Skip to content

Commit 61ad75b

Browse files
committed
security fixes - high
1 parent 48816c5 commit 61ad75b

File tree

2 files changed

+73
-68
lines changed

2 files changed

+73
-68
lines changed

package.json

Lines changed: 3 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -202,7 +202,7 @@
202202
"rimraf": "^6.1.2",
203203
"sass-loader": "^13.3.3",
204204
"serve": "^14.2.5",
205-
"start-server-and-test": "^1.15.5",
205+
"start-server-and-test": "^2.1.3",
206206
"storybook": "7.6.20",
207207
"style-loader": "^3.3.4",
208208
"systemjs-webpack-interop": "^2.3.7",
@@ -218,7 +218,8 @@
218218
"@types/react": "18.0.35",
219219
"string-width": "4.2.0",
220220
"node-fetch": "2.6.7",
221-
"nth-check": "2.0.1"
221+
"nth-check": "2.0.1",
222+
"lodash.mergewith": "4.6.2"
222223
},
223224
"browserslist": {
224225
"production": [

yarn.lock

Lines changed: 70 additions & 66 deletions
Original file line numberDiff line numberDiff line change
@@ -1624,17 +1624,39 @@
16241624
resolved "https://registry.yarnpkg.com/@floating-ui/utils/-/utils-0.2.10.tgz#a2a1e3812d14525f725d011a73eceb41fef5bc1c"
16251625
integrity sha512-aGTxbpbg8/b5JfU1HXSrbH3wXZuLPJcNEcZQFMxLs3oSzgtVu6nFPkbbGGUvBcUjKV2YyB9Wxxabo+HEH9tcRQ==
16261626

1627-
"@hapi/hoek@^9.0.0", "@hapi/hoek@^9.3.0":
1628-
version "9.3.0"
1629-
resolved "https://registry.yarnpkg.com/@hapi/hoek/-/hoek-9.3.0.tgz#8368869dcb735be2e7f5cb7647de78e167a251fb"
1630-
integrity sha512-/c6rf4UJlmHlC9b5BaNvzAcFv7HZ2QHaV0D4/HNlBdvFnvQq8RI4kYdhyPCl7Xj+oWvTWQ8ujhqS53LIgAe6KQ==
1627+
"@hapi/address@^5.1.1":
1628+
version "5.1.1"
1629+
resolved "https://registry.yarnpkg.com/@hapi/address/-/address-5.1.1.tgz#e9925fc1b65f5cc3fbea821f2b980e4652e84cb6"
1630+
integrity sha512-A+po2d/dVoY7cYajycYI43ZbYMXukuopIsqCjh5QzsBCipDtdofHntljDlpccMjIfTy6UOkg+5KPriwYch2bXA==
1631+
dependencies:
1632+
"@hapi/hoek" "^11.0.2"
16311633

