Skip to content

Commit

Permalink
fix: Dependabot alerts for semver, tough-cookie (#12962)
Browse files Browse the repository at this point in the history
* fix: upgrade semver@^7.5.4

* fix: resulution tough-cookie@^4.1.3

* chore: fix yarn.lock

---------

Co-authored-by: MJ ☂️ <[email protected]>
  • Loading branch information
0618 and zhamujun authored Jul 20, 2023
1 parent a2002d4 commit 175a86b
Show file tree
Hide file tree
Showing 13 changed files with 71 additions and 33 deletions.
3 changes: 2 additions & 1 deletion package.json
Original file line number Diff line number Diff line change
Expand Up @@ -167,6 +167,7 @@
"json5": "^2.2.3",
"nth-check": "^2.0.1",
"undici": "^5.8.0",
"pkg-fetch": "https://github.com/aws-amplify/pkg-fetch#ad4a21feb533d338bf951e7ba28cea7256aedeff"
"pkg-fetch": "https://github.com/aws-amplify/pkg-fetch#ad4a21feb533d338bf951e7ba28cea7256aedeff",
"tough-cookie": "^4.1.3"
}
}
2 changes: 1 addition & 1 deletion packages/amplify-app/package.json
Original file line number Diff line number Diff line change
Expand Up @@ -38,7 +38,7 @@
"node-emoji": "^1.10.0",
"ora": "^4.0.3",
"rimraf": "^3.0.0",
"semver": "^7.3.5",
"semver": "^7.5.4",
"xcode": "^2.1.0",
"yargs": "^15.1.0"
},
Expand Down
2 changes: 1 addition & 1 deletion packages/amplify-cli-core/package.json
Original file line number Diff line number Diff line change
Expand Up @@ -53,7 +53,7 @@
"open": "^8.4.0",
"ora": "^4.0.3",
"proxy-agent": "^5.0.0",
"semver": "^7.3.5",
"semver": "^7.5.4",
"typescript-json-schema": "~0.52.0",
"which": "^2.0.2",
"yaml": "^2.2.2"
Expand Down
2 changes: 1 addition & 1 deletion packages/amplify-cli/package.json
Original file line number Diff line number Diff line change
Expand Up @@ -97,7 +97,7 @@
"ora": "^4.0.3",
"progress": "^2.0.3",
"promise-sequential": "^1.1.1",
"semver": "^7.3.5",
"semver": "^7.5.4",
"tar-fs": "^2.1.1",
"treeify": "^1.1.0",
"update-notifier": "^5.1.0",
Expand Down
2 changes: 1 addition & 1 deletion packages/amplify-e2e-core/package.json
Original file line number Diff line number Diff line change
Expand Up @@ -40,7 +40,7 @@
"node-pty": "beta",
"retimer": "2.0.0",
"rimraf": "^3.0.0",
"semver": "^7.3.5",
"semver": "^7.5.4",
"strip-ansi": "^6.0.0",
"throat": "^5.0.0",
"uuid": "^8.3.2"
Expand Down
2 changes: 1 addition & 1 deletion packages/amplify-go-function-runtime-provider/package.json
Original file line number Diff line number Diff line change
Expand Up @@ -32,7 +32,7 @@
"fs-extra": "^8.1.0",
"get-port": "^5.1.1",
"glob": "^7.2.0",
"semver": "^7.3.5",
"semver": "^7.5.4",
"which": "^2.0.2"
},
"devDependencies": {
Expand Down
2 changes: 1 addition & 1 deletion packages/amplify-graphiql-explorer/package.json
Original file line number Diff line number Diff line change
Expand Up @@ -56,7 +56,7 @@
"sass-loader": "^12.3.0",
"semantic-ui-css": "^2.5.0",
"semantic-ui-react": "^2.1.3",
"semver": "^7.3.5",
"semver": "^7.5.4",
"source-map-loader": "^3.0.0",
"stream-browserify": "^3.0.0",
"style-loader": "^3.3.1",
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -30,7 +30,7 @@
"execa": "^5.1.1",
"fs-extra": "^8.1.0",
"glob": "^7.2.0",
