From 1f898c37d750f6f1949989adb086d08d7ece0608 Mon Sep 17 00:00:00 2001 From: "dependabot-preview[bot]" <27856297+dependabot-preview[bot]@users.noreply.github.com> Date: Fri, 4 Sep 2020 03:59:56 +0000 Subject: [PATCH] [Security] Bump js-yaml from 3.12.2 to 3.13.1 Bumps [js-yaml](https://github.com/nodeca/js-yaml) from 3.12.2 to 3.13.1. **This update includes security fixes.** - [Release notes](https://github.com/nodeca/js-yaml/releases) - [Changelog](https://github.com/nodeca/js-yaml/blob/master/CHANGELOG.md) - [Commits](https://github.com/nodeca/js-yaml/compare/3.12.2...3.13.1) Signed-off-by: dependabot-preview[bot] --- package-lock.json | 6 +++--- package.json | 2 +- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/package-lock.json b/package-lock.json index 92c801c..d77604b 100644 --- a/package-lock.json +++ b/package-lock.json @@ -9952,9 +9952,9 @@ "dev": true }, "js-yaml": { - "version": "3.12.2", - "resolved": "https://registry.npmjs.org/js-yaml/-/js-yaml-3.12.2.tgz", - "integrity": "sha512-QHn/Lh/7HhZ/Twc7vJYQTkjuCa0kaCcDcjK5Zlk2rvnUpy7DxMJ23+Jc2dcyvltwQVg1nygAVlB2oRDFHoRS5Q==", + "version": "3.13.1", + "resolved": "https://registry.npmjs.org/js-yaml/-/js-yaml-3.13.1.tgz", + "integrity": "sha512-YfbcO7jXDdyj0DGxYVSlSeQNHbD7XPWvrVWeVUujrQEoZzWJIRrCPoyk6kL6IAjAG2IolMK4T0hNUe0HOUs5Jw==", "requires": { "argparse": "^1.0.7", "esprima": "^4.0.0" diff --git a/package.json b/package.json index 3d46c8a..da7f12c 100644 --- a/package.json +++ b/package.json @@ -31,7 +31,7 @@ "gatsby-transformer-remark": "^1.7.44", "github-slugger": "^1.2.1", "glamor": "^2.20.40", - "js-yaml": "^3.12.2", + "js-yaml": "^3.13.1", "microfeedback-button": "^1.0.1", "prismjs": "^1.15.0", "prop-types": "^15.6.2",