1632-
"@hapi/topo@^5.1.0":
1633-
version "5.1.0"
1634-
resolved "https://registry.yarnpkg.com/@hapi/topo/-/topo-5.1.0.tgz#dc448e332c6c6e37a4dc02fd84ba8d44b9afb012"
1635-
integrity sha512-foQZKJig7Ob0BMAYBfcJk8d77QtOe7Wo4ox7ff1lQYoNNAb6jwcY1ncdoy2e9wQZzvNy7ODZCYJkK8kzmcAnAg==
1634+
"@hapi/formula@^3.0.2":
1635+
version "3.0.2"
1636+
resolved "https://registry.yarnpkg.com/@hapi/formula/-/formula-3.0.2.tgz#81b538060ee079481c906f599906d163c4badeaf"
1637+
integrity sha512-hY5YPNXzw1He7s0iqkRQi+uMGh383CGdyyIGYtB+W5N3KHPXoqychklvHhKCC9M3Xtv0OCs/IHw+r4dcHtBYWw==
1638+
1639+
"@hapi/hoek@^11.0.2", "@hapi/hoek@^11.0.7":
1640+
version "11.0.7"
1641+
resolved "https://registry.yarnpkg.com/@hapi/hoek/-/hoek-11.0.7.tgz#56a920793e0a42d10e530da9a64cc0d3919c4002"
1642+
integrity sha512-HV5undWkKzcB4RZUusqOpcgxOaq6VOAH7zhhIr2g3G8NF/MlFO75SjOr2NfuSx0Mh40+1FqCkagKLJRykUWoFQ==
1643+
1644+
"@hapi/pinpoint@^2.0.1":
1645+
version "2.0.1"
1646+
resolved "https://registry.yarnpkg.com/@hapi/pinpoint/-/pinpoint-2.0.1.tgz#32077e715655fc00ab8df74b6b416114287d6513"
1647+
integrity sha512-EKQmr16tM8s16vTT3cA5L0kZZcTMU5DUOZTuvpnY738m+jyP3JIUj+Mm1xc1rsLkGBQ/gVnfKYPwOmPg1tUR4Q==
1648+
1649+
"@hapi/tlds@^1.1.1":
1650+
version "1.1.4"
1651+
resolved "https://registry.yarnpkg.com/@hapi/tlds/-/tlds-1.1.4.tgz#df4a7b59082b54ba4f3b7b38f781e2ac3cbc359a"
1652+
integrity sha512-Fq+20dxsxLaUn5jSSWrdtSRcIUba2JquuorF9UW1wIJS5cSUwxIsO2GIhaWynPRflvxSzFN+gxKte2HEW1OuoA==
1653+
1654+
"@hapi/topo@^6.0.2":
1655+
version "6.0.2"
1656+
resolved "https://registry.yarnpkg.com/@hapi/topo/-/topo-6.0.2.tgz#f219c1c60da8430228af4c1f2e40c32a0d84bbb4"
1657+
integrity sha512-KR3rD5inZbGMrHmgPxsJ9dbi6zEK+C3ZwUwTa+eMwWLz7oijWUTWD2pMSNNYJAU6Qq+65NkxXjqHr/7LM2Xkqg==
16361658
dependencies:
1637-
"@hapi/hoek" "^9.0.0"
1659+
"@hapi/hoek" "^11.0.2"
16381660

16391661
"@hello-pangea/dnd@^18.0.1":
16401662
version "18.0.1"
@@ -2872,23 +2894,6 @@
28722894
resolved "https://registry.yarnpkg.com/@sentry/core/-/core-8.55.0.tgz#4964920229fcf649237ef13b1533dfc4b9f6b22e"
28732895
integrity sha512-6g7jpbefjHYs821Z+EBJ8r4Z7LT5h80YSWRJaylGS4nW5W5Z2KXzpdnyFarv37O7QjauzVC2E+PABmpkw5/JGA==
28742896

