Skip to content

Commit 4197356

Browse files
authored
Scorecard Vulnerability Reports (#417)
* GHSA-xffm-g5w8-qvg7 : bump "@eslint/plugin-kit" to 0.3.3 * GHSA-v6h2-p8h4-qcjw * brace-expansion v1.1.12 * brace-expansion v2.0.2 (brace-expansion v5.x seems unaffected) * GHSA-fjxv-7rqg-78g4 : form-data 4.0.1 -> 4.0.4 Signed-off-by: Jens Reinecke <jens.reinecke@arm.com>
1 parent 1f9ffcf commit 4197356

1 file changed

Lines changed: 34 additions & 22 deletions

File tree

yarn.lock

Lines changed: 34 additions & 22 deletions
Original file line numberDiff line numberDiff line change
@@ -500,14 +500,7 @@
500500
resolved "https://registry.yarnpkg.com/@eslint/config-helpers/-/config-helpers-0.3.0.tgz#3e09a90dfb87e0005c7694791e58e97077271286"
501501
integrity sha512-ViuymvFmcJi04qdZeDc2whTHryouGcDlaxPqarTD0ZE10ISpxGUVZGZDx4w01upyIynL3iu6IXH2bS1NhclQMw==
502502

503-
"@eslint/core@^0.14.0":
504-
version "0.14.0"
505-
resolved "https://registry.yarnpkg.com/@eslint/core/-/core-0.14.0.tgz#326289380968eaf7e96f364e1e4cf8f3adf2d003"
506-
integrity sha512-qIbV0/JZr7iSDjqAc60IqbLdsj9GDt16xQtWD+B78d/HAlvysGdZZ6rpJHGAc2T0FQx1X6thsSPdnoiGKdNtdg==
507-
dependencies:
508-
"@types/json-schema" "^7.0.15"
509-
510-
"@eslint/core@^0.15.0":
503+
"@eslint/core@^0.15.0", "@eslint/core@^0.15.1":
511504
version "0.15.1"
512505
resolved "https://registry.yarnpkg.com/@eslint/core/-/core-0.15.1.tgz#d530d44209cbfe2f82ef86d6ba08760196dd3b60"
513506
integrity sha512-bkOp+iumZCCbt1K1CmWf0R9pM5yKpDv+ZXtvSyQpudrI9kuFLp+bM2WOPXImuD/ceQuaa8f5pj93Y7zyECIGNA==
@@ -540,11 +533,11 @@
540533
integrity sha512-RBMg5FRL0I0gs51M/guSAj5/e14VQ4tpZnQNWwuDT66P14I43ItmPfIZRhO9fUVIPOAQXU47atlywZ/czoqFPA==
541534

542535
"@eslint/plugin-kit@^0.3.1":
543-
version "0.3.1"
544-
resolved "https://registry.yarnpkg.com/@eslint/plugin-kit/-/plugin-kit-0.3.1.tgz#b71b037b2d4d68396df04a8c35a49481e5593067"
545-
integrity sha512-0J+zgWxHN+xXONWIyPWKFMgVuJoZuGiIFu8yxk7RJjxkzpGmyja5wRFqZIVtjDVOQpV+Rw0iOAjYPE2eQyjr0w==
536+
version "0.3.3"
537+
resolved "https://registry.yarnpkg.com/@eslint/plugin-kit/-/plugin-kit-0.3.3.tgz#32926b59bd407d58d817941e48b2a7049359b1fd"
538+
integrity sha512-1+WqvgNMhmlAambTvT3KPtCl/Ibr68VldY2XY40SL1CE0ZXiakFR/cbTspaF5HsnpDMvcYYoJHfl4980NBjGag==
546539
dependencies:
547-
"@eslint/core" "^0.14.0"
540+
"@eslint/core" "^0.15.1"
548541
levn "^0.4.1"
549542

550543
"@humanfs/core@^0.19.1":
@@ -2348,17 +2341,17 @@ boundary@^2.0.0:
23482341
integrity sha512-rJKn5ooC9u8q13IMCrW0RSp31pxBCHE3y9V/tp3TdWSLf8Em3p6Di4NBpfzbJge9YjjFEsD0RtFEjtvHL5VyEA==
23492342

23502343
brace-expansion@^1.1.7:
2351-
version "1.1.11"
2352-
resolved "https://registry.npmjs.org/brace-expansion/-/brace-expansion-1.1.11.tgz"
2353-
integrity sha512-iCuPHDFgrHX7H2vEI/5xpz07zSHB00TpugqhmYtVmMO6518mCuRMoOYFldEBl0g187ufozdaHgWKcYFb61qGiA==
2344+
version "1.1.12"
2345+
resolved "https://registry.yarnpkg.com/brace-expansion/-/brace-expansion-1.1.12.tgz#ab9b454466e5a8cc3a187beaad580412a9c5b843"
2346+
integrity sha512-9T9UjW3r0UW5c1Q7GTwllptXwhvYmEzFhzMfZ9H7FQWt+uZePjZPjBP/W1ZEyZ1twGWom5/56TF4lPcqjnDHcg==
23542347
dependencies:
23552348
balanced-match "^1.0.0"
23562349
concat-map "0.0.1"
23572350

