:
455+
yallist "^4.0.0"
456+
450457
magic-string@^0.25.7:
451458
version "0.25.9"
452459
resolved "https://registry.yarnpkg.com/magic-string/-/magic-string-0.25.9.tgz#de7f9faf91ef8a1c91d02c2e5314c8277dbcdd1c"
@@ -552,7 +559,7 @@ prettier@^2.7.1:
552559
resolved "https://registry.yarnpkg.com/prettier/-/prettier-2.7.1.tgz#e235806850d057f97bb08368a4f7d899f7760c64"
553560
integrity sha512-ujppO+MkdPqoVINuDFDRLClm7D78qbDt0/NR+wp5FqEZOoTNAjPHWj17QRhu7geIHJfcNhRk1XVQmF8Bp3ye+g==
554561

555-
resolve@^1.17.0, resolve@^1.19.0, resolve@^1.20.0:
562+
resolve@^1.17.0, resolve@^1.19.0:
556563
version "1.22.1"
557564
resolved "https://registry.yarnpkg.com/resolve/-/resolve-1.22.1.tgz#27cb2ebb53f91abb49470a928bba7558066ac177"
558565
integrity sha512-nBpuuYuY5jFsli/JIs1oldw6fOQCBioohqWZg/2hiaOybXOft4lonv85uDOKXdf8rhyK159cxU5cDcK/NKk8zw==
@@ -568,15 +575,15 @@ rollup-plugin-node-externals@^4.1.1:
568575
dependencies:
569576
find-up "^5.0.0"
570577

571-
rollup-plugin-typescript2@^0.32.1:
572-
version "0.32.1"
573-
resolved "https://registry.yarnpkg.com/rollup-plugin-typescript2/-/rollup-plugin-typescript2-0.32.1.tgz#470ded8e1965efac02043cc0ef4a7fa36bed83b9"
574-
integrity sha512-RanO8bp1WbeMv0bVlgcbsFNCn+Y3rX7wF97SQLDxf0fMLsg0B/QFF005t4AsGUcDgF3aKJHoqt4JF2xVaABeKw==
578+
rollup-plugin-typescript2@^0.35.0:
579+
version "0.35.0"
580+
resolved "https://registry.yarnpkg.com/rollup-plugin-typescript2/-/rollup-plugin-typescript2-0.35.0.tgz#a84fb4e802b919613f31552c69c3415101b547c1"
581+
integrity sha512-szcIO9hPUx3PhQl91u4pfNAH2EKbtrXaES+m163xQVE5O1CC0ea6YZV/5woiDDW3CR9jF2CszPrKN+AFiND0bg==
575582
dependencies:
576583
"@rollup/pluginutils" "^4.1.2"
577584
find-cache-dir "^3.3.2"
578585
fs-extra "^10.0.0"
579-
resolve "^1.20.0"
586+
semver "^7.3.7"
580587
tslib "^2.4.0"
581588

582589
rollup@^2.78.0:
@@ -596,6 +603,13 @@ semver@^6.0.0:
596603
resolved "https://registry.yarnpkg.com/semver/-/semver-6.3.0.tgz#ee0a64c8af5e8ceea67687b133761e1becbd1d3d"
597604
integrity sha512-b39TBaTSfV6yBrapU89p5fKekE2m/NwnDocOVruQFS1/veMgdzuPcnOM34M6CwxW8jH/lxEa5rBoDeUwu5HHTw==
598605

606+
semver@^7.3.7:
607+
version "7.5.3"
608+
resolved "https://registry.yarnpkg.com/semver/-/semver-7.5.3.tgz#161ce8c2c6b4b3bdca6caadc9fa3317a4c4fe88e"
609+
integrity sha512-QBlUtyVk/5EeHbi7X0fw6liDZc7BBmEaSYn01fMU1OUYbf6GPsbTtd8WmnqbI20SeycoHSeiybkE/q1Q+qlThQ==
610+
dependencies:
611+
lru-cache "^6.0.0"
612+
599613
sourcemap-codec@^1.4.8:
600614
version "1.4.8"
601615
resolved "https://registry.yarnpkg.com/sourcemap-codec/-/sourcemap-codec-1.4.8.tgz#ea804bd94857402e6992d05a38ef1ae35a9ab4c4"
@@ -690,6 +704,11 @@ xml-js@^1.6.11:
690704
dependencies:
691705
sax "^1.2.4"
692706

707+
yallist@^4.0.0:
708+
version "4.0.0"
709+
resolved "https://registry.yarnpkg.com/yallist/-/yallist-4.0.0.tgz#9bb92790d9c0effec63be73519e11a35019a3a72"
710+
integrity sha512-3wdGidZyq5PB084XLES5TpOSRA3wjXAlIWMhum2kRcv/41Sn2emQ0dycQW4uZXLejwKvg6EsvbdlVL+FYEct7A==
711+
693712
694713
version "3.1.1"
695714
resolved "https://registry.yarnpkg.com/yn/-/yn-3.1.1.tgz#1e87401a09d767c1d5eab26a6e4c185182d2eb50"

0 commit comments

Comments
 (0)