Compare commits

..

2 Commits

Author SHA1 Message Date
snyk-bot
48ea031cf2 fix: packages/demo/package.json & packages/demo/.snyk to reduce vulnerabilities
The following vulnerabilities are fixed with a Snyk patch:
- https://snyk.io/vuln/SNYK-JS-LODASH-567746
2020-04-30 23:12:48 +02:00
snyk-bot
b61070ed15 fix: packages/demo/package.json & packages/demo/.snyk to reduce vulnerabilities
The following vulnerabilities are fixed with a Snyk patch:
- https://snyk.io/vuln/SNYK-JS-LODASH-567746
2020-04-30 23:12:47 +02:00
4 changed files with 86 additions and 17 deletions

68
packages/demo/.snyk Normal file
View File

@@ -0,0 +1,68 @@
# Snyk (https://snyk.io) policy file, patches or ignores known vulnerabilities.
version: v1.14.1
ignore: {}
# patches apply the minimum changes required to fix a vulnerability
patch:
SNYK-JS-LODASH-567746:
- expo > lodash:
patched: '2020-04-30T21:12:44.362Z'
- expo > @unimodules/react-native-adapter > lodash:
patched: '2020-04-30T21:12:44.362Z'
- expo > expo-av > lodash:
patched: '2020-04-30T21:12:44.362Z'
- expo > expo-barcode-scanner > lodash:
patched: '2020-04-30T21:12:44.362Z'
- expo > expo-camera > lodash:
patched: '2020-04-30T21:12:44.362Z'
- expo > expo-mail-composer > lodash:
patched: '2020-04-30T21:12:44.362Z'
- expo > expo-sqlite > lodash:
patched: '2020-04-30T21:12:44.362Z'
- expo > react-google-maps > lodash:
patched: '2020-04-30T21:12:44.362Z'
- react-native-debug-console > styled-components > @babel/traverse > lodash:
patched: '2020-04-30T21:12:44.362Z'
- expo > babel-preset-expo > @babel/core > lodash:
patched: '2020-04-30T21:12:44.362Z'
- react-native-debug-console > styled-components > babel-plugin-styled-components > lodash:
patched: '2020-04-30T21:12:44.362Z'
- react-native-debug-console > styled-components > @babel/traverse > @babel/generator > lodash:
patched: '2020-04-30T21:12:44.362Z'
- expo > babel-preset-expo > @babel/preset-env > @babel/plugin-transform-block-scoping > lodash:
patched: '2020-04-30T21:12:44.362Z'
- expo > babel-preset-expo > metro-react-native-babel-preset > @babel/plugin-transform-block-scoping > lodash:
patched: '2020-04-30T21:12:44.362Z'
- react-native-debug-console > styled-components > @babel/traverse > @babel/helper-split-export-declaration > @babel/types > lodash:
patched: '2020-04-30T21:12:44.362Z'
- expo > babel-preset-expo > @babel/preset-env > @babel/plugin-transform-classes > @babel/helper-define-map > lodash:
patched: '2020-04-30T21:12:44.362Z'
- react-native-debug-console > styled-components > babel-plugin-styled-components > @babel/helper-annotate-as-pure > @babel/types > lodash:
patched: '2020-04-30T21:12:44.362Z'
- expo > babel-preset-expo > metro-react-native-babel-preset > @babel/plugin-transform-classes > @babel/helper-define-map > lodash:
patched: '2020-04-30T21:12:44.362Z'
- expo > babel-preset-expo > metro-react-native-babel-preset > react-transform-hmr > react-proxy > lodash:
patched: '2020-04-30T21:12:44.362Z'
- expo > babel-preset-expo > @babel/preset-env > @babel/plugin-transform-unicode-regex > @babel/helper-create-regexp-features-plugin > @babel/helper-regex > lodash:
