Skip to content

Commit f871f36

Browse files
authored
chore: pin shell-quote to 1.8.4 (#659)
# Summary Fixes shell-quote vulnerability: https://security.snyk.io/package/npm/shell-quote/1.8.2 Fixes: #646
1 parent c932bc9 commit f871f36

2 files changed

Lines changed: 7 additions & 4 deletions

File tree

package.json

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -146,6 +146,9 @@
146146
"apps/example",
147147
"apps/example-web"
148148
],
149+
"resolutions": {
150+
"shell-quote": "1.8.4"
151+
},
149152
"packageManager": "yarn@4.13.0",
150153
"jest": {
151154
"projects": [

yarn.lock

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -13797,10 +13797,10 @@ __metadata:
1379713797
languageName: node
1379813798
linkType: hard
1379913799

13800-
"shell-quote@npm:^1.6.1, shell-quote@npm:^1.8.1":
13801-
version: 1.8.2
13802-
resolution: "shell-quote@npm:1.8.2"
13803-
checksum: 10c0/85fdd44f2ad76e723d34eb72c753f04d847ab64e9f1f10677e3f518d0e5b0752a176fd805297b30bb8c3a1556ebe6e77d2288dbd7b7b0110c7e941e9e9c20ce1
13800+
"shell-quote@npm:1.8.4":
13801+
version: 1.8.4
13802+
resolution: "shell-quote@npm:1.8.4"
13803+
checksum: 10c0/86c93678bc394cb81f5ddcdc87df9c95d279ef9652775cd1cd1eed361404169a8d8cbaacaeed232ab09919e36ee1e5363863570390d78571f8c22b7f6312fb40
1380413804
languageName: node
1380513805
linkType: hard
1380613806

0 commit comments

Comments
 (0)