Skip to content

Commit fc77617

Browse files
fix: update dependency tar to v7 [security]
1 parent e819abf commit fc77617

2 files changed

Lines changed: 42 additions & 2 deletions

File tree

packages/create-hops-app/package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -22,7 +22,7 @@
2222
},
2323
"dependencies": {
2424
"load-json-file": "^6.2.0",
25-
"tar": "^6.0.0",
25+
"tar": "^7.0.0",
2626
"validate-npm-package-name": "^3.0.0",
2727
"write-pkg": "^4.0.0",
2828
"yargs": "^17.0.0"

yarn.lock

Lines changed: 41 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1450,6 +1450,13 @@
14501450
resolved "https://registry.yarnpkg.com/@hutson/parse-repository-url/-/parse-repository-url-3.0.2.tgz#98c23c950a3d9b6c8f0daed06da6c3af06981340"
14511451
integrity sha512-H9XAx3hc0BQHY6l+IFSWHDySypcXsvsuLhgYLUGywmJ5pswRVQJUHpOsobnLYp2ZUaUlKiKDrgWWhosOwAEM8Q==
14521452

1453+
"@isaacs/fs-minipass@^4.0.0":
1454+
version "4.0.1"
1455+
resolved "https://registry.yarnpkg.com/@isaacs/fs-minipass/-/fs-minipass-4.0.1.tgz#2d59ae3ab4b38fb4270bfa23d30f8e2e86c7fe32"
1456+
integrity sha512-wgm9Ehl2jpeqP3zw/7mo3kRHFp5MEDhqAdwy1fTGkHAwnkGOVsgpvQhL8B5n1qlb01jV3n/bI0ZfZp5lWA1k4w==
1457+
dependencies:
1458+
minipass "^7.0.4"
1459+
14531460
"@istanbuljs/load-nyc-config@^1.0.0":
14541461
version "1.1.0"
14551462
resolved "https://registry.yarnpkg.com/@istanbuljs/load-nyc-config/-/load-nyc-config-1.1.0.tgz#fd3db1d59ecf7cf121e80650bb86712f9b55eced"
@@ -4373,6 +4380,11 @@ chownr@^2.0.0:
43734380
resolved "https://registry.yarnpkg.com/chownr/-/chownr-2.0.0.tgz#15bfbe53d2eab4cf70f18a8cd68ebe5b3cb1dece"
43744381
integrity sha512-bIomtDF5KGpdogkLd9VspvFzk9KfpyyGlS8YFVZl7TGPBHL5snIOnxeshwVgPteQ9b4Eydl+pVbIyE1DcvCWgQ==
43754382

4383+
chownr@^3.0.0:
4384+
version "3.0.0"
4385+
resolved "https://registry.yarnpkg.com/chownr/-/chownr-3.0.0.tgz#9855e64ecd240a9cc4267ce8a4aa5d24a1da15e4"
4386+
integrity sha512-+IxzY9BZOQd/XuYPRmrvEVjF/nqj5kgT4kEq7VofrDoM1MxoRjEWkrCC3EtLi59TVawxTAn+orJwFQcrqEN1+g==
4387+
43764388
chrome-trace-event@^1.0.2:
43774389
version "1.0.3"
43784390
resolved "https://registry.yarnpkg.com/chrome-trace-event/-/chrome-trace-event-1.0.3.tgz#1015eced4741e15d06664a957dbbf50d041e26ac"
@@ -9052,6 +9064,11 @@ minipass@^3.0.0, minipass@^3.1.0, minipass@^3.1.1, minipass@^3.1.3:
90529064
dependencies:
90539065
yallist "^4.0.0"
90549066

9067+
minipass@^7.0.4, minipass@^7.1.2:
9068+
version "7.1.3"
9069+
resolved "https://registry.yarnpkg.com/minipass/-/minipass-7.1.3.tgz#79389b4eb1bb2d003a9bba87d492f2bd37bdc65b"
9070+
integrity sha512-tEBHqDnIoM/1rXME1zgka9g6Q2lcoCkxHLuc7ODJ5BxbP5d4c2Z5cGgtXAku59200Cx7diuHTOYfSBD8n6mm8A==
9071+
90559072
minizlib@^1.3.3:
90569073
version "1.3.3"
90579074
resolved "https://registry.yarnpkg.com/minizlib/-/minizlib-1.3.3.tgz#2290de96818a34c29551c8a8d301216bd65a861d"
@@ -9067,6 +9084,13 @@ minizlib@^2.0.0, minizlib@^2.1.1:
90679084
minipass "^3.0.0"
90689085
yallist "^4.0.0"
90699086

