Skip to content

Commit 7931e6b

Browse files
authored
Merge pull request #38 from cnodejs/snyk-fix-987115d7dd910f0c1c34a005980ae77f
[Snyk] Security upgrade react from 0.14.10 to 15.0.0
2 parents 2dd3db2 + f79a1dc commit 7931e6b

File tree

2 files changed

+108
-11
lines changed

2 files changed

+108
-11
lines changed

package.json

+1-1
Original file line numberDiff line numberDiff line change
@@ -36,7 +36,7 @@
3636
"hsl": "^0.1.1",
3737
"immutable": "^3.7.6",
3838
"keycode": "^2.1.0",
39-
"react": "^0.14.9",
39+
"react": "^15.0.0",
4040
"react-dom": "^0.14.5",
4141
"react-remarkable": "^1.1.1",
4242
"reqwest": "^2.0.5",

yarn.lock

+107-10
Original file line numberDiff line numberDiff line change
@@ -744,6 +744,14 @@ core-util-is@~1.0.0:
744744
version "1.0.2"
745745
resolved "https://registry.yarnpkg.com/core-util-is/-/core-util-is-1.0.2.tgz#b5fd54220aa2bc5ab57aab7140c940754503c1a7"
746746

747+
create-react-class@^15.6.0:
748+
version "15.7.0"
749+
resolved "https://registry.yarnpkg.com/create-react-class/-/create-react-class-15.7.0.tgz#7499d7ca2e69bb51d13faf59bd04f0c65a1d6c1e"
750+
integrity sha512-QZv4sFWG9S5RUvkTYWbflxeZX+JG7Cz0Tn33rQBJ+WFQTqTfUTjMjiv9tnfXazjsO5r0KhPs+AqCjyrQX6h2ng==
751+
dependencies:
752+
loose-envify "^1.3.1"
753+
object-assign "^4.1.1"
754+
747755
cross-spawn@^6.0.0:
748756
version "6.0.5"
749757
resolved "https://registry.yarnpkg.com/cross-spawn/-/cross-spawn-6.0.5.tgz#4a5ec7c64dfae22c3a14124dbacdee846d80cbc4"
@@ -1051,6 +1059,13 @@ encodeurl@~1.0.2:
10511059
resolved "https://registry.yarnpkg.com/encodeurl/-/encodeurl-1.0.2.tgz#ad3ff4c86ec2d029322f5a02c3a9a606c95b3f59"
10521060
integrity sha512-TPJXq8JqFaVYm2CWmPvnP2Iyo4ZSM7/QKcSmuMLDObfpH5fi7RUGmd/rTDf+rut/saiDiQEeVTNgAmJEdAOx0w==
10531061

1062+
encoding@^0.1.11:
1063+
version "0.1.13"
1064+
resolved "https://registry.yarnpkg.com/encoding/-/encoding-0.1.13.tgz#56574afdd791f54a8e9b2785c0582a2d26210fa9"
1065+
integrity sha512-ETBauow1T35Y/WZMkio9jiM0Z5xjHHmJ4XmjZOq1l/dXz3lr2sRn87nJy20RupqSh1F2m3HHPSp8ShIPQJrJ3A==
1066+
dependencies:
1067+
iconv-lite "^0.6.2"
1068+
10541069
end-of-stream@^1.1.0:
10551070
version "1.4.4"
10561071
resolved "https://registry.yarnpkg.com/end-of-stream/-/end-of-stream-1.4.4.tgz#5ae64a5f45057baf3626ec14da0ca5e4b2431eb0"
@@ -1338,6 +1353,19 @@ fbjs@^0.6.1:
13381353
ua-parser-js "^0.7.9"
13391354
whatwg-fetch "^0.9.0"
13401355