patched: '2020-04-30T21:12:44.362Z'
- expo > babel-preset-expo > metro-react-native-babel-preset > @babel/plugin-transform-unicode-regex > @babel/helper-create-regexp-features-plugin > @babel/helper-regex > lodash:
patched: '2020-04-30T21:12:44.362Z'
- expo > babel-preset-expo > metro-react-native-babel-preset > metro-babel7-plugin-react-transform > @babel/helper-module-imports > @babel/types > lodash:
patched: '2020-04-30T21:12:44.362Z'
- react-native-debug-console > styled-components > @babel/traverse > @babel/helper-function-name > @babel/template > @babel/types > lodash:
patched: '2020-04-30T21:12:44.362Z'
- expo > babel-preset-expo > @babel/preset-env > @babel/preset-modules > @babel/plugin-transform-dotall-regex > @babel/helper-create-regexp-features-plugin > @babel/helper-regex > lodash:
patched: '2020-04-30T21:12:44.362Z'
- expo > babel-preset-expo > metro-react-native-babel-preset > @babel/plugin-transform-exponentiation-operator > @babel/helper-builder-binary-assignment-operator-visitor > @babel/helper-explode-assignable-expression > @babel/traverse > lodash:
patched: '2020-04-30T21:12:44.362Z'
- expo > babel-preset-expo > @babel/preset-env > @babel/plugin-transform-exponentiation-operator > @babel/helper-builder-binary-assignment-operator-visitor > @babel/helper-explode-assignable-expression > @babel/traverse > @babel/generator > lodash:
patched: '2020-04-30T21:12:44.362Z'
- expo > babel-preset-expo > metro-react-native-babel-preset > @babel/plugin-transform-exponentiation-operator > @babel/helper-builder-binary-assignment-operator-visitor > @babel/helper-explode-assignable-expression > @babel/traverse > @babel/generator > lodash:
patched: '2020-04-30T21:12:44.362Z'
- expo > babel-preset-expo > @babel/preset-env > @babel/plugin-transform-exponentiation-operator > @babel/helper-builder-binary-assignment-operator-visitor > @babel/helper-explode-assignable-expression > @babel/traverse > @babel/helper-split-export-declaration > @babel/types > lodash:
patched: '2020-04-30T21:12:44.362Z'
- expo > babel-preset-expo > metro-react-native-babel-preset > @babel/plugin-transform-exponentiation-operator > @babel/helper-builder-binary-assignment-operator-visitor > @babel/helper-explode-assignable-expression > @babel/traverse > @babel/helper-split-export-declaration > @babel/types > lodash:
patched: '2020-04-30T21:12:44.362Z'
- expo > babel-preset-expo > @babel/preset-env > @babel/plugin-transform-exponentiation-operator > @babel/helper-builder-binary-assignment-operator-visitor > @babel/helper-explode-assignable-expression > @babel/traverse > @babel/helper-function-name > @babel/template > @babel/types > lodash:
patched: '2020-04-30T21:12:44.362Z'
- expo > babel-preset-expo > metro-react-native-babel-preset > @babel/plugin-transform-exponentiation-operator > @babel/helper-builder-binary-assignment-operator-visitor > @babel/helper-explode-assignable-expression > @babel/traverse > @babel/helper-function-name > @babel/template > @babel/types > lodash:
patched: '2020-04-30T21:12:44.362Z'

