diff --git a/examples/dojo/.snyk b/examples/dojo/.snyk new file mode 100644 index 000000000000..76f23aecefb6 --- /dev/null +++ b/examples/dojo/.snyk @@ -0,0 +1,10 @@ +# Snyk (https://snyk.io) policy file, patches or ignores known vulnerabilities. +version: v1.25.1 +ignore: {} +# patches apply the minimum changes required to fix a vulnerability +patch: + SNYK-JS-LODASH-567746: + - '@dojo/cli-build-app > @dojo/webpack-contrib > lodash': + patched: '2025-01-18T13:37:24.739Z' + id: SNYK-JS-LODASH-567746 + path: '@dojo/cli-build-app > @dojo/webpack-contrib > lodash' diff --git a/examples/dojo/package.json b/examples/dojo/package.json index 6a00acf56f40..947f29be21a6 100644 --- a/examples/dojo/package.json +++ b/examples/dojo/package.json @@ -8,7 +8,9 @@ "test": "dojo test", "test:unit": "dojo build --mode unit && dojo test --unit --config local", "test:functional": "dojo build --mode functional && dojo test --functional --config local", - "test:all": "dojo build --mode unit && dojo build --mode functional && dojo test --all --config local" + "test:all": "dojo build --mode unit && dojo build --mode functional && dojo test --all --config local", + "prepare": "yarn run snyk-protect", + "snyk-protect": "snyk-protect" }, "engines": { "node": "16.x" @@ -17,13 +19,15 @@ "@dojo/framework": "^6.0.0", "@dojo/themes": "^6.0.0", "@dojo/widgets": "^6.0.0", - "tslib": "~1.9.1" + "tslib": "~1.9.1", + "@snyk/protect": "latest" }, "devDependencies": { "@dojo/cli": "^6.0.0", - "@dojo/cli-build-app": "^6.0.0", - "@dojo/cli-test-intern": "^6.0.0", + "@dojo/cli-build-app": "^8.0.0", + "@dojo/cli-test-intern": "^7.0.0", "@types/node": "~9.6.5", "typescript": "~3.4.5" - } + }, + "snyk": true }