1356+
fbjs@^0.8.9:
1357+
version "0.8.18"
1358+
resolved "https://registry.yarnpkg.com/fbjs/-/fbjs-0.8.18.tgz#9835e0addb9aca2eff53295cd79ca1cfc7c9662a"
1359+
integrity sha512-EQaWFK+fEPSoibjNy8IxUtaFOMXcWsY0JaVrQoZR9zC8N2Ygf9iDITPWjUTVIax95b6I742JFLqASHfsag/vKA==
1360+
dependencies:
1361+
core-js "^1.0.0"
1362+
isomorphic-fetch "^2.1.1"
1363+
loose-envify "^1.0.0"
1364+
object-assign "^4.1.0"
1365+
promise "^7.1.1"
1366+
setimmediate "^1.0.5"
1367+
ua-parser-js "^0.7.30"
1368+
13411369
file-loader@^0.8.4:
13421370
version "0.8.5"
13431371
resolved "https://registry.yarnpkg.com/file-loader/-/file-loader-0.8.5.tgz#9275d031fe780f27d47f5f4af02bd43713cc151b"
@@ -1932,6 +1960,13 @@ iconv-lite@^0.4.5:
19321960
version "0.4.17"
19331961
resolved "https://registry.yarnpkg.com/iconv-lite/-/iconv-lite-0.4.17.tgz#4fdaa3b38acbc2c031b045d0edcdfe1ecab18c8d"
19341962

1963+
iconv-lite@^0.6.2:
1964+
version "0.6.3"
1965+
resolved "https://registry.yarnpkg.com/iconv-lite/-/iconv-lite-0.6.3.tgz#a52f80bf38da1952eb5c681790719871a1a72501"
1966+
integrity sha512-4fCk79wshMdzMp2rH06qWrJE4iolqLhCUH+OiuIgU++RB0+94NlDL81atO7GX55uUKueo0txHNtvEyI6D7WdMw==
1967+
dependencies:
1968+
safer-buffer ">= 2.1.2 < 3.0.0"
1969+
19351970
ieee754@^1.1.4:
19361971
version "1.1.8"
19371972
resolved "https://registry.yarnpkg.com/ieee754/-/ieee754-1.1.8.tgz#be33d40ac10ef1926701f6f08a2d86fbfd1ad3e4"
@@ -2230,7 +2265,7 @@ is-relative@^0.2.1:
22302265
dependencies:
22312266
is-unc-path "^0.1.1"
22322267

2233-
is-stream@^1.1.0:
2268+
is-stream@^1.0.1, is-stream@^1.1.0:
22342269
version "1.1.0"
22352270
resolved "https://registry.yarnpkg.com/is-stream/-/is-stream-1.1.0.tgz#12d4a3dd4e68e0b79ceb8dbc84173ae80d91ca44"
22362271
integrity sha1-EtSj3U5o4Lec6428hBc66A2RykQ=
@@ -2289,6 +2324,14 @@ isobject@^3.0.0, isobject@^3.0.1:
22892324
resolved "https://registry.yarnpkg.com/isobject/-/isobject-3.0.1.tgz#4e431e92b11a9731636aa1f9c8d1ccbcfdab78df"
22902325
integrity sha1-TkMekrEalzFjaqH5yNHMvP2reN8=
22912326

2327+
isomorphic-fetch@^2.1.1:
2328+
version "2.2.1"
2329+
resolved "https://registry.yarnpkg.com/isomorphic-fetch/-/isomorphic-fetch-2.2.1.tgz#611ae1acf14f5e81f729507472819fe9733558a9"
2330+
integrity sha512-9c4TNAKYXM5PRyVcwUZrF3W09nQ+sO7+jydgs4ZGW9dhsLG2VOlISJABombdQqQRXCwuYG3sYV/puGf5rp0qmA==
2331+
dependencies:
2332+
node-fetch "^1.0.1"
2333+
whatwg-fetch ">=0.10.0"
2334+
22922335
javascript-natural-sort@^0.7.1:
22932336
version "0.7.1"
22942337
resolved "https://registry.yarnpkg.com/javascript-natural-sort/-/javascript-natural-sort-0.7.1.tgz#f9e2303d4507f6d74355a73664d1440fb5a0ef59"
@@ -2301,6 +2344,11 @@ js-tokens@^3.0.0:
23012344
version "3.0.1"
23022345
resolved "https://registry.yarnpkg.com/js-tokens/-/js-tokens-3.0.1.tgz#08e9f132484a2c45a30907e9dc4d5567b7f114d7"
23032346

