Skip to content

Commit ee4b595

Browse files
committed
vuln: override nanoid to 3.3.8
5.0.9 is ESM and PostCSS expects to be able to require() nanoid
1 parent 4d822c5 commit ee4b595

5 files changed

Lines changed: 311 additions & 305 deletions

File tree

.changeset/new-tigers-confess.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -3,4 +3,4 @@
33
'@evidence-dev/core-components': patch
44
---
55

6-
Override nanoid to >=5.0.9
6+
Override nanoid to 3.3.8

package.json

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -49,7 +49,7 @@
4949
"get-port": "^7.1.0",
5050
"git-remote-origin-url": "4.0.0",
5151
"http-proxy": "^1.18.1",
52-
"nanoid": "^5.0.9",
52+
"nanoid": "3.3.8",
5353
"node-fetch": "^3.3.2",
5454
"npm-run-all": "^4.1.5",
5555
"open": "^9.1.0",
@@ -111,7 +111,7 @@
111111
"fast-xml-parser": ">=4.4.1",
112112
"dset": ">=3.1.4",
113113
"cookie": ">=0.7.1",
114-
"nanoid": ">=5.0.9"
114+
"nanoid": "3.3.8"
115115
}
116116
},
117117
"packageManager": "pnpm@8.15.9+sha512.499434c9d8fdd1a2794ebf4552b3b25c0a633abcee5bb15e7b5de90f32f47b513aca98cd5cfd001c31f0db454bc3804edccd578501e4ca293a6816166bbd9f81"

packages/lib/sdk/package.json

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -124,7 +124,7 @@
124124
"lodash.chunk": "^4.2.0",
125125
"lodash.merge": "^4.6.2",
126126
"mdsvex": "^0.11.0",
127-
"nanoid": "^5.0.9",
127+
"nanoid": "3.3.8",
128128
"ora": "^8.0.1",
129129
"perfect-debounce": "^1.0.0",
130130
"pkg-types": "^1.0.3",
@@ -152,7 +152,7 @@
152152
},
153153
"peerDependencies": {
154154
"@evidence-dev/universal-sql": "workspace:*",
155-
"nanoid": "^5.0.9",
155+
"nanoid": "3.3.8",
156156
"perfect-debounce": "^1.0.0",
157157
"svelte": "^4.2.19"
158158
},

packages/ui/core-components/package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -60,7 +60,7 @@
6060
"export-to-csv": "0.2.1",
6161
"leaflet": "^1.9.4",
6262
"lodash": "^4.17.21",
63-
"nanoid": "^5.0.9",
63+
"nanoid": "3.3.8",
6464
"perfect-debounce": "^1.0.0",
6565
"prismjs": "1.29.0",
6666
"ssf": "0.11.2",

0 commit comments

Comments
 (0)