[ACS-5272] security fixes for ADF CLI (#8567)

This commit is contained in:
Denys Vuika
2023-05-18 15:12:24 +01:00
committed by GitHub
parent 7e1ff20069
commit b3e8241430
3 changed files with 719 additions and 1171 deletions

46
.snyk
View File

@@ -1,46 +0,0 @@
# Snyk (https://snyk.io) policy file, patches or ignores known vulnerabilities.
version: v1.14.1
ignore: {}
# patches apply the minimum changes required to fix a vulnerability
patch:
SNYK-JS-HTTPSPROXYAGENT-469131:
- '@alfresco/adf-cli > npm-registry-fetch > make-fetch-happen > https-proxy-agent':
patched: '2019-11-20T10:48:59.194Z'
- '@alfresco/js-api > @alfresco/adf-cli > npm-registry-fetch > make-fetch-happen > https-proxy-agent':
patched: '2019-11-20T10:48:59.194Z'
SNYK-JS-TREEKILL-536781:
- snyk > snyk-sbt-plugin > tree-kill:
patched: '2019-12-12T00:35:06.820Z'
SNYK-JS-LODASH-567746:
- snyk > lodash:
patched: '2020-05-01T00:35:43.233Z'
- snyk > @snyk/dep-graph > lodash:
patched: '2020-05-01T00:35:43.233Z'
- snyk > inquirer > lodash:
patched: '2020-05-01T00:35:43.233Z'
- snyk > snyk-config > lodash:
patched: '2020-05-01T00:35:43.233Z'
- snyk > snyk-mvn-plugin > lodash:
patched: '2020-05-01T00:35:43.233Z'
- snyk > snyk-nodejs-lockfile-parser > lodash:
patched: '2020-05-01T00:35:43.233Z'
- snyk > snyk-nuget-plugin > lodash:
patched: '2020-05-01T00:35:43.233Z'
- snyk > @snyk/dep-graph > graphlib > lodash:
patched: '2020-05-01T00:35:43.233Z'
- snyk > snyk-go-plugin > graphlib > lodash:
patched: '2020-05-01T00:35:43.233Z'
- snyk > snyk-nodejs-lockfile-parser > graphlib > lodash:
patched: '2020-05-01T00:35:43.233Z'
- snyk > @snyk/snyk-cocoapods-plugin > @snyk/dep-graph > lodash:
patched: '2020-05-01T00:35:43.233Z'
- snyk > snyk-nuget-plugin > dotnet-deps-parser > lodash:
patched: '2020-05-01T00:35:43.233Z'
- snyk > snyk-php-plugin > @snyk/composer-lockfile-parser > lodash:
patched: '2020-05-01T00:35:43.233Z'
- snyk > @snyk/snyk-cocoapods-plugin > @snyk/dep-graph > graphlib > lodash:
patched: '2020-05-01T00:35:43.233Z'
- snyk > @snyk/snyk-cocoapods-plugin > @snyk/cocoapods-lockfile-parser > @snyk/ruby-semver > lodash:
patched: '2020-05-01T00:35:43.233Z'
- snyk > @snyk/snyk-cocoapods-plugin > @snyk/cocoapods-lockfile-parser > @snyk/dep-graph > graphlib > lodash:
patched: '2020-05-01T00:35:43.233Z'

1777
lib/cli/package-lock.json generated

File diff suppressed because it is too large Load Diff

View File

@@ -22,9 +22,8 @@
"dependencies": { "dependencies": {
"@alfresco/js-api": ">=6.0.0", "@alfresco/js-api": ">=6.0.0",
"commander": "^6.2.1", "commander": "^6.2.1",
"ejs": "^2.6.1", "ejs": "^3.1.9",
"license-checker": "^25.0.1", "license-checker": "^25.0.1",
"npm-registry-fetch": "^4.0.5",
"request": "^2.88.2", "request": "^2.88.2",
"rxjs": "^6.6.6", "rxjs": "^6.6.6",
"shelljs": "^0.8.3", "shelljs": "^0.8.3",
@@ -35,9 +34,9 @@
], ],
"license": "Apache-2.0", "license": "Apache-2.0",
"devDependencies": { "devDependencies": {
"@types/ejs": "^3.1.1", "@types/ejs": "^3.1.2",
"@types/node": "^18.13.0", "@types/node": "^20.1.7",
"@types/shelljs": "^0.8.11", "@types/shelljs": "^0.8.12",
"typescript": "^4.9.5" "typescript": "^4.9.5"
} }
} }