2875-
"@sideway/address@^4.1.5":
2876-
version "4.1.5"
2877-
resolved "https://registry.yarnpkg.com/@sideway/address/-/address-4.1.5.tgz#4bc149a0076623ced99ca8208ba780d65a99b9d5"
2878-
integrity sha512-IqO/DUQHUkPeixNQ8n0JA6102hT9CmaljNTPmQ1u8MEhBo/R4Q8eKLN/vGZxuebwOroDB4cbpjheD4+/sKFK4Q==
2879-
dependencies:
2880-
"@hapi/hoek" "^9.0.0"
2881-
2882-
"@sideway/formula@^3.0.1":
2883-
version "3.0.1"
2884-
resolved "https://registry.yarnpkg.com/@sideway/formula/-/formula-3.0.1.tgz#80fcbcbaf7ce031e0ef2dd29b1bfc7c3f583611f"
2885-
integrity sha512-/poHZJJVjx3L+zVD6g9KgHfYnb443oi7wLu/XKojDviHy6HOEOA6z1Trk5aR1dGcmPenJEgb2sK2I80LeS3MIg==
2886-
2887-
"@sideway/pinpoint@^2.0.0":
2888-
version "2.0.0"
2889-
resolved "https://registry.yarnpkg.com/@sideway/pinpoint/-/pinpoint-2.0.0.tgz#cff8ffadc372ad29fd3f78277aeb29e632cc70df"
2890-
integrity sha512-RNiOoTPkptFtSVzQevY/yWtZwf/RxyVnPy/OcA9HBM3MlGDnBEYL5B41H0MTn0Uec8Hi+2qUtTfG2WWZBmMejQ==
2891-
28922897
"@sinclair/typebox@^0.24.1":
28932898
version "0.24.51"
28942899
resolved "https://registry.yarnpkg.com/@sinclair/typebox/-/typebox-0.24.51.tgz#645f33fe4e02defe26f2f5c0410e1c094eac7f5f"
@@ -2942,6 +2947,11 @@
29422947
resolved "https://registry.yarnpkg.com/@sprig-technologies/sprig-browser/-/sprig-browser-2.39.0.tgz#214b0bbdd63d3815b8443f4013829bca80d3a98d"
29432948
integrity sha512-66mdsxc7DlkfWmBacTesvbaXMqgzJRR5B/tRpy2a7T0s5L8+ehAUj+SaivddtjGDClWD4Tf3rk6K7rV33U8PTA==
29442949

2950+
"@standard-schema/spec@^1.0.0":
2951+
version "1.0.0"
2952+
resolved "https://registry.yarnpkg.com/@standard-schema/spec/-/spec-1.0.0.tgz#f193b73dc316c4170f2e82a881da0f550d551b9c"
2953+
integrity sha512-m2bOd0f2RT9k8QJx1JN85cZYyH1RqFBdlwtkSlf4tBDYLCiiZnv1fIIwacK6cqwXavOydf0NPToMQgpKq+dVlA==
2954+
29452955
"@standard-schema/utils@^0.3.0":
29462956
version "0.3.0"
29472957
resolved "https://registry.yarnpkg.com/@standard-schema/utils/-/utils-0.3.0.tgz#3d5e608f16c2390c10528e98e59aef6bf73cae7b"
@@ -5678,14 +5688,6 @@ axios@*, axios@^1.13.2, axios@^1.7.4:
56785688
form-data "^4.0.4"
56795689
proxy-from-env "^1.1.0"
56805690

5681-
axios@^0.27.2:
5682-
version "0.27.2"
5683-
resolved "https://registry.yarnpkg.com/axios/-/axios-0.27.2.tgz#207658cc8621606e586c85db4b41a750e756d972"
5684-
integrity sha512-t+yRIyySRTp/wua5xEr+z1q60QmLq8ABsS5O9Me1AsE5dfKqgnCFzwiCZZ/cGNd1lq4/7akDWMxdhVlucjmnOQ==
5685-
dependencies:
5686-
follow-redirects "^1.14.9"
5687-
form-data "^4.0.0"
5688-
56895691
axobject-query@^4.1.0:
56905692
version "4.1.0"
56915693
resolved "https://registry.yarnpkg.com/axobject-query/-/axobject-query-4.1.0.tgz#28768c76d0e3cff21bc62a9e2d0b6ac30042a1ee"
@@ -7429,7 +7431,7 @@ debug@2.6.9, debug@^2.2.0, debug@^2.6.0, debug@^2.6.9:
74297431
dependencies:
74307432
ms "2.0.0"
74317433