"semver": "^7.3.5",
"semver": "^7.5.4",
"which": "^2.0.2"
},
"devDependencies": {
Expand Down
2 changes: 1 addition & 1 deletion packages/amplify-migration-tests/package.json
Original file line number Diff line number Diff line change
Expand Up @@ -34,7 +34,7 @@
"fs-extra": "^8.1.0",
"graphql-transformer-core": "^8.1.3",
"lodash": "^4.17.21",
"semver": "^7.3.5",
"semver": "^7.5.4",
"strip-ansi": "^6.0.0",
"uuid": "^8.3.2"
},
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -38,7 +38,7 @@
"@types/exit": "^0.1.31",
"@types/node": "^12.12.6",
"@types/semver": "^7",
"semver": "^7.5.0"
"semver": "^7.5.4"
},
"jest": {
"transform": {
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -30,7 +30,7 @@
"execa": "^5.1.1",
"glob": "^7.2.0",
"ini": "^1.3.5",
"semver": "^7.3.5",
"semver": "^7.5.4",
"which": "^2.0.2"
},
"devDependencies": {
Expand Down
2 changes: 1 addition & 1 deletion packages/amplify-util-mock/package.json
Original file line number Diff line number Diff line change
Expand Up @@ -50,7 +50,7 @@
"inquirer": "^7.3.3",
"lodash": "^4.17.21",
"node-fetch": "^2.6.7",
"semver": "^7.3.5",
"semver": "^7.5.4",
"which": "^2.0.2"
},
"devDependencies": {
Expand Down
79 changes: 58 additions & 21 deletions yarn.lock
Original file line number Diff line number Diff line change
Expand Up @@ -83,7 +83,7 @@ __metadata:
node-emoji: ^1.10.0
ora: ^4.0.3
rimraf: ^3.0.0
semver: ^7.3.5
semver: ^7.5.4
xcode: ^2.1.0
yargs: ^15.1.0
bin:
Expand Down Expand Up @@ -422,7 +422,7 @@ __metadata:
ora: ^4.0.3
proxy-agent: ^5.0.0
rimraf: ^3.0.0
semver: ^7.3.5
semver: ^7.5.4
strip-ansi: ^6.0.0
typescript-json-schema: ~0.52.0
uuid: ^8.3.2
Expand Down Expand Up @@ -536,7 +536,7 @@ __metadata:
node-pty: beta
retimer: 2.0.0
rimraf: ^3.0.0
semver: ^7.3.5
semver: ^7.5.4
strip-ansi: ^6.0.0
throat: ^5.0.0
uuid: ^8.3.2
Expand Down Expand Up @@ -683,7 +683,7 @@ __metadata:
sass-loader: ^12.3.0
semantic-ui-css: ^2.5.0
semantic-ui-react: ^2.1.3
semver: ^7.3.5
semver: ^7.5.4
source-map-loader: ^3.0.0
stream-browserify: ^3.0.0
style-loader: ^3.3.1
Expand Down Expand Up @@ -712,7 +712,7 @@ __metadata:
graphql-transformer-core: ^8.1.3
jest: ^29.5.0
lodash: ^4.17.21
semver: ^7.3.5
semver: ^7.5.4
strip-ansi: ^6.0.0
ts-node: ^10.9.1
uuid: ^8.3.2
Expand Down Expand Up @@ -904,7 +904,7 @@ __metadata:
jsonwebtoken: ^9.0.0
lodash: ^4.17.21
node-fetch: ^2.6.7
semver: ^7.3.5
semver: ^7.5.4
uuid: ^8.3.2
which: ^2.0.2
ws: ^7.5.7
Expand Down Expand Up @@ -1123,7 +1123,7 @@ __metadata:
ora: ^4.0.3
progress: ^2.0.3
promise-sequential: ^1.1.1
semver: ^7.3.5
semver: ^7.5.4
tar-fs: ^2.1.1
treeify: ^1.1.0
typescript: ^4.9.5
Expand Down Expand Up @@ -11416,7 +11416,7 @@ __metadata:
fs-extra: ^8.1.0
get-port: ^5.1.1
glob: ^7.2.0
semver: ^7.3.5
semver: ^7.5.4
which: ^2.0.2
languageName: unknown
linkType: soft
Expand Down Expand Up @@ -11475,7 +11475,7 @@ __metadata:
execa: ^5.1.1
fs-extra: ^8.1.0
glob: ^7.2.0
semver: ^7.3.5
semver: ^7.5.4
which: ^2.0.2
languageName: unknown
linkType: soft
Expand All @@ -11501,7 +11501,7 @@ __metadata:
exit: ^0.1.2
fs-extra: ^8.1.0
glob: ^7.2.0
semver: ^7.5.0
semver: ^7.5.4
languageName: unknown
linkType: soft

