From a4aedceb3d64cb70ae2ed155741c5690be53b984 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 23 Sep 2022 19:03:00 +0000 Subject: [PATCH] fix: javascript/ql/test/library-tests/Portals/src/m3/package.json & javascript/ql/test/library-tests/Portals/src/m3/.snyk to reduce vulnerabilities The following vulnerabilities are fixed with a Snyk patch: - https://snyk.io/vuln/npm:minimatch:20160620 --- javascript/ql/test/library-tests/Portals/src/m3/.snyk | 8 ++++++++ .../ql/test/library-tests/Portals/src/m3/package.json | 10 ++++++++-- 2 files changed, 16 insertions(+), 2 deletions(-) create mode 100644 javascript/ql/test/library-tests/Portals/src/m3/.snyk diff --git a/javascript/ql/test/library-tests/Portals/src/m3/.snyk b/javascript/ql/test/library-tests/Portals/src/m3/.snyk new file mode 100644 index 000000000000..777372217f1c --- /dev/null +++ b/javascript/ql/test/library-tests/Portals/src/m3/.snyk @@ -0,0 +1,8 @@ +# Snyk (https://snyk.io) policy file, patches or ignores known vulnerabilities. +version: v1.25.0 +ignore: {} +# patches apply the minimum changes required to fix a vulnerability +patch: + 'npm:minimatch:20160620': + - m2 > glob > minimatch: + patched: '2022-09-23T19:02:59.262Z' diff --git a/javascript/ql/test/library-tests/Portals/src/m3/package.json b/javascript/ql/test/library-tests/Portals/src/m3/package.json index 6644e5c989c3..ac6230991b64 100644 --- a/javascript/ql/test/library-tests/Portals/src/m3/package.json +++ b/javascript/ql/test/library-tests/Portals/src/m3/package.json @@ -3,6 +3,12 @@ "private": true, "dependencies": { "m1": "*", - "m2": "*" - } + "m2": "*", + "@snyk/protect": "latest" + }, + "scripts": { + "prepublish": "npm run snyk-protect", + "snyk-protect": "snyk-protect" + }, + "snyk": true }