From 01869ce458cf7b22af2c025110ac6162ddb302cb Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 10 Dec 2020 22:43:13 +0000 Subject: [PATCH] fix: package.json & yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-INI-1048974 --- package.json | 2 +- yarn.lock | 7 ++++++- 2 files changed, 7 insertions(+), 2 deletions(-) diff --git a/package.json b/package.json index 44c6a7a..42d8770 100644 --- a/package.json +++ b/package.json @@ -38,7 +38,7 @@ "username-git-local" ], "dependencies": { - "ini": "1.3.5" + "ini": "1.3.6" }, "devDependencies": { "ava": "3.6.0", diff --git a/yarn.lock b/yarn.lock index 5a694dd..179c488 100644 --- a/yarn.lock +++ b/yarn.lock @@ -2842,7 +2842,12 @@ inherits@2.0.3: version "2.0.3" resolved "https://registry.yarnpkg.com/inherits/-/inherits-2.0.3.tgz#633c2c83e3da42a502f52466022480f4208261de" -ini@1.3.5, ini@^1.3.2, ini@^1.3.5, ini@~1.3.0: +ini@1.3.6: + version "1.3.6" + resolved "https://registry.yarnpkg.com/ini/-/ini-1.3.6.tgz#f1c46a2a93a253e7b3905115e74d527cd23061a1" + integrity sha512-IZUoxEjNjubzrmvzZU4lKP7OnYmX72XRl3sqkfJhBKweKi5rnGi5+IUdlj/H1M+Ip5JQ1WzaDMOBRY90Ajc5jg== + +ini@^1.3.2, ini@^1.3.5, ini@~1.3.0: version "1.3.5" resolved "https://registry.yarnpkg.com/ini/-/ini-1.3.5.tgz#eee25f56db1c9ec6085e0c22778083f596abf927"