diff --git a/.snyk b/.snyk new file mode 100644 index 00000000000..366217fbdf9 --- /dev/null +++ b/.snyk @@ -0,0 +1,23 @@ +# Snyk (https://snyk.io) policy file, patches or ignores known vulnerabilities. +# ignores vulnerabilities until expiry date; change duration by modifying expiry date +ignore: + SNYK-JS-KINDOF-537849: + - '*': + reason: This has been ignored due to x + expires: 2022-06-19T20:36:54.553Z + created: 2021-05-24T20:08:43.326Z + SNYK-JS-PATHPARSE-1077067: + - tap > nyc > istanbul-lib-report > path-parse: + reason: 'Internal app, vulnerable function not in use.' + expires: 2022-06-19T20:36:54.553Z + 'snyk:lic:npm:spdx-exceptions:CC-BY-3.0': + - tap > nyc > test-exclude > read-pkg-up > read-pkg > normalize-package-data > validate-npm-package-license > spdx-correct > spdx-expression-parse > spdx-exceptions: + reason: Internal facing project. + expires: 2022-06-23T20:58:57.586Z + created: 2021-05-24T20:58:57.590Z + - tap > nyc > test-exclude > read-pkg-up > read-pkg > normalize-package-data > validate-npm-package-license > spdx-expression-parse > spdx-exceptions: + reason: Internal facing project. + expires: 2022-06-23T20:58:57.586Z + created: 2021-05-24T20:58:57.590Z +version: v1.19.0 +patch: {} diff --git a/package-lock.json b/package-lock.json index 9a27820a7a2..30357c1356d 100644 --- a/package-lock.json +++ b/package-lock.json @@ -843,9 +843,9 @@ } }, "bson": { - "version": "0.4.23", - "resolved": "https://registry.npmjs.org/bson/-/bson-0.4.23.tgz", - "integrity": "sha1-5louPHUH/63kEJvHV1p25Q+NqRU=" + "version": "0.4.21", + "resolved": "https://registry.npmjs.org/bson/-/bson-0.4.21.tgz", + "integrity": "sha1-uOrjjFqpT3uOZOjP7Q9C5YMI7ZU=" }, "buffer": { "version": "4.9.1", @@ -1918,9 +1918,9 @@ } }, "es6-promise": { - "version": "2.1.1", - "resolved": "https://registry.npmjs.org/es6-promise/-/es6-promise-2.1.1.tgz", - "integrity": "sha1-A+jzxyl5KOVHjWqx0GQyUVB73t0=" + "version": "3.0.2", + "resolved": "https://registry.npmjs.org/es6-promise/-/es6-promise-3.0.2.tgz", + "integrity": "sha1-AQ1YWEI6XxGJeWZfRkhqlcbuK7Y=" }, "es6-promisify": { "version": "5.0.0", @@ -3878,24 +3878,23 @@ } }, "mongodb-core": { - "version": "1.2.19", - "resolved": "https://registry.npmjs.org/mongodb-core/-/mongodb-core-1.2.19.tgz", - "integrity": "sha1-/LNfa2q8XD3h8aSl21JrnjBvPrc=", + "version": "1.2.32", + "resolved": "https://registry.npmjs.org/mongodb-core/-/mongodb-core-1.2.32.tgz", + "integrity": "sha1-7W5UIv7K4QwOeXELEFEhuakuw9Q=", "requires": { - "bson": "~0.4.19", - "kerberos": "~0.0" + "bson": "~0.4.21" } }, "mongoose": { - "version": "4.2.4", - "resolved": "https://registry.npmjs.org/mongoose/-/mongoose-4.2.4.tgz", - "integrity": "sha1-4vjAB92Dj2YztPbJZbqSojKskxc=", + "version": "4.3.6", + "resolved": "https://registry.npmjs.org/mongoose/-/mongoose-4.3.6.tgz", + "integrity": "sha1-jJ5LbpqzjD9lJbRMdHOHdGKVoVE=", "requires": { "async": "0.9.0", - "bson": "~0.4.18", + "bson": "0.4.21", "hooks-fixed": "1.1.0", "kareem": "1.0.1", - "mongodb": "2.0.46", + "mongodb": "2.1.4", "mpath": "0.1.1", "mpromise": "0.5.4", "mquery": "1.6.3", @@ -3906,12 +3905,12 @@ }, "dependencies": { "mongodb": { - "version": "2.0.46", - "resolved": "https://registry.npmjs.org/mongodb/-/mongodb-2.0.46.tgz", - "integrity": "sha1-sbhXRl5F4lmx4OAzaYNBpky5NVk=", + "version": "2.1.4", + "resolved": "https://registry.npmjs.org/mongodb/-/mongodb-2.1.4.tgz", + "integrity": "sha1-ZS2HIP9/W8VixHPMsMkNeJN5pKM=", "requires": { - "es6-promise": "2.1.1", - "mongodb-core": "1.2.19", + "es6-promise": "3.0.2", + "mongodb-core": "1.2.32", "readable-stream": "1.0.31" } }, @@ -4056,12 +4055,6 @@ "thenify-all": "^1.0.0" } }, - "nan": { - "version": "2.10.0", - "resolved": "https://registry.npmjs.org/nan/-/nan-2.10.0.tgz", - "integrity": "sha512-bAdJv7fBLhWC+/Bls0Oza+mvTaNQtP+1RyhhhvD95pgUJz6XM5IzgmxOkItJ9tkoCiplvAnXI1tNmmUD/eScyA==", - "optional": true - }, "nconf": { "version": "0.10.0", "resolved": "https://registry.npmjs.org/nconf/-/nconf-0.10.0.tgz", diff --git a/package.json b/package.json index 23795fb4736..ee54a57512f 100644 --- a/package.json +++ b/package.json @@ -15,7 +15,7 @@ "test": "snyk test" }, "dependencies": { - "adm-zip": "0.4.7", + "adm-zip": "0.4.8", "body-parser": "1.9.0", "cfenv": "^1.0.4", "consolidate": "0.14.5", @@ -36,7 +36,7 @@ "method-override": "latest", "moment": "2.15.1", "mongodb": "^3.5.9", - "mongoose": "4.2.4", + "mongoose": "4.3.6", "morgan": "latest", "ms": "^0.7.1", "mysql": "^2.18.1",