Skip to content

Commit b88f5f7

Browse files
authored
chore(deps): update dependencies to address CVEs (#12266)
* chore(deps): hono 4.12.25 Signed-off-by: Tomasz Kania <tomasz.kania@pl.ibm.com> * chore(deps): markdown-it 14.2.0 Signed-off-by: Tomasz Kania <tomasz.kania@pl.ibm.com> * chore(deps): js-yaml 4.2.0 Signed-off-by: Tomasz Kania <tomasz.kania@pl.ibm.com> * chore(deps): ws 8.21.0, 7.5.11 Signed-off-by: Tomasz Kania <tomasz.kania@pl.ibm.com> * chore(deps): form-data 4.0.6 Signed-off-by: Tomasz Kania <tomasz.kania@pl.ibm.com> * chore(deps): tar 7.5.16 Signed-off-by: Tomasz Kania <tomasz.kania@pl.ibm.com> --------- Signed-off-by: Tomasz Kania <tomasz.kania@pl.ibm.com>
1 parent 2412220 commit b88f5f7

6 files changed

Lines changed: 55 additions & 55 deletions

File tree

package.json

Lines changed: 6 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -140,7 +140,7 @@
140140
"**/elasticsearch/agentkeepalive": "^4.5.0",
141141
"**/es5-ext": "^0.10.63",
142142
"**/fetch-mock/path-to-regexp": "^3.3.0",
143-
"**/form-data": "^4.0.4",
143+
"**/form-data": "^4.0.6",
144144
"**/glob-parent": "^6.0.0",
145145
"**/jest-config": "npm:@amoo-miki/jest-config@27.5.1",
146146
"**/jest-jasmine2": "npm:@amoo-miki/jest-jasmine2@27.5.1",
@@ -158,7 +158,7 @@
158158
"**/json5": "^2.2.3",
159159
"**/mime": "^3.0.0",
160160
"**/prismjs": "^1.30.0",
161-
"**/js-yaml": "^4.1.1",
161+
"**/js-yaml": "^4.2.0",
162162
"**/qs": "^6.15.2",
163163
"**/lodash-es": "^4.18.0",
164164
"**/lodash": "^4.18.0",
@@ -264,7 +264,7 @@
264264
"http-proxy-agent": "^2.1.0",
265265
"https-proxy-agent": "^5.0.0",
266266
"joi": "^18.2.1",
267-
"js-yaml": "^4.1.1",
267+
"js-yaml": "^4.2.0",
268268
"json-stable-stringify": "^1.0.1",
269269
"json-stringify-safe": "5.0.1",
270270
"json5": "^2.2.3",
@@ -298,7 +298,7 @@
298298
"set-value": "^4.1.0",
299299
"source-map-support": "^0.5.19",
300300
"symbol-observable": "^1.2.0",
301-
"tar": "^7.5.10",
301+
"tar": "^7.5.16",
302302
"tinygradient": "^1.1.5",
303303
"tslib": "^2.0.0",
304304
"type-detect": "^4.0.8",
@@ -384,7 +384,7 @@
384384
"@types/hjson": "^2.4.2",
385385
"@types/jest": "^28.1.8",
386386
"@types/jquery": "^3.3.31",
387-
"@types/js-yaml": "^4.0.5",
387+
"@types/js-yaml": "^4.0.9",
388388
"@types/json-stable-stringify": "^1.0.32",
389389
"@types/json5": "^0.0.30",
390390
"@types/license-checker": "^25.0.6",
@@ -495,7 +495,7 @@
495495
"listr": "^0.14.1",
496496
"load-json-file": "^6.2.0",
497497
"luxon": "^3.2.1",
498-
"markdown-it": "^14.1.1",
498+
"markdown-it": "^14.2.0",
499499
"mocha": "^10.1.0",
500500
"mock-fs": "^4.12.0",
501501
"monaco-editor": "^0.52.0",

packages/osd-agents/package.json

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -23,17 +23,17 @@
2323
"@opensearch-project/opensearch": "^2.13.0",
2424
"@types/cors": "^2.8.19",
2525
"@types/express": "^5.0.3",
26-
"@types/js-yaml": "^4.0.5",
26+
"@types/js-yaml": "^4.0.9",
2727
"@types/uuid": "^3.4.4",
2828
"cors": "^2.8.5",
2929
"date-fns": "^4.1.0",
3030
"dotenv": "^17.2.1",
3131
"express": "^5.1.0",
32-
"js-yaml": "^4.1.1",
32+
"js-yaml": "^4.2.0",
3333
"node-fetch": "^2.6.7",
3434
"ts-node": "^10.9.2",
3535
"uuid": "3.3.2",
36-
"ws": "^8.20.1",
36+
"ws": "^8.21.0",
3737
"zod": "^3.22.0"
3838
},
3939
"devDependencies": {

