From 0389286dcbec8d5f6b5f19ee4b4f72a97a1d5f48 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 11 Dec 2020 02:11:44 +0000 Subject: [PATCH] fix: package.json & yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-HIGHLIGHTJS-1048676 --- package.json | 2 +- yarn.lock | 7 ++++--- 2 files changed, 5 insertions(+), 4 deletions(-) diff --git a/package.json b/package.json index 0805afd..18f58af 100644 --- a/package.json +++ b/package.json @@ -6,7 +6,7 @@ "react-scripts": "0.6.1" }, "dependencies": { - "highlight.js": "^9.7.0", + "highlight.js": "^10.4.1", "react": "^16.5.0", "react-dom": "^15.3.2", "react-router": "^2.8.1", diff --git a/yarn.lock b/yarn.lock index cc0359a..06fbca2 100644 --- a/yarn.lock +++ b/yarn.lock @@ -2384,9 +2384,10 @@ header-case@^1.0.0: no-case "^2.2.0" upper-case "^1.1.3" -highlight.js@^9.7.0: - version "9.7.0" - resolved "https://registry.yarnpkg.com/highlight.js/-/highlight.js-9.7.0.tgz#e7a926bf3079c65b2ae50314878e456a009b4aac" +highlight.js@^10.4.1: + version "10.4.1" + resolved "https://registry.yarnpkg.com/highlight.js/-/highlight.js-10.4.1.tgz#d48fbcf4a9971c4361b3f95f302747afe19dbad0" + integrity sha512-yR5lWvNz7c85OhVAEAeFhVCc/GV4C30Fjzc/rCP0aCWzc1UUOPUk55dK/qdwTZHBvMZo+eZ2jpk62ndX/xMFlg== history@^2.1.2: version "2.1.2"