Expand All @@ -11517,7 +11517,7 @@ __metadata:
execa: ^5.1.1
glob: ^7.2.0
ini: ^1.3.5
semver: ^7.3.5
semver: ^7.5.4
which: ^2.0.2
languageName: unknown
linkType: soft
Expand Down Expand Up @@ -25646,10 +25646,10 @@ node-pty@beta:
languageName: node
linkType: hard

"psl@npm:^1.1.28":
version: 1.8.0
resolution: "psl@npm:1.8.0"
checksum: b5f1956f7530860e1918e7238291689fdc3cab9c2c0cdbc47cde21addcc7f62495d794692cc1e43e54728d273f78037e8e73ac43009509a1a7f823341f4039c8
"psl@npm:^1.1.33":
version: 1.9.0
resolution: "psl@npm:1.9.0"
checksum: 6a3f805fdab9442f44de4ba23880c4eba26b20c8e8e0830eff1cb31007f6825dace61d17203c58bfe36946842140c97a1ba7f67bc63ca2d88a7ee052b65d97ab
languageName: node
linkType: hard

Expand Down Expand Up @@ -25772,6 +25772,13 @@ node-pty@beta:
languageName: node
linkType: hard

"querystringify@npm:^2.1.1":
version: 2.2.0
resolution: "querystringify@npm:2.2.0"
checksum: 3258bc3dbdf322ff2663619afe5947c7926a6ef5fb78ad7d384602974c467fadfc8272af44f5eb8cddd0d011aae8fabf3a929a8eee4b86edcc0a21e6bd10f9aa
languageName: node
linkType: hard

"queue-microtask@npm:^1.2.2":
version: 1.2.3
resolution: "queue-microtask@npm:1.2.3"
Expand Down Expand Up @@ -27087,7 +27094,7 @@ node-pty@beta:
languageName: node
linkType: hard

"semver@npm:7.5.0, semver@npm:7.x, semver@npm:^7.0.0, semver@npm:^7.1.1, semver@npm:^7.2.1, semver@npm:^7.3.2, semver@npm:^7.3.4, semver@npm:^7.3.5, semver@npm:^7.3.7, semver@npm:^7.3.8, semver@npm:^7.5.0":
"semver@npm:7.5.0":
version: 7.5.0
resolution: "semver@npm:7.5.0"
dependencies:
Expand All @@ -27098,6 +27105,17 @@ node-pty@beta:
languageName: node
linkType: hard

"semver@npm:7.x, semver@npm:^7.0.0, semver@npm:^7.1.1, semver@npm:^7.2.1, semver@npm:^7.3.2, semver@npm:^7.3.4, semver@npm:^7.3.5, semver@npm:^7.3.7, semver@npm:^7.3.8, semver@npm:^7.5.4":
version: 7.5.4
resolution: "semver@npm:7.5.4"
dependencies:
lru-cache: ^6.0.0
bin:
semver: bin/semver.js
checksum: 5160b06975a38b11c1ab55950cb5b8a23db78df88275d3d8a42ccf1f29e55112ac995b3a26a522c36e3b5f76b0445f1eef70d696b8c7862a2b4303d7b0e7609e
languageName: node
linkType: hard

"semver@npm:^6.0.0, semver@npm:^6.1.1, semver@npm:^6.1.2, semver@npm:^6.2.0, semver@npm:^6.3.0":
version: 6.3.0
resolution: "semver@npm:6.3.0"
Expand Down Expand Up @@ -28712,13 +28730,15 @@ node-pty@beta:
languageName: node
linkType: hard

"tough-cookie@npm:~2.5.0":
version: 2.5.0
resolution: "tough-cookie@npm:2.5.0"
"tough-cookie@npm:^4.1.3":
version: 4.1.3
resolution: "tough-cookie@npm:4.1.3"
dependencies:
psl: ^1.1.28
psl: ^1.1.33
punycode: ^2.1.1
checksum: e1cadfb24d40d64ca16de05fa8192bc097b66aeeb2704199b055ff12f450e4f30c927ce250f53d01f39baad18e1c11d66f65e545c5c6269de4c366fafa4c0543
universalify: ^0.2.0
url-parse: ^1.5.3
checksum: 4fc0433a0cba370d57c4b240f30440c848906dee3180bb6e85033143c2726d322e7e4614abb51d42d111ebec119c4876ed8d7247d4113563033eebbc1739c831
languageName: node
linkType: hard

Expand Down Expand Up @@ -29408,6 +29428,13 @@ node-pty@beta:
languageName: node
linkType: hard

"universalify@npm:^0.2.0":
version: 0.2.0
resolution: "universalify@npm:0.2.0"
checksum: cedbe4d4ca3967edf24c0800cfc161c5a15e240dac28e3ce575c689abc11f2c81ccc6532c8752af3b40f9120fb5e454abecd359e164f4f6aa44c29cd37e194fe
languageName: node
linkType: hard

"universalify@npm:^2.0.0":
version: 2.0.0
resolution: "universalify@npm:2.0.0"
Expand Down Expand Up @@ -29544,6 +29571,16 @@ node-pty@beta:
languageName: node
linkType: hard

"url-parse@npm:^1.5.3":
version: 1.5.10
resolution: "url-parse@npm:1.5.10"
dependencies:
querystringify: ^2.1.1
requires-port: ^1.0.0
checksum: bd5aa9389f896974beb851c112f63b466505a04b4807cea2e5a3b7092f6fbb75316f0491ea84e44f66fed55f1b440df5195d7e3a8203f64fcefa19d182f5be87
languageName: node
linkType: hard

"url@npm:0.10.3":
version: 0.10.3
resolution: "url@npm:0.10.3"
Expand Down

0 comments on commit 175a86b

Please sign in to comment.