23582351
brace-expansion@^2.0.1:
2359-
version "2.0.1"
2360-
resolved "https://registry.npmjs.org/brace-expansion/-/brace-expansion-2.0.1.tgz"
2361-
integrity sha512-XnAIvQ8eM+kC6aULx6wuQiwVsnzsi9d3WxzV3FpWTGA19F621kwdbsAcFKXgKUHZWsy+mY6iL1sHTxWEFCytDA==
2352+
version "2.0.2"
2353+
resolved "https://registry.yarnpkg.com/brace-expansion/-/brace-expansion-2.0.2.tgz#54fc53237a613d854c7bd37463aad17df87214e7"
2354+
integrity sha512-Jt0vHyM+jmUBqojB7E1NIYadt0vI0Qxjxd2TErW94wDz+E2LAm5vKMXXwg6ZZBTHPuUlDgQHKXvjGBdfcF1ZDQ==
23622355
dependencies:
23632356
balanced-match "^1.0.0"
23642357

@@ -2997,6 +2990,16 @@ es-object-atoms@^1.0.0:
29972990
dependencies:
29982991
es-errors "^1.3.0"
29992992

2993+
es-set-tostringtag@^2.1.0:
2994+
version "2.1.0"
2995+
resolved "https://registry.yarnpkg.com/es-set-tostringtag/-/es-set-tostringtag-2.1.0.tgz#f31dbbe0c183b00a6d26eb6325c810c0fd18bd4d"
2996+
integrity sha512-j6vWzfrGVfyXxge+O0x5sh6cvxAog0a/4Rdd2K36zCMV5eJ+/+tOAngRO8cODMNWbVRdVlmGZQL2YS3yR8bIUA==
2997+
dependencies:
2998+
es-errors "^1.3.0"
2999+
get-intrinsic "^1.2.6"
3000+
has-tostringtag "^1.0.2"
3001+
hasown "^2.0.2"
3002+
30003003
escalade@^3.1.1, escalade@^3.2.0:
30013004
version "3.2.0"
30023005
resolved "https://registry.npmjs.org/escalade/-/escalade-3.2.0.tgz"
@@ -3428,12 +3431,14 @@ foreground-child@^3.3.1:
34283431
signal-exit "^4.0.1"
34293432

34303433
form-data@^4.0.0:
3431-
version "4.0.1"
3432-
resolved "https://registry.npmjs.org/form-data/-/form-data-4.0.1.tgz"
3433-
integrity sha512-tzN8e4TX8+kkxGPK8D5u0FNmjPUjw3lwC9lSLxxoB/+GtsJG91CO8bSWy73APlgAZzZbXEYZJuxjkHH2w+Ezhw==
3434+
version "4.0.4"
3435+
resolved "https://registry.yarnpkg.com/form-data/-/form-data-4.0.4.tgz#784cdcce0669a9d68e94d11ac4eea98088edd2c4"
3436+
integrity sha512-KrGhL9Q4zjj0kiUt5OO4Mr/A/jlI2jDYs5eHBpYHPcBEVSiipAvn2Ko2HnPe20rmcuuvMHNdZFp+4IlGTMF0Ow==
34343437
dependencies:
34353438
asynckit "^0.4.0"
34363439
combined-stream "^1.0.8"
3440+
es-set-tostringtag "^2.1.0"
3441+
hasown "^2.0.2"
34373442
mime-types "^2.1.12"
34383443

34393444
formdata-polyfill@^4.0.10:
@@ -3656,11 +3661,18 @@ has-flag@^4.0.0:
36563661
resolved "https://registry.npmjs.org/has-flag/-/has-flag-4.0.0.tgz"
36573662
integrity sha512-EykJT/Q1KjTWctppgIAgfSO0tKVuZUjhgMr17kqTumMl6Afv3EISleU7qZUzoXDFTAHTDC4NOoG/ZxU3EvlMPQ==
36583663

3659-
has-symbols@^1.1.0:
3664+
has-symbols@^1.0.3, has-symbols@^1.1.0:
36603665
version "1.1.0"
36613666
resolved "https://registry.npmjs.org/has-symbols/-/has-symbols-1.1.0.tgz"
36623667
integrity sha512-1cDNdwJ2Jaohmb3sg4OmKaMBwuC48sYni5HUw2DvsC8LjGTLK9h+eb1X6RyuOHe4hT0ULCW68iomhjUoKUqlPQ==
36633668

3669+
has-tostringtag@^1.0.2:
3670+
version "1.0.2"
3671+
resolved "https://registry.yarnpkg.com/has-tostringtag/-/has-tostringtag-1.0.2.tgz#2cdc42d40bef2e5b4eeab7c01a73c54ce7ab5abc"
3672+
integrity sha512-NqADB8VjPFLM2V0VvHUewwwsw0ZWBaIdgo+ieHtK3hasLz4qeCRjYcqfB6AQrBggRKppKF8L52/VqdVsO47Dlw==
3673+
dependencies:
3674+
has-symbols "^1.0.3"
3675+
36643676
hash-string@^1.0.0:
36653677
version "1.0.0"
36663678
resolved "https://registry.yarnpkg.com/hash-string/-/hash-string-1.0.0.tgz#c3fa15f078ddd16bc150b4176fde7091620f2c7f"

0 commit comments

Comments
 (0)