2347+
"js-tokens@^3.0.0 || ^4.0.0":
2348+
version "4.0.0"
2349+
resolved "https://registry.yarnpkg.com/js-tokens/-/js-tokens-4.0.0.tgz#19203fb59991df98e3a287050d4647cdeaf32499"
2350+
integrity sha512-RdJUflcE3cUzKiMqQgsCu06FPu9UdIJO0beYbPhHN4k6apgJtifcoCtT9bcxOpYBtpD2kCM6Sbzg4CausW/PKQ==
2351+
23042352
json-loader@^0.5.3:
23052353
version "0.5.4"
23062354
resolved "https://registry.yarnpkg.com/json-loader/-/json-loader-0.5.4.tgz#8baa1365a632f58a3c46d20175fc6002c96e37de"
@@ -2569,6 +2617,13 @@ loose-envify@^1.0.0:
25692617
dependencies:
25702618
js-tokens "^3.0.0"
25712619

2620+
loose-envify@^1.1.0, loose-envify@^1.3.1, loose-envify@^1.4.0:
2621+
version "1.4.0"
2622+
resolved "https://registry.yarnpkg.com/loose-envify/-/loose-envify-1.4.0.tgz#71ee51fa7be4caec1a63839f7e682d8132d30caf"
2623+
integrity sha512-lyuxPGr/Wfhrlem2CL/UcnUc1zcqKAImBDzukY7Y5F/yQiNdko6+fRLevlw1HgMySw7f611UIY408EtxRSoK3Q==
2624+
dependencies:
2625+
js-tokens "^3.0.0 || ^4.0.0"
2626+
25722627
lru-cache@2:
25732628
version "2.7.3"
25742629
resolved "https://registry.yarnpkg.com/lru-cache/-/lru-cache-2.7.3.tgz#6d4524e8b955f95d4f5b58851ce21dd72fb4e952"
@@ -2855,6 +2910,14 @@ [email protected]:
28552910
version "0.0.14"
28562911
resolved "https://registry.yarnpkg.com/node-balanced/-/node-balanced-0.0.14.tgz#a33c727857d3044f1e88be72dd7d9a9d0b4fc21f"
28572912

2913+
node-fetch@^1.0.1:
2914+
version "1.7.3"
2915+
resolved "https://registry.yarnpkg.com/node-fetch/-/node-fetch-1.7.3.tgz#980f6f72d85211a5347c6b2bc18c5b84c3eb47ef"
2916+
integrity sha512-NhZ4CsKx7cYm2vSrBAr2PvFOe6sWDf0UYLRqA6svUYg7+/TSfVAu49jYC4BvQ4Sms9SZgdqGBgroqfDhJdTyKQ==
2917+
dependencies:
2918+
encoding "^0.1.11"
2919+
is-stream "^1.0.1"
2920+
28582921
node-forge@^0.10.0:
28592922
version "0.10.0"
28602923
resolved "https://registry.yarnpkg.com/node-forge/-/node-forge-0.10.0.tgz#32dea2afb3e9926f02ee5ce8794902691a676bf3"
@@ -2939,7 +3002,7 @@ object-assign@^2.0.0:
29393002
version "2.1.1"
29403003
resolved "https://registry.yarnpkg.com/object-assign/-/object-assign-2.1.1.tgz#43c36e5d569ff8e4816c4efa8be02d26967c18aa"
29413004

2942-
object-assign@^4.0.1, object-assign@^4.1.0:
3005+
object-assign@^4.0.1, object-assign@^4.1.0, object-assign@^4.1.1:
29433006
version "4.1.1"
29443007
resolved "https://registry.yarnpkg.com/object-assign/-/object-assign-4.1.1.tgz#2109adc7965887cfc05cbbd442cac8bfbb360863"
29453008

