From 9d70933bd6b0a84c123a9e64eb3f3a78d1a9c55c Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 9 Jul 2020 23:49:22 +0000 Subject: [PATCH] fix: interface/src/package.json & interface/src/yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-LODASH-567746 --- interface/src/package.json | 2 +- interface/src/yarn.lock | 5 +++++ 2 files changed, 6 insertions(+), 1 deletion(-) diff --git a/interface/src/package.json b/interface/src/package.json index fc7a92fc..ea9907d1 100644 --- a/interface/src/package.json +++ b/interface/src/package.json @@ -60,7 +60,7 @@ "copy-webpack-plugin": "^4.5.1", "history": "^4.7.2", "immutability-helper": "^2.6.6", - "lodash": "^4.17.5", + "lodash": "^4.17.16", "material-ui": "^1.0.0-beta.39", "material-ui-icons": "^1.0.0-beta.36", "moment": "^2.21.0", diff --git a/interface/src/yarn.lock b/interface/src/yarn.lock index da07c2f7..782095cc 100644 --- a/interface/src/yarn.lock +++ b/interface/src/yarn.lock @@ -4071,6 +4071,11 @@ lodash@^4.0.0, lodash@^4.14.0, lodash@^4.17.2, lodash@^4.17.4, lodash@^4.17.5, l version "4.17.5" resolved "https://registry.yarnpkg.com/lodash/-/lodash-4.17.5.tgz#99a92d65c0272debe8c96b6057bc8fbfa3bed511" +lodash@^4.17.16: + version "4.17.19" + resolved "https://registry.yarnpkg.com/lodash/-/lodash-4.17.19.tgz#e48ddedbe30b3321783c5b4301fbd353bc1e4a4b" + integrity sha512-JNvd8XER9GQX0v2qJgsaN/mzFCNA5BRe/j8JN9d+tWyGLSodKQHKFicdwNYzWwI3wjRnaKPsGj1XkBjx/F96DQ== + loglevel@^1.4.1: version "1.6.1" resolved "https://registry.yarnpkg.com/loglevel/-/loglevel-1.6.1.tgz#e0fc95133b6ef276cdc8887cdaf24aa6f156f8fa"