Skip to content

Commit e4a16ed

Browse files
fix(security): patch micromatch dependency vulnerabilities (#1042)
1 parent 18506db commit e4a16ed

File tree

2 files changed

+6
-11
lines changed

2 files changed

+6
-11
lines changed

package.json

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -109,5 +109,8 @@
109109
"semantic-release": "semantic-release",
110110
"test": "jest",
111111
"test:coverage": "jest --coverage"
112+
},
113+
"resolutions": {
114+
"semantic-release-slack-bot/**/micromatch": "^4.0.8"
112115
}
113116
}

yarn.lock

Lines changed: 3 additions & 11 deletions
Original file line numberDiff line numberDiff line change
@@ -3090,7 +3090,7 @@ brace-expansion@^2.0.1:
30903090
dependencies:
30913091
balanced-match "^1.0.0"
30923092

3093-
braces@^3.0.1, braces@^3.0.3, braces@~3.0.2:
3093+
braces@^3.0.3, braces@~3.0.2:
30943094
version "3.0.3"
30953095
resolved "https://registry.yarnpkg.com/braces/-/braces-3.0.3.tgz#490332f40919452272d55a8480adc0c441358789"
30963096
integrity sha512-yQbXgO/OSZVD2IsiLlro+7Hf6Q18EJrKSEsdoMzKePKXct3gvD8oLcOQdIzGupr5Fj+EDe8gO/lxc1BzfMpxvA==
@@ -6999,15 +6999,7 @@ micromark@^2.11.3, micromark@~2.11.0, micromark@~2.11.3:
69996999
debug "^4.0.0"
70007000
parse-entities "^2.0.0"
70017001

7002-
micromatch@4.0.2:
7003-
version "4.0.2"
7004-
resolved "https://registry.yarnpkg.com/micromatch/-/micromatch-4.0.2.tgz#4fcb0999bf9fbc2fcbdd212f6d629b9a56c39259"
7005-
integrity sha512-y7FpHSbMUMoyPbYUSzO6PaZ6FyRnQOpHuKwbo1G+Knck95XVU4QAiKdGEnj5wwoS7PlOgthX/09u5iFJ+aYf5Q==
7006-
dependencies:
7007-
braces "^3.0.1"
7008-
picomatch "^2.0.5"
7009-
7010-
micromatch@^4.0.0, micromatch@^4.0.2, micromatch@^4.0.4:
7002+
micromatch@4.0.2, micromatch@^4.0.0, micromatch@^4.0.2, micromatch@^4.0.4, micromatch@^4.0.8:
70117003
version "4.0.8"
70127004
resolved "https://registry.yarnpkg.com/micromatch/-/micromatch-4.0.8.tgz#d66fa18f3a47076789320b9b1af32bd86d9fa202"
70137005
integrity sha512-PXwfBhYu0hBCPw8Dn0E+WDYb7af3dSLVWKi3HGv84IdF4TyFoC0ysxFd0Goxw7nSv4T/PzEJQxsYsEiFCKo2BA==
@@ -7974,7 +7966,7 @@ picocolors@^1.0.0:
79747966
resolved "https://registry.yarnpkg.com/picocolors/-/picocolors-1.0.0.tgz#cb5bdc74ff3f51892236eaf79d68bc44564ab81c"
79757967
integrity sha512-1fygroTLlHu66zi26VoTDv8yRgm0Fccecssto+MhsZ0D/DGW2sm8E8AjW7NU5VVTRt5GxbeZ5qBuJr+HyLYkjQ==
79767968

7977-
picomatch@^2.0.4, picomatch@^2.0.5, picomatch@^2.2.1, picomatch@^2.2.3, picomatch@^2.3.1:
7969+
picomatch@^2.0.4, picomatch@^2.2.1, picomatch@^2.2.3, picomatch@^2.3.1:
79787970
version "2.3.1"
79797971
resolved "https://registry.yarnpkg.com/picomatch/-/picomatch-2.3.1.tgz#3ba3833733646d9d3e4995946c1365a67fb07a42"
79807972
integrity sha512-JU3teHTNjmE2VCGFzuY8EXzCDVwEqB2a8fsIvwaStHhAWJEeVd1o1QD80CU6+ZdEXXSLbSsuLwJjkCBWqRQUVA==

0 commit comments

Comments
 (0)