packages/osd-apm-config-loader/package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -13,7 +13,7 @@
1313
"dependencies": {
1414
"@elastic/safer-lodash-set": "0.0.0",
1515
"@osd/utils": "1.0.0",
16-
"js-yaml": "^4.1.1",
16+
"js-yaml": "^4.2.0",
1717
"lodash": "^4.18.0"
1818
},
1919
"devDependencies": {

packages/osd-config/package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -14,7 +14,7 @@
1414
"@osd/config-schema": "1.0.0",
1515
"@osd/logging": "1.0.0",
1616
"@osd/std": "1.0.0",
17-
"js-yaml": "^4.1.1",
17+
"js-yaml": "^4.2.0",
1818
"load-json-file": "^6.2.0",
1919
"lodash": "^4.18.0",
2020
"moment": "^2.24.0",

packages/osd-optimizer/package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -26,7 +26,7 @@
2626
"del": "^6.1.1",
2727
"execa": "^4.0.2",
2828
"jest-diff": "^27.5.1",
29-
"js-yaml": "^4.1.1",
29+
"js-yaml": "^4.2.0",
3030
"json-stable-stringify": "^1.0.1",
3131
"lmdb": "^2.8.0",
3232
"normalize-path": "^3.0.0",

yarn.lock

Lines changed: 43 additions & 43 deletions
Original file line numberDiff line numberDiff line change
@@ -5871,10 +5871,10 @@
58715871
resolved "https://registry.yarnpkg.com/@types/js-cookie/-/js-cookie-3.0.6.tgz#a04ca19e877687bd449f5ad37d33b104b71fdf95"
58725872
integrity sha512-wkw9yd1kEXOPnvEeEV1Go1MmxtBJL0RR79aOTAApecWFVu7w0NNXNqhcWgvw2YgZDYadliXkl14pa3WXw5jlCQ==
58735873

5874-
"@types/js-yaml@^4.0.5":
5875-
version "4.0.5"
5876-
resolved "https://registry.yarnpkg.com/@types/js-yaml/-/js-yaml-4.0.5.tgz#738dd390a6ecc5442f35e7f03fa1431353f7e138"
5877-
integrity sha512-FhpRzf927MNQdRZP0J5DLIdTXhjLYzeUTmLAu69mnVksLH9CJY3IuSeEgbKUki7GQZm0WqDkGzyxju2EZGD2wA==
5874+
"@types/js-yaml@^4.0.9":
5875+
version "4.0.9"
5876+
resolved "https://registry.yarnpkg.com/@types/js-yaml/-/js-yaml-4.0.9.tgz#cd82382c4f902fed9691a2ed79ec68c5898af4c2"
5877+
integrity sha512-k4MGaQl5TGo/iipqb2UDG2UwjXziSWkh0uysQelTlJpX1qGlpUZYm8PnO4DxG1qBomtJUdYJ6qR6xdIah10JLg==
58785878

58795879
"@types/json-schema@*", "@types/json-schema@^7.0.15", "@types/json-schema@^7.0.5", "@types/json-schema@^7.0.8", "@types/json-schema@^7.0.9":
58805880
version "7.0.15"
@@ -11857,16 +11857,16 @@ forever-agent@~0.6.1:
1185711857
resolved "https://registry.yarnpkg.com/forever-agent/-/forever-agent-0.6.1.tgz#fbc71f0c41adeb37f96c577ad1ed42d8fdacca91"
1185811858
integrity sha512-j0KLYPhm6zeac4lz3oJ3o65qvgQCcPubiyotZrXqEaG4hNagNYO8qdlUrX5vwqv9ohqeT/Z3j6+yW067yWWdUw==
1185911859

11860-
form-data@^3.0.0, form-data@^4.0.0, form-data@^4.0.4, form-data@^4.0.5, form-data@~4.0.4:
11861-
version "4.0.5"
11862-
resolved "https://registry.yarnpkg.com/form-data/-/form-data-4.0.5.tgz#b49e48858045ff4cbf6b03e1805cebcad3679053"
11863-
integrity sha512-8RipRLol37bNs2bhoV67fiTEvdTrbMUYcFTiy3+wuuOnUog2QBHCZWXDRijWQfAkhBj2Uf5UnVaiWwA5vdd82w==
11860+
form-data@^3.0.0, form-data@^4.0.0, form-data@^4.0.4, form-data@^4.0.5, form-data@^4.0.6, form-data@~4.0.4:
11861+
version "4.0.6"
11862+
resolved "https://registry.yarnpkg.com/form-data/-/form-data-4.0.6.tgz#28e864e1b786dbebb68db1f452f9635278665827"
11863+
integrity sha512-vKatAh4SlVfgbv+YtmhiRjhEMJsYpsG1Y2rMQtR+SVSbytsSD1YGzDIcrAJmdFec88u/+VoGmxnl+80gL1tRCQ==
1186411864
dependencies:
1186511865
asynckit "^0.4.0"
1186611866
combined-stream "^1.0.8"
1186711867
es-set-tostringtag "^2.1.0"
11868-
hasown "^2.0.2"
11869-
mime-types "^2.1.12"
11868+
hasown "^2.0.4"
11869+
mime-types "^2.1.35"
1187011870

1187111871
formidable@^2.1.2:
1187211872
version "2.1.5"
@@ -12532,10 +12532,10 @@ hasha@^5.0.0:
1253212532
is-stream "^2.0.0"
1253312533
type-fest "^0.8.0"
1253412534

12535-
hasown@^2.0.0, hasown@^2.0.2:
12536-
version "2.0.2"
12537-
resolved "https://registry.yarnpkg.com/hasown/-/hasown-2.0.2.tgz#003eaf91be7adc372e84ec59dc37252cedb80003"
12538-
integrity sha512-0hJU9SCPvmMzIBdZFqNPXWa6dqh7WdH0cII9y+CyS8rG3nL48Bclra9HmKhVVUHyPWNH5Y7xDwAB7bfgSjkUMQ==
12535+
hasown@^2.0.0, hasown@^2.0.2, hasown@^2.0.4:
12536+
version "2.0.4"
12537+
resolved "https://registry.yarnpkg.com/hasown/-/hasown-2.0.4.tgz#8c62d8cb90beb2aad5d0a5b67581ad9854c3f003"
12538+
integrity sha512-T2UbfbBEF32wiepXIsMlTW9+dDYC6wMh/t/vYA4tuOMKqWz/n3vr1NFSxQiyP+zk2mXsoMA/i/7qV6LKut1t1A==
1253912539
dependencies:
1254012540
function-bind "^1.1.2"
1254112541

@@ -12648,9 +12648,9 @@ hoist-non-react-statics@^3.0.0, hoist-non-react-statics@^3.1.0, hoist-non-react-
1264812648
react-is "^16.7.0"
1264912649

1265012650
hono@^4.11.4:
12651-
version "4.12.23"
12652-
resolved "https://registry.yarnpkg.com/hono/-/hono-4.12.23.tgz#998b91651686149f0e6edbb8564d604da04f3cf8"
12653-
integrity sha512-eIaZ9qDgu7XV0pxOCrg7/WhnQ6Ivm22UcxhXx/A3dcbqbbYgBEkc6e/J/s7j2tS96zoB0S9VBdLwQNCWwUo4LA==
12651+
version "4.12.25"
12652+
resolved "https://registry.yarnpkg.com/hono/-/hono-4.12.25.tgz#f2d9996a54e8c9c0c5f5de1c8f3a962e43a98c4e"
12653+
integrity sha512-2NFaIyNVgJmBs/ecmtGzlmluTFs5cHEWGTdu0t1HBwYzoGXOL5nUQBRMXsXWla5i4KkG//QMzVP88m1+I3fdAQ==
1265412654

1265512655
hosted-git-info@^2.1.4:
1265612656
version "2.8.9"
@@ -14550,10 +14550,10 @@ js-tiktoken@^1.0.12:
1455014550
resolved "https://registry.yarnpkg.com/js-tokens/-/js-tokens-4.0.0.tgz#19203fb59991df98e3a287050d4647cdeaf32499"
1455114551
integrity sha512-RdJUflcE3cUzKiMqQgsCu06FPu9UdIJO0beYbPhHN4k6apgJtifcoCtT9bcxOpYBtpD2kCM6Sbzg4CausW/PKQ==
1455214552

14553-
js-yaml@^3.13.1, js-yaml@^4.1.0, js-yaml@^4.1.1, js-yaml@~4.1.0:
14554-
version "4.1.1"
14555-
resolved "https://registry.yarnpkg.com/js-yaml/-/js-yaml-4.1.1.tgz#854c292467705b699476e1a2decc0c8a3458806b"
14556-
integrity sha512-qQKT4zQxXl8lLwBtHMWwaTcGfFOZviOJet3Oy/xmGk2gZH677CJM9EvtfdSkgWcATZhj/55JZ0rmy3myCT5lsA==
14553+
js-yaml@^3.13.1, js-yaml@^4.1.0, js-yaml@^4.2.0, js-yaml@~4.1.0:
14554+
version "4.2.0"
14555+
resolved "https://registry.yarnpkg.com/js-yaml/-/js-yaml-4.2.0.tgz#2bd9e85682dd91bd469afb809d816043b3d49524"
14556+
integrity sha512-ePWsvanv0DWuDRsW8dnt+R4jQ31SCRCQ7hhNcPXZPsoBZiemuZNYGf7adZdqX2D86j6rvKp3RpCxVTSb8WQlOw==
1455714557
dependencies:
1455814558
argparse "^2.0.1"
1455914559

