From 026910fd2b380ad0ec47c6af363884f6929721b8 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 6 Sep 2023 01:30:23 +0000 Subject: [PATCH] fix: package.json & package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-LODASH-567746 --- package-lock.json | 74 ++++++++++++++++++++++++++--------------------- package.json | 2 +- 2 files changed, 42 insertions(+), 34 deletions(-) diff --git a/package-lock.json b/package-lock.json index 5d26bbe..0378c73 100644 --- a/package-lock.json +++ b/package-lock.json @@ -51,12 +51,12 @@ "array-parallel": { "version": "0.1.3", "resolved": "https://registry.npmjs.org/array-parallel/-/array-parallel-0.1.3.tgz", - "integrity": "sha1-j3hTCJJu1apHjEfmTRszS2wMlH0=" + "integrity": "sha512-TDPTwSWW5E4oiFiKmz6RGJ/a80Y91GuLgUYuLd49+XBS75tYo8PNgaT2K/OxuQYqkoI852MDGBorg9OcUSTQ8w==" }, "array-series": { "version": "0.1.5", "resolved": "https://registry.npmjs.org/array-series/-/array-series-0.1.5.tgz", - "integrity": "sha1-3103v8XC7wdV4qpPkv6ufUtaly8=" + "integrity": "sha512-L0XlBwfx9QetHOsbLDrE/vh2t018w9462HM3iaFfxRiK83aJjAt/Ja3NMkOW7FICwWTlQBa3ZbL5FKhuQWkDrg==" }, "asn1": { "version": "0.2.3", @@ -73,7 +73,7 @@ "async": { "version": "1.5.2", "resolved": "https://registry.npmjs.org/async/-/async-1.5.2.tgz", - "integrity": "sha1-7GphrlZIDAw8skHJVhjiCJL5Zyo=" + "integrity": "sha512-nSVgobk4rv61R9PUSDtYt7mPVB2olxNR5RWJcAsH676/ef11bUZwvu7+RGYrYauVdDPcO519v68wRhXQtxsV9w==" }, "asynckit": { "version": "0.4.0", @@ -373,7 +373,6 @@ "version": "4.0.2", "resolved": "https://registry.npmjs.org/cross-spawn/-/cross-spawn-4.0.2.tgz", "integrity": "sha1-e5JHYhwjrf3ThWAEqCPL45dCTUE=", - "dev": true, "requires": { "lru-cache": "^4.0.1", "which": "^1.2.9" @@ -382,14 +381,12 @@ "isexe": { "version": "2.0.0", "resolved": "https://registry.npmjs.org/isexe/-/isexe-2.0.0.tgz", - "integrity": "sha1-6PvzdNxVb/iUehDcsFctYz8s+hA=", - "dev": true + "integrity": "sha1-6PvzdNxVb/iUehDcsFctYz8s+hA=" }, "lru-cache": { "version": "4.1.3", "resolved": "https://registry.npmjs.org/lru-cache/-/lru-cache-4.1.3.tgz", "integrity": "sha512-fFEhvcgzuIoJVUF8fYr5KR0YqxD238zgObTps31YdADwPPAp82a4M8TrckkWyx7ekNlf9aBcVn81cFwwXngrJA==", - "dev": true, "requires": { "pseudomap": "^1.0.2", "yallist": "^2.1.2" @@ -399,7 +396,6 @@ "version": "1.3.1", "resolved": "https://registry.npmjs.org/which/-/which-1.3.1.tgz", "integrity": "sha512-HxJdYWq1MTIQbJ3nw0cqssHoTNU267KlrDuGZ1WYlxDStUtKUhOaJmh112/TZmHxxUfuJqPXSOm7tDyas0OSIQ==", - "dev": true, "requires": { "isexe": "^2.0.0" } @@ -447,6 +443,7 @@ "version": "2.2.0", "resolved": "https://registry.npmjs.org/debug/-/debug-2.2.0.tgz", "integrity": "sha1-+HBX6ZWxofauaklgZkE3vFbwOdo=", + "dev": true, "requires": { "ms": "0.7.1" } @@ -717,13 +714,29 @@ } }, "gm": { - "version": "1.21.1", - "resolved": "https://registry.npmjs.org/gm/-/gm-1.21.1.tgz", - "integrity": "sha1-ftXtBds20wwZQ/OcO8HIObjyNh0=", + "version": "1.23.1", + "resolved": "https://registry.npmjs.org/gm/-/gm-1.23.1.tgz", + "integrity": "sha512-wYGVAa8/sh9ggF5qWoOs6eArcAgwEPkDNvf637jHRHkMUznvs7m/Q2vrc0KLN6B8px3nnRJqJcXK4mTK6lLFmg==", "requires": { "array-parallel": "~0.1.3", "array-series": "~0.1.5", - "debug": "~2.2.0" + "cross-spawn": "^4.0.0", + "debug": "^3.1.0" + }, + "dependencies": { + "debug": { + "version": "3.2.7", + "resolved": "https://registry.npmjs.org/debug/-/debug-3.2.7.tgz", + "integrity": "sha512-CFjzYYAi4ThfiQvizrFQevTTXHtnCqWfe7x1AhgEscTz6ZbLbfoLRLPugTQyBth6f8ZERVUSyWHFD/7Wu4t1XQ==", + "requires": { + "ms": "^2.1.1" + } + }, + "ms": { + "version": "2.1.3", + "resolved": "https://registry.npmjs.org/ms/-/ms-2.1.3.tgz", + "integrity": "sha512-6FlzubTLZG3J2a/NVCAleEhjzq5oxgHyaCU9yYXvcLsvoVaHJq/s5xXI6/XXP6tz7R9xAOtHnSO/tXtF3WRTlA==" + } } }, "graceful-fs": { @@ -967,15 +980,14 @@ "dev": true }, "grunt-responsive-images": { - "version": "0.1.9", - "resolved": "https://registry.npmjs.org/grunt-responsive-images/-/grunt-responsive-images-0.1.9.tgz", - "integrity": "sha1-5ctbJO223ZACVx9Lw2e+jPjXUg8=", + "version": "1.10.0", + "resolved": "https://registry.npmjs.org/grunt-responsive-images/-/grunt-responsive-images-1.10.0.tgz", + "integrity": "sha512-NNcpoa2hf7yZkTntDsJ2k05AxgPdA/cZwshJndtjyt9CyZSqejd0hkJ49NBgfer1n7BLE+FJTXH5D4tiaDFzzg==", "requires": { "async": "~1.5.2", - "gm": "~1.21.1", - "grunt": "~0.4.5", - "lodash": "~4.5.1", - "node-imagemagick": "~0.1.8" + "gm": "~1.23.0", + "grunt": ">=0.4.5", + "lodash": ">=4.6.1" } }, "gzip-size": { @@ -1241,9 +1253,9 @@ "dev": true }, "lodash": { - "version": "4.5.1", - "resolved": "https://registry.npmjs.org/lodash/-/lodash-4.5.1.tgz", - "integrity": "sha1-gOigdMpfOJOmscELKmNkktcQwxY=" + "version": "4.17.21", + "resolved": "https://registry.npmjs.org/lodash/-/lodash-4.17.21.tgz", + "integrity": "sha512-v2kDEe57lecTulaDIuNTPy3Ry4gLGJ6Z1O3vE1krgXZNrsQ+LFTGHVxVjcXPs17LhbZVGedAJv8XZ1tvj5FvSg==" }, "log-driver": { "version": "1.2.5", @@ -1358,12 +1370,8 @@ "ms": { "version": "0.7.1", "resolved": "https://registry.npmjs.org/ms/-/ms-0.7.1.tgz", - "integrity": "sha1-nNE8A62/8ltl7/3nzoZO6VIBcJg=" - }, - "node-imagemagick": { - "version": "0.1.8", - "resolved": "https://registry.npmjs.org/node-imagemagick/-/node-imagemagick-0.1.8.tgz", - "integrity": "sha1-tiU9JX2MoNA1z4IVkSo3jwmYr8c=" + "integrity": "sha1-nNE8A62/8ltl7/3nzoZO6VIBcJg=", + "dev": true }, "nodeunit": { "version": "0.9.5", @@ -1419,6 +1427,7 @@ "version": "0.1.4", "bundled": true, "dev": true, + "optional": true, "requires": { "kind-of": "^3.0.2", "longest": "^1.0.1", @@ -2189,7 +2198,8 @@ "longest": { "version": "1.0.1", "bundled": true, - "dev": true + "dev": true, + "optional": true }, "loose-envify": { "version": "1.2.0", @@ -2878,8 +2888,7 @@ "pseudomap": { "version": "1.0.2", "resolved": "https://registry.npmjs.org/pseudomap/-/pseudomap-1.0.2.tgz", - "integrity": "sha1-8FKijacOYYkX7wqKw0wa5aaChrM=", - "dev": true + "integrity": "sha1-8FKijacOYYkX7wqKw0wa5aaChrM=" }, "punycode": { "version": "1.4.1", @@ -3480,8 +3489,7 @@ "yallist": { "version": "2.1.2", "resolved": "https://registry.npmjs.org/yallist/-/yallist-2.1.2.tgz", - "integrity": "sha1-HBH5IY8HYImkfdUS+TxmmaaoHVI=", - "dev": true + "integrity": "sha1-HBH5IY8HYImkfdUS+TxmmaaoHVI=" }, "yargs": { "version": "3.10.0", diff --git a/package.json b/package.json index 28e2acd..9cbf846 100644 --- a/package.json +++ b/package.json @@ -16,6 +16,6 @@ "grunt-mkdir": "~0.1.2" }, "dependencies": { - "grunt-responsive-images": "^0.1.6" + "grunt-responsive-images": "^1.10.0" } }