Skip to content

Commit f81fc25

Browse files
authored
chore(ui): fix package vulnerabilities issues (#25969)
* chore(ui): fix package vulnerabilities issues * nit * Revert ajv changes
1 parent 55c4ceb commit f81fc25

File tree

2 files changed

+39
-38
lines changed

2 files changed

+39
-38
lines changed

openmetadata-ui/src/main/resources/ui/package.json

Lines changed: 4 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -94,7 +94,7 @@
9494
"cookie-storage": "^6.1.0",
9595
"cronstrue": "^2.53.0",
9696
"crypto-random-string-with-promisify-polyfill": "^5.0.0",
97-
"diff": "^5.0.0",
97+
"diff": "^5.2.2",
9898
"dompurify": "^3.2.4",
9999
"elkjs": "^0.9.3",
100100
"eventemitter3": "^5.0.1",
@@ -113,7 +113,7 @@
113113
"notistack": "^3.0.2",
114114
"oidc-client": "^1.11.5",
115115
"process": "^0.11.10",
116-
"qs": "6.14.1",
116+
"qs": "6.14.2",
117117
"quill-mention": "^6.0.1",
118118
"quilljs-markdown": "^1.2.0",
119119
"rapidoc": "^9.3.8",
@@ -264,6 +264,7 @@
264264
"tar-fs": "2.1.4",
265265
"js-yaml": "4.1.1",
266266
"lodash": ">=4.17.23",
267-
"lodash-es": ">=4.17.23"
267+
"lodash-es": ">=4.17.23",
268+
"markdown-it": ">=14.1.1"
268269
}
269270
}

openmetadata-ui/src/main/resources/ui/yarn.lock

Lines changed: 35 additions & 35 deletions
Original file line numberDiff line numberDiff line change
@@ -4502,33 +4502,23 @@ ajv-formats@^2.1.1:
45024502

45034503
ajv@^6.12.4:
45044504
version "6.12.6"
4505-
resolved "https://registry.npmjs.org/ajv/-/ajv-6.12.6.tgz"
4505+
resolved "https://registry.yarnpkg.com/ajv/-/ajv-6.12.6.tgz#baf5a62e802b07d977034586f8c3baf5adf26df4"
45064506
integrity sha512-j3fVLgvTo527anyYyJOGTYJbG+vnnQYvE0m5mmkc1TK+nxAppkCLMIL0aZ4dblVCNoGShhm+kzE4ZUykBoMg4g==
45074507
dependencies:
45084508
fast-deep-equal "^3.1.1"
45094509
fast-json-stable-stringify "^2.0.0"
45104510
json-schema-traverse "^0.4.1"
45114511
uri-js "^4.2.2"
45124512

4513-
ajv@^8.0.0:
4514-
version "8.11.0"
4515-
resolved "https://registry.yarnpkg.com/ajv/-/ajv-8.11.0.tgz#977e91dd96ca669f54a11e23e378e33b884a565f"
4516-
integrity sha512-wGgprdCvMalC0BztXvitD2hC04YffAvtsUn93JbGXYLAtCUO4xd17mCCZQxUOItiBwZvJScWo8NIvQMQ71rdpg==
4513+
ajv@^8.0.0, ajv@^8.12.0:
4514+
version "8.18.0"
4515+
resolved "https://registry.yarnpkg.com/ajv/-/ajv-8.18.0.tgz#8864186b6738d003eb3a933172bb3833e10cefbc"
4516+
integrity sha512-PlXPeEWMXMZ7sPYOHqmDyCJzcfNrUr3fGNKtezX14ykXOEIvyK81d+qydx89KY5O71FKMPaQ2vBfBFI5NHR63A==
45174517
dependencies:
4518-
fast-deep-equal "^3.1.1"
4518+
fast-deep-equal "^3.1.3"
4519+
fast-uri "^3.0.1"
45194520
json-schema-traverse "^1.0.0"
45204521
require-from-string "^2.0.2"
4521-
uri-js "^4.2.2"
4522-
4523-
ajv@^8.12.0:
4524-
version "8.12.0"
4525-
resolved "https://registry.npmjs.org/ajv/-/ajv-8.12.0.tgz"
4526-
integrity sha512-sRu1kpcO9yLtYxBKvqfTeh9KzZEwO3STyX1HT+4CaDzC6HpTGYhIhPIzj9XuKU7KYDwnaeh5hcOwjy1QuJzBPA==
4527-
dependencies:
4528-
fast-deep-equal "^3.1.1"
4529-
json-schema-traverse "^1.0.0"
4530-
require-from-string "^2.0.2"
4531-
uri-js "^4.2.2"
45324522