@@ -3497,6 +3560,22 @@ promise@^7.0.3:
34973560
dependencies:
34983561
asap "~2.0.3"
34993562

3563+
promise@^7.1.1:
3564+
version "7.3.1"
3565+
resolved "https://registry.yarnpkg.com/promise/-/promise-7.3.1.tgz#064b72602b18f90f29192b8b1bc418ffd1ebd3bf"
3566+
integrity sha512-nolQXZ/4L+bP/UGlkfaIujX9BKxGwmQ9OT4mOt5yvy8iK1h3wqTEJCijzGANTCCl9nWjY41juyAn2K3Q1hLLTg==
3567+
dependencies:
3568+
asap "~2.0.3"
3569+
3570+
prop-types@^15.5.10:
3571+
version "15.8.1"
3572+
resolved "https://registry.yarnpkg.com/prop-types/-/prop-types-15.8.1.tgz#67d87bf1a694f48435cf332c24af10214a3140b5"
3573+
integrity sha512-oj87CgZICdulUohogVAR7AjlC0327U4el4L6eAvOqCeudMDVU0NThNaV+b9Df4dXgSP1gXMTnPdhfe/2qDH5cg==
3574+
dependencies:
3575+
loose-envify "^1.4.0"
3576+
object-assign "^4.1.1"
3577+
react-is "^16.13.1"
3578+
35003579
proxy-addr@~2.0.7:
35013580
version "2.0.7"
35023581
resolved "https://registry.yarnpkg.com/proxy-addr/-/proxy-addr-2.0.7.tgz#f19fe69ceab311eeb94b42e70e8c2070f9ba1025"
@@ -3587,6 +3666,11 @@ react-dom@^0.14.5:
35873666
version "0.14.9"
35883667
resolved "https://registry.yarnpkg.com/react-dom/-/react-dom-0.14.9.tgz#05064a3dcf0fb1880a3b2bfc9d58c55d8d9f6293"
35893668

3669+
react-is@^16.13.1:
3670+
version "16.13.1"
3671+
resolved "https://registry.yarnpkg.com/react-is/-/react-is-16.13.1.tgz#789729a4dc36de2999dc156dd6c1d9c18cea56a4"
3672+
integrity sha512-24e6ynE2H+OKt4kqsOvNd8kBpV65zoxbA4BVsEOB3ARVWQki/DHzaUoC5KuON/BiccDaCCTZBuOcfZs70kR8bQ==
3673+
35903674
react-lite-json-viewer@^1.0.0:
35913675
version "1.0.4"
35923676
resolved "https://registry.yarnpkg.com/react-lite-json-viewer/-/react-lite-json-viewer-1.0.4.tgz#3a78429c757ec3d539d15c6864c595c5ff87e5fe"
@@ -3609,13 +3693,16 @@ react@>=0.13.1, react@>=0.13.3:
36093693
envify "^3.0.0"
36103694
fbjs "^0.6.1"
36113695

3612-
react@^0.14.9:
3613-
version "0.14.10"
3614-
resolved "https://registry.yarnpkg.com/react/-/react-0.14.10.tgz#c10d7750f1c5b34eee2a123915ac4c14c01c1081"
3615-
integrity sha512-yxMw5aorZG4qsLVBfjae4wGFvd5708DhcxaXLJ3IOTgr1TCs8k9+ZheGgLGr5OfwWMhSahNbGvvoEDzrxVWouA==
3696+
react@^15.0.0:
3697+
version "15.7.0"
3698+
resolved "https://registry.yarnpkg.com/react/-/react-15.7.0.tgz#10308fd42ac6912a250bf00380751abc41ac7106"
3699+
integrity sha512-5/MMRYmpmM0sMTHGLossnJCrmXQIiJilD6y3YN3TzAwGFj6zdnMtFv6xmi65PHKRV+pehIHpT7oy67Sr6s9AHA==
36163700
dependencies:
3617-
envify "^3.0.0"
3618-
fbjs "^0.6.1"
3701+
create-react-class "^15.6.0"
3702+
fbjs "^0.8.9"
3703+
loose-envify "^1.1.0"
3704+
object-assign "^4.1.0"
3705+
prop-types "^15.5.10"
36193706