7432-
debug@4, debug@^4.0.0, debug@^4.1.0, debug@^4.1.1, debug@^4.3.1, debug@^4.3.2, debug@^4.3.4, debug@^4.4.0, debug@^4.4.1:
7434+
debug@4, debug@4.4.3, debug@^4.0.0, debug@^4.1.0, debug@^4.1.1, debug@^4.3.1, debug@^4.3.2, debug@^4.3.4, debug@^4.4.0, debug@^4.4.1:
74337435
version "4.4.3"
74347436
resolved "https://registry.yarnpkg.com/debug/-/debug-4.4.3.tgz#c6ae432d9bd9662582fce08709b038c58e9e3d6a"
74357437
integrity sha512-RGwwWnwQvkVfavKVt22FGLw+xYSdzARwm0ru6DhTVA3umU5hZc28V3kO4stgYryrTlLpuvgI9GiijltAjNbcqA==
@@ -9443,7 +9445,7 @@ flux-standard-action@^2.0.3:
94439445
lodash.isplainobject "^4.0.6"
94449446
lodash.isstring "^4.0.1"
94459447

9446-
follow-redirects@^1.0.0, follow-redirects@^1.14.9, follow-redirects@^1.15.2, follow-redirects@^1.15.6:
9448+
follow-redirects@^1.0.0, follow-redirects@^1.15.2, follow-redirects@^1.15.6:
94479449
version "1.15.11"
94489450
resolved "https://registry.yarnpkg.com/follow-redirects/-/follow-redirects-1.15.11.tgz#777d73d72a92f8ec4d2e410eb47352a56b8e8340"
94499451
integrity sha512-deG2P0JfjrTxl50XGCDyfI97ZGVCxIpfKYmfyrQ54n5FO/0gfIES8C/Psl6kWVDolizcaaxZJnTS0QSMxvnsBQ==
@@ -9519,7 +9521,7 @@ form-data@^3.0.0:
95199521
hasown "^2.0.2"
95209522
mime-types "^2.1.35"
95219523

9522-
form-data@^4.0.0, form-data@^4.0.4:
9524+
form-data@^4.0.4:
95239525
version "4.0.5"
95249526
resolved "https://registry.yarnpkg.com/form-data/-/form-data-4.0.5.tgz#b49e48858045ff4cbf6b03e1805cebcad3679053"
95259527
integrity sha512-8RipRLol37bNs2bhoV67fiTEvdTrbMUYcFTiy3+wuuOnUog2QBHCZWXDRijWQfAkhBj2Uf5UnVaiWwA5vdd82w==
@@ -11944,16 +11946,18 @@ jiti@^1.21.7:
1194411946
resolved "https://registry.yarnpkg.com/jiti/-/jiti-1.21.7.tgz#9dd81043424a3d28458b193d965f0d18a2300ba9"
1194511947
integrity sha512-/imKNG4EbWNrVjoNC/1H5/9GFy+tqjGBHCaSsN+P2RnPqjsLmv6UD3Ej+Kj8nBWaRAwyk7kK5ZUc+OEatnTR3A==
1194611948

11947-
joi@^17.7.0:
11948-
version "17.13.3"
11949-
resolved "https://registry.yarnpkg.com/joi/-/joi-17.13.3.tgz#0f5cc1169c999b30d344366d384b12d92558bcec"
11950-
integrity sha512-otDA4ldcIx+ZXsKHWmp0YizCweVRZG96J10b0FevjfuncLO1oX59THoAmHkNubYJ+9gWsYsp5k8v4ib6oDv1fA==
11949+
joi@^18.0.1:
11950+
version "18.0.2"
11951+
resolved "https://registry.yarnpkg.com/joi/-/joi-18.0.2.tgz#30ced6aed00a7848cc11f92859515258301dc3a4"
11952+
integrity sha512-RuCOQMIt78LWnktPoeBL0GErkNaJPTBGcYuyaBvUOQSpcpcLfWrHPPihYdOGbV5pam9VTWbeoF7TsGiHugcjGA==
1195111953
dependencies:
11952-
"@hapi/hoek" "^9.3.0"
11953-
"@hapi/topo" "^5.1.0"
11954-
"@sideway/address" "^4.1.5"
11955-
"@sideway/formula" "^3.0.1"
11956-
"@sideway/pinpoint" "^2.0.0"
11954+
"@hapi/address" "^5.1.1"
11955+
"@hapi/formula" "^3.0.2"
11956+
"@hapi/hoek" "^11.0.7"
11957+
"@hapi/pinpoint" "^2.0.1"
11958+
"@hapi/tlds" "^1.1.1"
11959+
"@hapi/topo" "^6.0.2"
11960+
"@standard-schema/spec" "^1.0.0"
1195711961

