Skip to content

Commit

Permalink
Merge pull request #4278 from BitGo/WP-1413-lock-socks-version-to-fix…
Browse files Browse the repository at this point in the history
…-vulnerability

fix(root): lock socks version
  • Loading branch information
alebusse authored Feb 13, 2024
2 parents d09ab72 + 57f2196 commit ddc7557
Show file tree
Hide file tree
Showing 2 changed files with 25 additions and 12 deletions.
4 changes: 2 additions & 2 deletions package.json
Original file line number Diff line number Diff line change
Expand Up @@ -88,8 +88,8 @@
"terser": "^5.14.2",
"json5": "^2.2.2",
"ua-parser-js": ">0.7.30 <0.8.0",
"pac-resolver": "7.0.1",
"protobufjs": "^7.2.4"
"protobufjs": "^7.2.4",
"socks": "2.7.3"
},
"workspaces": [
"modules/*"
Expand Down
33 changes: 23 additions & 10 deletions yarn.lock
Original file line number Diff line number Diff line change
Expand Up @@ -11973,10 +11973,13 @@ [email protected], [email protected]:
resolved "https://registry.yarnpkg.com/io-ts/-/io-ts-2.1.3.tgz#02c03c375d14079496f0c046ef8a9aad4fbaeb74"
integrity sha512-QFMR2QEBSP6w1TPmkpfca6xkzBbXO+K7ubdbV26GlCGI7CP9LV59bfty422JYtWgbBITuL/zBb1+mziv9f5Wfg==

ip@^2.0.0:
version "2.0.0"
resolved "https://registry.npmjs.org/ip/-/ip-2.0.0.tgz"
integrity sha512-WKa+XuLG1A1R0UWhl2+1XQSi+fZWMsYKffMZTTYsiZaUD8k2yDAj5atimTUD2TZkyCkNEeYE5NhFZmupOGtjYQ==
ip-address@^9.0.5:
version "9.0.5"
resolved "https://registry.yarnpkg.com/ip-address/-/ip-address-9.0.5.tgz#117a960819b08780c3bd1f14ef3c1cc1d3f3ea5a"
integrity sha512-zHtQzGojZXTwZTHQqra+ETKd4Sn3vgi7uBmlPoXVWZqYvuKmtI0l/VZTjqGmJY9x88GGOaZ9+G9ES8hC4T4X8g==
dependencies:
jsbn "1.1.0"
sprintf-js "^1.1.3"

[email protected]:
version "1.9.1"
Expand Down Expand Up @@ -12684,6 +12687,11 @@ js2xmlparser@^4.0.2:
dependencies:
xmlcreate "^2.0.4"

[email protected]:
version "1.1.0"
resolved "https://registry.yarnpkg.com/jsbn/-/jsbn-1.1.0.tgz#b01307cb29b618a1ed26ec79e911f803c4da0040"
integrity sha512-4bYVV3aAMtDTTu4+xsDYa6sy9GyJ69/amsu9sYF2zqjiEoZA5xJi3BrfX3uY+/IekIu7MwdObdbDWpoZdBv3/A==

jsbn@~0.1.0:
version "0.1.1"
resolved "https://registry.npmjs.org/jsbn/-/jsbn-0.1.1.tgz"
Expand Down Expand Up @@ -14959,7 +14967,7 @@ pac-proxy-agent@^7.0.1:
pac-resolver "^7.0.0"
socks-proxy-agent "^8.0.2"

pac-resolver@7.0.1, pac-resolver@^7.0.0:
pac-resolver@^7.0.0:
version "7.0.1"
resolved "https://registry.yarnpkg.com/pac-resolver/-/pac-resolver-7.0.1.tgz#54675558ea368b64d210fd9c92a640b5f3b8abb6"
integrity sha512-5NPgf87AT2STgwa2ntRMr45jTKrYBGkVU36yT0ig/n/GMAa3oPqhZfIQ2kMEimReg0+t9kZViDVZ83qfVUlckg==
Expand Down Expand Up @@ -17457,12 +17465,12 @@ socks-proxy-agent@^8.0.2:
debug "^4.3.4"
socks "^2.7.1"

socks@^2.6.2, socks@^2.7.1:
version "2.7.1"
resolved "https://registry.npmjs.org/socks/-/socks-2.7.1.tgz"
integrity sha512-7maUZy1N7uo6+WVEX6psASxtNlKaNVMlGQKkG/63nEDdLOWNbiUMoLK7X4uYoLhQstau72mLgfEWcXcwsaHbYQ==
socks@2.7.3, socks@^2.6.2, socks@^2.7.1:
version "2.7.3"
resolved "https://registry.yarnpkg.com/socks/-/socks-2.7.3.tgz#7d8a75d7ce845c0a96f710917174dba0d543a785"
integrity sha512-vfuYK48HXCTFD03G/1/zkIls3Ebr2YNa4qU9gHDZdblHLiqhJrJGkY3+0Nx0JpN9qBhJbVObc1CNciT1bIZJxw==
dependencies:
ip "^2.0.0"
ip-address "^9.0.5"
smart-buffer "^4.2.0"

sodium-native@^3.3.0:
Expand Down Expand Up @@ -17634,6 +17642,11 @@ split@^1.0.0:
dependencies:
through "2"

sprintf-js@^1.1.3:
version "1.1.3"
resolved "https://registry.yarnpkg.com/sprintf-js/-/sprintf-js-1.1.3.tgz#4914b903a2f8b685d17fdf78a70e917e872e444a"
integrity sha512-Oo+0REFV59/rz3gfJNKQiBlwfHaSESl1pcGyABQsnnIfWOFt6JNj5gCog2U6MLZ//IGYD+nA8nI+mTShREReaA==

sprintf-js@~1.0.2:
version "1.0.3"
resolved "https://registry.npmjs.org/sprintf-js/-/sprintf-js-1.0.3.tgz"
Expand Down

0 comments on commit ddc7557

Please sign in to comment.