36203707
read-file-stdin@^0.2.0:
36213708
version "0.2.1"
@@ -3853,7 +3940,7 @@ safe-regex@^1.1.0:
38533940
dependencies:
38543941
ret "~0.1.10"
38553942

3856-
"safer-buffer@>= 2.1.2 < 3":
3943+
"safer-buffer@>= 2.1.2 < 3", "safer-buffer@>= 2.1.2 < 3.0.0":
38573944
version "2.1.2"
38583945
resolved "https://registry.yarnpkg.com/safer-buffer/-/safer-buffer-2.1.2.tgz#44fa161b0187b9549dd84bb91802f9bd8385cd6a"
38593946
integrity sha512-YZo3K82SD7Riyi0E1EQPojLz7kpepnSQI9IyPbHHg1XXXevb5dJI7tpyN2ADxGcQbHG7vcyRHk0cbwqcQriUtg==
@@ -3951,7 +4038,7 @@ set-value@^2.0.0, set-value@^2.0.1:
39514038
is-plain-object "^2.0.3"
39524039
split-string "^3.0.1"
39534040

3954-
setimmediate@^1.0.4:
4041+
setimmediate@^1.0.4, setimmediate@^1.0.5:
39554042
version "1.0.5"
39564043
resolved "https://registry.yarnpkg.com/setimmediate/-/setimmediate-1.0.5.tgz#290cbb232e306942d7d7ea9b83732ab7856f8285"
39574044

@@ -4360,6 +4447,11 @@ type-is@~1.6.18:
43604447
media-typer "0.3.0"
43614448
mime-types "~2.1.24"
43624449

4450+
ua-parser-js@^0.7.30:
4451+
version "0.7.37"
4452+
resolved "https://registry.yarnpkg.com/ua-parser-js/-/ua-parser-js-0.7.37.tgz#e464e66dac2d33a7a1251d7d7a99d6157ec27832"
4453+
integrity sha512-xV8kqRKM+jhMvcHWUKthV9fNebIzrNy//2O9ZwWcfiBFR5f25XVZPLlEajk/sf3Ra15V92isyQqnIEXRDaZWEA==
4454+
43634455
ua-parser-js@^0.7.9:
43644456
version "0.7.33"
43654457
resolved "https://registry.yarnpkg.com/ua-parser-js/-/ua-parser-js-0.7.33.tgz#1d04acb4ccef9293df6f70f2c3d22f3030d8b532"
@@ -4641,6 +4733,11 @@ websocket-extensions@>=0.1.1:
46414733
resolved "https://registry.yarnpkg.com/websocket-extensions/-/websocket-extensions-0.1.4.tgz#7f8473bc839dfd87608adb95d7eb075211578a42"
46424734
integrity sha512-OqedPIGOfsDlo31UNwYbCFMSaO9m9G/0faIHj5/dZFDMFqPTcx6UwqyOy3COEaEOg/9VsGIpdqn62W5KhoKSpg==
46434735

4736+
whatwg-fetch@>=0.10.0:
4737+
version "3.6.20"
4738+
resolved "https://registry.yarnpkg.com/whatwg-fetch/-/whatwg-fetch-3.6.20.tgz#580ce6d791facec91d37c72890995a0b48d31c70"
4739+
integrity sha512-EqhiFU6daOA8kpjOWTL0olhVOF3i7OrFzSYiGsEMB8GcXS+RrzauAERX65xMeNWVqxA6HXH2m69Z9LaKKdisfg==
4740+
46444741
whatwg-fetch@^0.9.0:
46454742
version "0.9.0"
46464743
resolved "https://registry.yarnpkg.com/whatwg-fetch/-/whatwg-fetch-0.9.0.tgz#0e3684c6cb9995b43efc9df03e4c365d95fd9cc0"

0 commit comments

Comments
 (0)