View File

@@ -8,7 +8,9 @@
"ios": "expo start --ios",
"web": "expo start --web",
"eject": "expo eject",
"postinstall": "expo-yarn-workspaces postinstall"
"postinstall": "expo-yarn-workspaces postinstall",
"snyk-protect": "snyk protect",
"prepublish": "npm run snyk-protect"
},
"dependencies": {
"expo": "^33.0.0",
@@ -16,7 +18,8 @@
"react-dom": "^16.8.6",
"react-native": "https://github.com/expo/react-native/archive/sdk-33.0.0.tar.gz",
"react-native-debug-console": "^2.0.0-alpha.7",
"react-native-web": "0.11.4"
"react-native-web": "0.11.4",
"snyk": "^1.316.1"
},
"devDependencies": {
"@babel/runtime": "^7.5.0",
@@ -26,5 +29,6 @@
"expo-yarn-workspaces": "^1.2.0",
"react-art": "^16.8.6"
},
"private": true
"private": true,
"snyk": true
}

View File

@@ -8,7 +8,7 @@ class Events {
}
unlisten(fn) {
this.listeners = this.listeners.filter(l => l !== fn);
this.listeners = this.listeners(l => l !== fn);
}
publish(type, data) {
@@ -18,4 +18,4 @@ class Events {
const events = new Events();
export default events;
export default events;

View File

@@ -5633,11 +5633,6 @@ eventemitter3@^3.0.0, eventemitter3@^3.1.0:
resolved "https://registry.yarnpkg.com/eventemitter3/-/eventemitter3-3.1.2.tgz#2d3d48f9c346698fce83a85d7d664e98535df6e7"
integrity sha512-tvtQIeLVHjDkJYnzf2dgVMxfuSGJeM/7UCG17TT4EumTfNtF+0nebF/4zWOIkCreAbtNqhGEboB6BWrwqNaw4Q==
eventemitter3@^4.0.0:
version "4.0.7"
resolved "https://registry.yarnpkg.com/eventemitter3/-/eventemitter3-4.0.7.tgz#2de9b68f6528d5644ef5c59526a1b4a07306169f"
integrity sha512-8guHBZCwKnFhYdHr2ysuRWErTwhoN2X8XELRlrRwpmfeY2jjuUN4taQMsULKUVo1K4DvZl+0pgfyoysHxvmvEw==
events@^3.0.0:
version "3.0.0"
resolved "https://registry.yarnpkg.com/events/-/events-3.0.0.tgz#9a0a0dfaf62893d92b875b8f2698ca4114973e88"
@@ -6620,9 +6615,11 @@ flush-write-stream@^1.0.0:
readable-stream "^2.3.6"
follow-redirects@^1.0.0, follow-redirects@^1.2.5, follow-redirects@^1.3.0, follow-redirects@^1.4.1:
version "1.13.0"
resolved "https://registry.yarnpkg.com/follow-redirects/-/follow-redirects-1.13.0.tgz#b42e8d93a2a7eea5ed88633676d6597bc8e384db"
integrity sha512-aq6gF1BEKje4a9i9+5jimNFIpq4Q1WiwBToeRK5NvZBd/TRsmW8BsJfOEGkr76TbOyPVD3OVDN910EcUNtRYEA==
version "1.7.0"
resolved "https://registry.yarnpkg.com/follow-redirects/-/follow-redirects-1.7.0.tgz#489ebc198dc0e7f64167bd23b03c4c19b5784c76"
integrity sha512-m/pZQy4Gj287eNy94nivy5wchN3Kp+Q5WgUPNy5lJSZ3sgkVKSYV/ZChMAQVIgx1SqfZ2zBZtPA2YlXIWxxJOQ==
dependencies:
debug "^3.2.6"
fontfaceobserver@^2.1.0:
version "2.1.0"
@@ -7521,11 +7518,11 @@ http-proxy-middleware@^0.19.1:
micromatch "^3.1.10"
http-proxy@^1.17.0:
version "1.18.1"
resolved "https://registry.yarnpkg.com/http-proxy/-/http-proxy-1.18.1.tgz#401541f0534884bbf95260334e72f88ee3976549"
integrity sha512-7mz/721AbnJwIVbnaSv1Cz3Am0ZLT/UBwkC92VlxhXv/k/BBQfM2fXElQNC27BVGr0uwUpplYPQM9LnaBMR5NQ==
version "1.17.0"
resolved "https://registry.yarnpkg.com/http-proxy/-/http-proxy-1.17.0.tgz#7ad38494658f84605e2f6db4436df410f4e5be9a"
integrity sha512-Taqn+3nNvYRfJ3bGvKfBSRwy1v6eePlm3oc/aWVxZp57DQr5Eq3xhKJi7Z4hZpS8PC3H4qI+Yly5EmFacGuA/g==
dependencies:
eventemitter3 "^4.0.0"
eventemitter3 "^3.0.0"
follow-redirects "^1.0.0"
requires-port "^1.0.0"