1195811962
joycon@^3.1.1:
1195911963
version "3.1.1"
@@ -12449,10 +12453,10 @@ lodash.merge@^4.6.2:
1244912453
resolved "https://registry.yarnpkg.com/lodash.merge/-/lodash.merge-4.6.2.tgz#558aa53b43b661e1925a0afdfa36a9a1085fe57a"
1245012454
integrity sha512-0KpjqXRVvrYyCsX1swR/XTK0va6VQkQM6MNo7PqW77ByjAhoARA8EfrP1N4+KlKj8YS0ZUCtRT/YUuhyYDujIQ==
1245112455

12452-
lodash.mergewith@4.6.1:
12453-
version "4.6.1"
12454-
resolved "https://registry.yarnpkg.com/lodash.mergewith/-/lodash.mergewith-4.6.1.tgz#639057e726c3afbdb3e7d42741caa8d6e4335927"
12455-
integrity sha512-eWw5r+PYICtEBgrBE5hhlT6aAa75f411bgDz/ZL2KZqYV03USvucsxcHUIlGTDTECs1eunpI7HOV7U+WLDvNdQ==
12456+
lodash.mergewith@4.6.1, lodash.mergewith@4.6.2:
12457+
version "4.6.2"
12458+
resolved "https://registry.yarnpkg.com/lodash.mergewith/-/lodash.mergewith-4.6.2.tgz#617121f89ac55f59047c7aec1ccd6654c6590f55"
12459+
integrity sha512-GK3g5RPZWTRSeLSpgP8Xhra+pnjBC56q9FZYe1d5RN3TJ35dbkGy3YqBSMbyCrlbi+CM9Z3Jk5yTL7RCsqboyQ==
1245612460

1245712461
lodash.sortby@^4.7.0:
1245812462
version "4.7.0"
@@ -13506,7 +13510,7 @@ minimatch@^9.0.4:
1350613510
dependencies:
1350713511
brace-expansion "^2.0.1"
1350813512

13509-
minimist@^1.2.0, minimist@^1.2.5, minimist@^1.2.6, minimist@^1.2.7:
13513+
minimist@^1.2.0, minimist@^1.2.5, minimist@^1.2.6, minimist@^1.2.8:
1351013514
version "1.2.8"
1351113515
resolved "https://registry.yarnpkg.com/minimist/-/minimist-1.2.8.tgz#c1a464e7693302e082a075cee0c057741ac4772c"
1351213516
integrity sha512-2yyAR8qBkN3YuheJanUpWC5U3bb5osDywNB8RzDVlDwDHbocAJveqqj1u8+SVD7jkWT4yvsHCpWqqWqAxb0zCA==
@@ -16607,7 +16611,7 @@ run-parallel@^1.1.9:
1660716611
dependencies:
1660816612
queue-microtask "^1.2.2"
1660916613