45334523
analytics-utils@^1.0.10:
45344524
version "1.0.10"
@@ -6285,10 +6275,10 @@ diff-sequences@^29.6.3:
62856275
resolved "https://registry.yarnpkg.com/diff-sequences/-/diff-sequences-29.6.3.tgz#4deaf894d11407c51efc8418012f9e70b84ea921"
62866276
integrity sha512-EjePK1srD3P08o2j4f0ExnylqRs5B9tJjcp9t1krH2qRi8CCdsYfwe9JgSLurFBWwq4uOlipzfk5fHNvwFKr8Q==
62876277

6288-
diff@^5.0.0:
6289-
version "5.0.0"
6290-
resolved "https://registry.npmjs.org/diff/-/diff-5.0.0.tgz"
6291-
integrity sha512-/VTCrvm5Z0JGty/BWHljh+BAiw3IK+2j87NGMu8Nwc/f48WoDAC395uomO9ZD117ZOBaHmkX1oyLvkVM/aIT3w==
6278+
diff@^5.2.2:
6279+
version "5.2.2"
6280+
resolved "https://registry.yarnpkg.com/diff/-/diff-5.2.2.tgz#0a4742797281d09cfa699b79ea32d27723623bad"
6281+
integrity sha512-vtcDfH3TOjP8UekytvnHH1o1P4FcUdt4eQ1Y+Abap1tk/OB2MWQvcwS2ClCd1zuIhc3JKOx6p3kod8Vfys3E+A==
62926282

62936283
diffie-hellman@^5.0.3:
62946284
version "5.0.3"
@@ -7291,6 +7281,11 @@ fast-text-encoding@^1.0.6:
72917281
resolved "https://registry.npmjs.org/fast-text-encoding/-/fast-text-encoding-1.0.6.tgz"
72927282
integrity sha512-VhXlQgj9ioXCqGstD37E/HBeqEGV/qOD/kmbVG8h5xKBYvM1L3lR1Zn4555cQ8GkYbJa8aJSipLPndE1k6zK2w==
72937283

7284+
fast-uri@^3.0.1:
7285+
version "3.1.0"
7286+
resolved "https://registry.yarnpkg.com/fast-uri/-/fast-uri-3.1.0.tgz#66eecff6c764c0df9b762e62ca7edcfb53b4edfa"
7287+
integrity sha512-iPeeDKJSWf4IEOasVVrknXpaBV0IApz/gp7S2bb7Z4Lljbl2MGJRqInZiUrQwV16cpzw/D3S5j5Julj/gT52AA==
7288+
72947289
fastq@^1.6.0:
72957290
version "1.11.1"
72967291
resolved "https://registry.npmjs.org/fastq/-/fastq-1.11.1.tgz"
@@ -9082,7 +9077,7 @@ json-schema-merge-allof@^0.8.1:
90829077

90839078
json-schema-traverse@^0.4.1:
90849079
version "0.4.1"
9085-
resolved "https://registry.npmjs.org/json-schema-traverse/-/json-schema-traverse-0.4.1.tgz"
9080+
resolved "https://registry.yarnpkg.com/json-schema-traverse/-/json-schema-traverse-0.4.1.tgz#69f6a87d9513ab8bb8fe63bdb0979c448e684660"
90869081
integrity sha512-xbbCH5dCYU5T8LcEhhuh7HJ88HXuW3qsI3Y0zOZFKfZEHcpWiHU/Jxzk629Brsab/mMiHQti9wMP+845RPe3Vg==
90879082

90889083
json-schema-traverse@^1.0.0:
@@ -9496,10 +9491,10 @@ makeerror@1.0.12:
94969491
dependencies:
94979492
tmpl "1.0.5"
94989493

9499-
markdown-it@^14.0.0:
9500-
version "14.1.0"
9501-
resolved "https://registry.npmjs.org/markdown-it/-/markdown-it-14.1.0.tgz"
9502-
integrity sha512-a54IwgWPaeBCAAsv13YgmALOF1elABB08FxO9i+r4VFk5Vl4pKokRPeX8u5TCgSsPi6ec1otfLjdOpVcgbpshg==
9494+
markdown-it@>=14.1.1, markdown-it@^14.0.0:
9495+
version "14.1.1"
9496+
resolved "https://registry.yarnpkg.com/markdown-it/-/markdown-it-14.1.1.tgz#856f90b66fc39ae70affd25c1b18b581d7deee1f"
9497+
integrity sha512-BuU2qnTti9YKgK5N+IeMubp14ZUKUUw7yeJbkjtosvHiP0AZ5c8IAgEMk79D0eC8F23r4Ac/q8cAIFdm2FtyoA==
95039498
dependencies:
95049499
argparse "^2.0.1"
95059500
entities "^4.4.0"
@@ -10729,7 +10724,12 @@ punycode@^1.4.1:
1072910724
resolved "https://registry.yarnpkg.com/punycode/-/punycode-1.4.1.tgz#c0d5a63b2718800ad8e1eb0fa5269c84dd41845e"
1073010725
integrity sha512-jmYNElW7yvO7TV33CjSmvSiE2yco3bV2czu/OzDKdMNVZQWfxCblURLhf+47syQRBntjfLdd/H0egrzIG+oaFQ==
1073110726

