From 14f8c349588745bf171140d0c9aa1d925815960c Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 26 Sep 2022 09:07:15 +0000 Subject: [PATCH] fix: deps/npm/package.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-ANSIREGEX-1583908 - https://snyk.io/vuln/SNYK-JS-GOT-2932019 - https://snyk.io/vuln/SNYK-JS-NPMREGISTRYFETCH-575432 - https://snyk.io/vuln/SNYK-JS-TAR-1536528 - https://snyk.io/vuln/SNYK-JS-TAR-1536531 - https://snyk.io/vuln/SNYK-JS-TAR-1536758 - https://snyk.io/vuln/SNYK-JS-TAR-1579147 - https://snyk.io/vuln/SNYK-JS-TAR-1579152 - https://snyk.io/vuln/SNYK-JS-TAR-1579155 --- deps/npm/package.json | 14 +++++++------- 1 file changed, 7 insertions(+), 7 deletions(-) diff --git a/deps/npm/package.json b/deps/npm/package.json index 24827e59cfd9a1..0f5bad228cb53a 100644 --- a/deps/npm/package.json +++ b/deps/npm/package.json @@ -46,10 +46,10 @@ "call-limit": "~1.1.0", "chownr": "^1.1.1", "ci-info": "^2.0.0", - "cli-columns": "^3.1.2", + "cli-columns": "^4.0.0", "cli-table3": "^0.5.1", "cmd-shim": "~2.0.2", - "columnify": "~1.5.4", + "columnify": "~1.6.0", "config-chain": "^1.1.12", "detect-indent": "~5.0.0", "detect-newline": "^2.1.0", @@ -73,7 +73,7 @@ "json-parse-better-errors": "^1.0.2", "lazy-property": "~1.0.0", "libcipm": "^3.0.3", - "libnpm": "^2.0.1", + "libnpm": "^3.0.1", "libnpmhook": "^5.0.2", "libnpx": "^10.2.0", "lock-verify": "^2.1.0", @@ -88,7 +88,7 @@ "mississippi": "^3.0.0", "mkdirp": "~0.5.1", "move-concurrently": "^1.0.1", - "node-gyp": "^3.8.0", + "node-gyp": "^8.4.1", "nopt": "~4.0.1", "normalize-package-data": "^2.5.0", "npm-audit-report": "^1.3.2", @@ -98,9 +98,9 @@ "npm-package-arg": "^6.1.0", "npm-packlist": "^1.4.1", "npm-pick-manifest": "^2.2.3", - "npm-registry-fetch": "^3.9.0", + "npm-registry-fetch": "^4.0.5", "npm-user-validate": "~1.0.0", - "npmlog": "~4.1.2", + "npmlog": "~5.0.0", "once": "~1.4.0", "opener": "^1.5.1", "osenv": "^0.1.5", @@ -134,7 +134,7 @@ "umask": "~1.1.0", "unique-filename": "^1.1.1", "unpipe": "~1.0.0", - "update-notifier": "^2.5.0", + "update-notifier": "^6.0.0", "uuid": "^3.3.2", "validate-npm-package-license": "^3.0.4", "validate-npm-package-name": "~3.0.0",