@@ -14976,10 +14976,10 @@ lines-and-columns@^1.1.6:
1497614976
resolved "https://registry.yarnpkg.com/lines-and-columns/-/lines-and-columns-1.2.4.tgz#eca284f75d2965079309dc0ad9255abb2ebc1632"
1497714977
integrity sha512-7ylylesZQ/PV29jhEDl3Ufjo6ZX7gCqJr5F7PKrqc93v7fzSymt1BpwEU8nAUXs8qzzvqhbjhK5QZg6Mt/HkBg==
1497814978

14979-
linkify-it@^5.0.0:
14980-
version "5.0.0"
14981-
resolved "https://registry.yarnpkg.com/linkify-it/-/linkify-it-5.0.0.tgz#9ef238bfa6dc70bd8e7f9572b52d369af569b421"
14982-
integrity sha512-5aHCbzQRADcdP+ATqnDuhhJ/MRIqDkZX5pyjFHRRysS8vZ5AbqGEoFIb6pYHPZ+L/OC2Lc+xT8uHVVR5CAK/wQ==
14979+
linkify-it@^5.0.1:
14980+
version "5.0.1"
14981+
resolved "https://registry.yarnpkg.com/linkify-it/-/linkify-it-5.0.1.tgz#10c4cecbb5c6828eabf81d3c801adc4a542dfb55"
14982+
integrity sha512-wVoTjP4Q6R0NW5hiZkVJaFZPWgtXfoGF+6LucL3/FtiNjmcHhYjEr5f1Kqjirc1nBW07J/ZuRFumqr2oqccEWg==
1498314983
dependencies:
1498414984
uc.micro "^2.0.0"
1498514985

@@ -15434,14 +15434,14 @@ markdown-escapes@^1.0.0:
1543415434
resolved "https://registry.yarnpkg.com/markdown-escapes/-/markdown-escapes-1.0.4.tgz#c95415ef451499d7602b91095f3c8e8975f78535"
1543515435
integrity sha512-8z4efJYk43E0upd0NbVXwgSTQs6cT3T06etieCMEg7dRbzCbxUCK/GHlX8mhHRDcp+OLlHkPKsvqQTCvsRl2cg==
1543615436

15437-
markdown-it@^14.1.1:
15438-
version "14.1.1"
15439-
resolved "https://registry.yarnpkg.com/markdown-it/-/markdown-it-14.1.1.tgz#856f90b66fc39ae70affd25c1b18b581d7deee1f"
15440-
integrity sha512-BuU2qnTti9YKgK5N+IeMubp14ZUKUUw7yeJbkjtosvHiP0AZ5c8IAgEMk79D0eC8F23r4Ac/q8cAIFdm2FtyoA==
15437+
markdown-it@^14.2.0:
15438+
version "14.2.0"
15439+
resolved "https://registry.yarnpkg.com/markdown-it/-/markdown-it-14.2.0.tgz#06d48d9035e77d5b1c85adb315482fc8240289ef"
15440+
integrity sha512-1TGiQiJVRQ3NPmZH6sx5Cfnmg6GQm9jvC1ch4TK511NjSJvjzKLzn5pPfZRNZkRPZP0HqCioSndqH8v2nRaWVQ==
1544115441
dependencies:
1544215442
argparse "^2.0.1"
1544315443
entities "^4.4.0"
15444-
linkify-it "^5.0.0"
15444+
linkify-it "^5.0.1"
1544515445
mdurl "^2.0.0"
1544615446
punycode.js "^2.3.1"
1544715447
uc.micro "^2.1.0"
@@ -15679,7 +15679,7 @@ mime-db@1.52.0, "mime-db@>= 1.43.0 < 2", mime-db@^1.52.0, mime-db@^1.54.0:
1567915679
resolved "https://registry.yarnpkg.com/mime-db/-/mime-db-1.54.0.tgz#cddb3ee4f9c64530dff640236661d42cb6a314f5"
1568015680
integrity sha512-aU5EJuIN2WDemCcAp2vFBfp/m4EAhWJnUNSSw0ixs7/kXbd6Pg64EmwJkNdFhB8aWt1sH2CTXrLxo/iAGV3oPQ==
1568115681