16610-
rxjs@^7.0.0, rxjs@^7.8.0:
16614+
rxjs@^7.0.0, rxjs@^7.8.2:
1661116615
version "7.8.2"
1661216616
resolved "https://registry.yarnpkg.com/rxjs/-/rxjs-7.8.2.tgz#955bc473ed8af11a002a2be52071bf475638607b"
1661316617
integrity sha512-dhKf903U/PQZY6boNNtAGdWbG85WAbjT/1xYoZIC7FAY0yWapOBQVsVrDl58W86//e1VpMNBtRV4MaXfdMySFA==
@@ -17314,19 +17318,19 @@ standalone-single-spa-webpack-plugin@^4.0.0:
1731417318
resolved "https://registry.yarnpkg.com/standalone-single-spa-webpack-plugin/-/standalone-single-spa-webpack-plugin-4.0.0.tgz#07925337d3fb9e95dba30984dd91df9346ff346c"
1731517319
integrity sha512-Gp6feJ5nNeHDayevTMmwDDi51wQxVPLV56Cwn4QrN0nAkveeTbGnJu7tObpO0lq7wUxhEjgmdwdwE9woyiCxbQ==
1731617320

17317-
start-server-and-test@^1.15.5:
17318-
version "1.15.5"
17319-
resolved "https://registry.yarnpkg.com/start-server-and-test/-/start-server-and-test-1.15.5.tgz#5c9103bd87c06678fc62658fbe97d09501714011"
17320-
integrity sha512-o3EmkX0++GV+qsvIJ/OKWm3w91fD8uS/bPQVPrh/7loaxkpXSuAIHdnmN/P/regQK9eNAK76aBJcHt+OSTk+nA==
17321+
start-server-and-test@^2.1.3:
17322+
version "2.1.3"
17323+
resolved "https://registry.yarnpkg.com/start-server-and-test/-/start-server-and-test-2.1.3.tgz#1f8f8f2666131c502a7f8be69cf35418dde3f719"
17324+
integrity sha512-k4EcbNjeg0odaDkAMlIeDVDByqX9PIgL4tivgP2tES6Zd8o+4pTq/HgbWCyA3VHIoZopB+wGnNPKYGGSByNriQ==
1732117325
dependencies:
1732217326
arg "^5.0.2"
1732317327
bluebird "3.7.2"
1732417328
check-more-types "2.24.0"
17325-
debug "4.3.4"
17329+
debug "4.4.3"
1732617330
execa "5.1.1"
1732717331
lazy-ass "1.6.0"
1732817332
ps-tree "1.2.0"
17329-
wait-on "7.0.1"
17333+
wait-on "9.0.3"
1733017334

1733117335
static-eval@2.0.2:
1733217336
version "2.0.2"
@@ -18991,16 +18995,16 @@ w3c-xmlserializer@^2.0.0:
1899118995
dependencies:
1899218996
xml-name-validator "^3.0.0"
1899318997

18994-
wait-on@7.0.1:
18995-
version "7.0.1"
18996-
resolved "https://registry.yarnpkg.com/wait-on/-/wait-on-7.0.1.tgz#5cff9f8427e94f4deacbc2762e6b0a489b19eae9"
18997-
integrity sha512-9AnJE9qTjRQOlTZIldAaf/da2eW0eSRSgcqq85mXQja/DW3MriHxkpODDSUEg+Gri/rKEcXUZHe+cevvYItaog==
18998+
wait-on@9.0.3:
18999+
version "9.0.3"
19000+
resolved "https://registry.yarnpkg.com/wait-on/-/wait-on-9.0.3.tgz#3ea858db0b854039e6aff5f323885aaef25e32bf"
19001+
integrity sha512-13zBnyYvFDW1rBvWiJ6Av3ymAaq8EDQuvxZnPIw3g04UqGi4TyoIJABmfJ6zrvKo9yeFQExNkOk7idQbDJcuKA==
1899819002
dependencies:
18999-
axios "^0.27.2"
19000-
joi "^17.7.0"
19003+
axios "^1.13.2"
19004+
joi "^18.0.1"
1900119005
lodash "^4.17.21"
19002-
minimist "^1.2.7"
19003-
rxjs "^7.8.0"
19006+
minimist "^1.2.8"
19007+
rxjs "^7.8.2"
1900419008

1900519009
walker@^1.0.7, walker@^1.0.8:
1900619010
version "1.0.8"

0 commit comments

Comments
 (0)