10732-
punycode@^2.1.0, punycode@^2.1.1:
10727+
punycode@^2.1.0:
10728+
version "2.3.1"
10729+
resolved "https://registry.yarnpkg.com/punycode/-/punycode-2.3.1.tgz#027422e2faec0b25e1549c3e1bd8309b9133b6e5"
10730+
integrity sha512-vYt7UD1U9Wg6138shLtLOvdAu+8DsC/ilFtEVHcH+wydcSpNE20AfSOduf6MkRFahL5FY7X1oU7nKVZFtfq8Fg==
10731+
10732+
punycode@^2.1.1:
1073310733
version "2.1.1"
1073410734
resolved "https://registry.npmjs.org/punycode/-/punycode-2.1.1.tgz"
1073510735
integrity sha512-XRsRjdf+j5ml+y/6GKHPZbrF/8p2Yga0JPtdqTIY2Xe5ohJPD9saDJJLPvp9+NSBprVvevdXZybnj2cv8OEd0A==
@@ -10751,17 +10751,17 @@ pvutils@^1.1.3:
1075110751
resolved "https://registry.npmjs.org/pvutils/-/pvutils-1.1.3.tgz"
1075210752
integrity sha512-pMpnA0qRdFp32b1sJl1wOJNxZLQ2cbQx+k6tjNtZ8CpvVhNqEPRgivZ2WOUev2YMajecdH7ctUPDvEe87nariQ==
1075310753

10754-
qs@6.14.1:
10755-
version "6.14.1"
10756-
resolved "https://registry.yarnpkg.com/qs/-/qs-6.14.1.tgz#a41d85b9d3902f31d27861790506294881871159"
10757-
integrity sha512-4EK3+xJl8Ts67nLYNwqw/dsFVnCf+qR7RgXSK9jEEm9unao3njwMDdmsdvoKBKHzxd7tCYz5e5M+SnMjdtXGQQ==
10754+
qs@6.14.2:
10755+
version "6.14.2"
10756+
resolved "https://registry.yarnpkg.com/qs/-/qs-6.14.2.tgz#b5634cf9d9ad9898e31fba3504e866e8efb6798c"
10757+
integrity sha512-V/yCWTTF7VJ9hIh18Ugr2zhJMP01MY7c5kh4J870L7imm6/DIzBsNLTXzMwUA3yZ5b/KBqLx8Kp3uRvd7xSe3Q==
1075810758
dependencies:
1075910759
side-channel "^1.1.0"
1076010760

1076110761
qs@^6.12.3:
10762-
version "6.14.0"
10763-
resolved "https://registry.yarnpkg.com/qs/-/qs-6.14.0.tgz#c63fa40680d2c5c941412a0e899c89af60c0a930"
10764-
integrity sha512-YWWTjgABSKcvs/nWBi9PycY/JiPJqOD4JA6o9Sej2AtvSGarXxKC3OQSk4pAarbdQlKAh5D4FCQkJNkW+GAn3w==
10762+
version "6.15.0"
10763+
resolved "https://registry.yarnpkg.com/qs/-/qs-6.15.0.tgz#db8fd5d1b1d2d6b5b33adaf87429805f1909e7b3"
10764+
integrity sha512-mAZTtNCeetKMH+pSjrb76NAM8V9a05I9aBZOHztWy/UqcJdQYNsf59vrRKWnojAT9Y+GbIvoTBC++CPHqpDBhQ==
1076510765
dependencies:
1076610766
side-channel "^1.1.0"
1076710767

@@ -13233,7 +13233,7 @@ upper-case@^2.0.2:
1323313233

1323413234
uri-js@^4.2.2:
1323513235
version "4.4.1"
13236-
resolved "https://registry.npmjs.org/uri-js/-/uri-js-4.4.1.tgz"
13236+
resolved "https://registry.yarnpkg.com/uri-js/-/uri-js-4.4.1.tgz#9b1a52595225859e55f669d928f88c6c57f2a77e"
1323713237
integrity sha512-7rKUyy33Q1yc98pQ1DAmLtwX109F7TIfWlW1Ydo8Wl1ii1SeHieeh0HHfPeL2fMXK6z0s8ecKs9frCuLJvndBg==
1323813238
dependencies:
1323913239
punycode "^2.1.0"

0 commit comments

Comments
 (0)