15682-
mime-types@^2.1.12, mime-types@^2.1.27, mime-types@~2.1.17, mime-types@~2.1.19, mime-types@~2.1.24, mime-types@~2.1.34:
15682+
mime-types@^2.1.27, mime-types@^2.1.35, mime-types@~2.1.17, mime-types@~2.1.19, mime-types@~2.1.24, mime-types@~2.1.34:
1568315683
version "2.1.35"
1568415684
resolved "https://registry.yarnpkg.com/mime-types/-/mime-types-2.1.35.tgz#381a871b62a734450660ae3deee44813f70d959a"
1568515685
integrity sha512-ZDY+bPm5zTTF+YpCrAU9nK0UgICYPT0QtT1NZWFv4s++TNkcgVaT0g6+4R2uI4MjQjzysHB1zxuWL50hzaeXiw==
@@ -20219,10 +20219,10 @@ tar-stream@^3.1.5:
2021920219
fast-fifo "^1.2.0"
2022020220
streamx "^2.15.0"
2022120221

20222-
tar@^7.5.10:
20223-
version "7.5.11"
20224-
resolved "https://registry.yarnpkg.com/tar/-/tar-7.5.11.tgz#1250fae45d98806b36d703b30973fa8e0a6d8868"
20225-
integrity sha512-ChjMH33/KetonMTAtpYdgUFr0tbz69Fp2v7zWxQfYZX4g5ZN2nOBXm1R2xyA+lMIKrLKIoKAwFj93jE/avX9cQ==
20222+
tar@^7.5.16:
20223+
version "7.5.16"
20224+
resolved "https://registry.yarnpkg.com/tar/-/tar-7.5.16.tgz#f11e063afed4554f758049d082909e37d6b53ced"
20225+
integrity sha512-56adEpPMouktRlBLXiaYFFzZ/3+JXa8P9n7WbR+ibIjtviN55mEaOkiysCnPnWm+7kkui1Dn8J9l+g6zV8731w==
2022620226
dependencies:
2022720227
"@isaacs/fs-minipass" "^4.0.0"
2022820228
chownr "^3.0.0"
@@ -22205,14 +22205,14 @@ write-pkg@^4.0.0:
2220522205
write-json-file "^3.2.0"
2220622206

2220722207
ws@^7.3.1, ws@^7.4.6:
22208-
version "7.5.10"
22209-
resolved "https://registry.yarnpkg.com/ws/-/ws-7.5.10.tgz#58b5c20dc281633f6c19113f39b349bd8bd558d9"
22210-
integrity sha512-+dbF1tHwZpXcbOJdVOkzLDxZP1ailvSxM6ZweXTegylPny803bFhA+vqBYw4s31NSAk4S2Qz+AKXK9a4wkdjcQ==
22211-
22212-
ws@^8.18.0, ws@^8.18.3, ws@^8.20.1, ws@~8.18.3:
22213-
version "8.20.1"
22214-
resolved "https://registry.yarnpkg.com/ws/-/ws-8.20.1.tgz#91a9ae2b312ccf98e0a85ec499b48cef45ab0ddb"
22215-
integrity sha512-It4dO0K5v//JtTXuPkfEOaI3uUN87iYPnqo/ZzqCoG3g8uhA66QUMs/SrM0YK7/NAu+r4LMh/9dq2A7k+rHs+w==
22208+
version "7.5.11"
22209+
resolved "https://registry.yarnpkg.com/ws/-/ws-7.5.11.tgz#9460daf1812bb81a423c5b9eac746941a86310fa"
22210+
integrity sha512-zS54Oen9bITtp7kp2XM3AydrCIq1D+HwJOuH+c+e4LfpL/lotP5osijd+UoMnxwAam1GN8R4KtLAyIrIcBNpiA==
22211+
22212+
ws@^8.18.0, ws@^8.18.3, ws@^8.20.1, ws@^8.21.0, ws@~8.18.3:
22213+
version "8.21.0"
22214+
resolved "https://registry.yarnpkg.com/ws/-/ws-8.21.0.tgz#012e413fc07429945121b0c153158c4343086951"
22215+
integrity sha512-Vsp28b7DRcimFQvrqu2Wek3z1iYxDCWqHYB8Qsnk/S4RfaCQzPGPyBNuVjJV3cd6UiKtUtp6sNM77gWvzcCH+g==
2221622216

2221722217
wsl-utils@^0.1.0:
2221822218
version "0.1.0"

0 commit comments

Comments
 (0)