9087+
minizlib@^3.1.0:
9088+
version "3.1.0"
9089+
resolved "https://registry.yarnpkg.com/minizlib/-/minizlib-3.1.0.tgz#6ad76c3a8f10227c9b51d1c9ac8e30b27f5a251c"
9090+
integrity sha512-KZxYo1BUkWD2TVFLr0MQoM8vUUigWD3LlD83a/75BqC+4qE0Hb1Vo5v1FgcfaNXvfXzr+5EhQ6ing/CaBijTlw==
9091+
dependencies:
9092+
minipass "^7.1.2"
9093+
90709094
mixin-deep@^1.2.0:
90719095
version "1.3.2"
90729096
resolved "https://registry.yarnpkg.com/mixin-deep/-/mixin-deep-1.3.2.tgz#1120b43dc359a785dce65b55b82e257ccf479566"
@@ -12230,7 +12254,7 @@ tar@^4.4.12:
1223012254
safe-buffer "^5.2.1"
1223112255
yallist "^3.1.1"
1223212256

12233-
tar@^6.0.0, tar@^6.0.2, tar@^6.1.0:
12257+
tar@^6.0.2, tar@^6.1.0:
1223412258
version "6.1.11"
1223512259
resolved "https://registry.yarnpkg.com/tar/-/tar-6.1.11.tgz#6760a38f003afa1b2ffd0ffe9e9abbd0eab3d621"
1223612260
integrity sha512-an/KZQzQUkZCkuoAA64hM92X0Urb6VpRhAFllDzz44U2mcD5scmT3zBc4VgVpkugF580+DQn8eAFSyoQt0tznA==
@@ -12242,6 +12266,17 @@ tar@^6.0.0, tar@^6.0.2, tar@^6.1.0:
1224212266
mkdirp "^1.0.3"
1224312267
yallist "^4.0.0"
1224412268

12269+
tar@^7.0.0:
12270+
version "7.5.11"
12271+
resolved "https://registry.yarnpkg.com/tar/-/tar-7.5.11.tgz#1250fae45d98806b36d703b30973fa8e0a6d8868"
12272+
integrity sha512-ChjMH33/KetonMTAtpYdgUFr0tbz69Fp2v7zWxQfYZX4g5ZN2nOBXm1R2xyA+lMIKrLKIoKAwFj93jE/avX9cQ==
12273+
dependencies:
12274+
"@isaacs/fs-minipass" "^4.0.0"
12275+
chownr "^3.0.0"
12276+
minipass "^7.1.2"
12277+
minizlib "^3.1.0"
12278+
yallist "^5.0.0"
12279+
1224512280
temp-dir@^1.0.0:
1224612281
version "1.0.0"
1224712282
resolved "https://registry.yarnpkg.com/temp-dir/-/temp-dir-1.0.0.tgz#0a7c0ea26d3a39afa7e0ebea9c1fc0bc4daa011d"
@@ -13213,6 +13248,11 @@ yallist@^4.0.0:
1321313248
resolved "https://registry.yarnpkg.com/yallist/-/yallist-4.0.0.tgz#9bb92790d9c0effec63be73519e11a35019a3a72"
1321413249
integrity sha512-3wdGidZyq5PB084XLES5TpOSRA3wjXAlIWMhum2kRcv/41Sn2emQ0dycQW4uZXLejwKvg6EsvbdlVL+FYEct7A==
1321513250

13251+
yallist@^5.0.0:
13252+
version "5.0.0"
13253+
resolved "https://registry.yarnpkg.com/yallist/-/yallist-5.0.0.tgz#00e2de443639ed0d78fd87de0d27469fbcffb533"
13254+
integrity sha512-YgvUTfwqyc7UXVMrB+SImsVYSmTS8X/tSrtdNZMImM+n7+QTriRXyXim0mBrTXNeqzVF0KWGgHPeiyViFFrNDw==
13255+
1321613256
yaml@^1.10.0, yaml@^1.10.2, yaml@^1.7.2:
1321713257
version "1.10.2"
1321813258
resolved "https://registry.yarnpkg.com/yaml/-/yaml-1.10.2.tgz#2301c5ffbf12b467de8da2333a459e29e7920e4b"

0 commit comments

Comments
 (0)