Skip to content

Commit

Permalink
fix: packages/trestle/package.json & packages/trestle/yarn.lock to re…
Browse files Browse the repository at this point in the history
…duce vulnerabilities

The following vulnerabilities are fixed with an upgrade:
- https://snyk.io/vuln/SNYK-JS-ZOD-5925617
  • Loading branch information
snyk-bot committed Oct 5, 2023
1 parent 11981b8 commit f444e7a
Show file tree
Hide file tree
Showing 2 changed files with 160 additions and 21 deletions.
2 changes: 1 addition & 1 deletion packages/trestle/package.json
Original file line number Diff line number Diff line change
Expand Up @@ -87,7 +87,7 @@
"wasm-opt": "^1.2.1",
"yaml": "^1.10.2",
"zlib": "^1.0.5",
"zod": "^1.10.2"
"zod": "^3.22.3"
},
"nyc": {
"extension": [
Expand Down
179 changes: 159 additions & 20 deletions packages/trestle/yarn.lock
Original file line number Diff line number Diff line change
Expand Up @@ -33,7 +33,7 @@
chalk "^2.0.0"
js-tokens "^4.0.0"

"@confio/ics23@^0.6.3":
"@confio/ics23@^0.6.3", "@confio/ics23@^0.6.8":
version "0.6.8"
resolved "https://registry.yarnpkg.com/@confio/ics23/-/ics23-0.6.8.tgz#2a6b4f1f2b7b20a35d9a0745bb5a446e72930b3d"
integrity sha512-wB6uo+3A50m0sW/EWcU64xpV/8wShZ6bMTa7pF8eYsTrSkQA7oLUIJcs/wb8g4y2Oyq701BaGiO6n/ak5WXO1w==
Expand All @@ -51,23 +51,32 @@
"@cosmjs/math" "0.27.1"
"@cosmjs/utils" "0.27.1"

"@cosmjs/cosmwasm-stargate@^0.27.1":
version "0.27.1"
resolved "https://registry.yarnpkg.com/@cosmjs/cosmwasm-stargate/-/cosmwasm-stargate-0.27.1.tgz#7c90517f07ea652d06e8c8d0f6f14b10f3a50698"
integrity sha512-miEAYH4k0YPHRGmp5NTN93lrMg2opxZjr2d4fpRD8H3VVngP4+uUmiI2aUZpHTejlPjqrSTGQnPyycRVMHEFsw==
dependencies:
"@cosmjs/amino" "0.27.1"
"@cosmjs/crypto" "0.27.1"
"@cosmjs/encoding" "0.27.1"
"@cosmjs/math" "0.27.1"
"@cosmjs/proto-signing" "0.27.1"
"@cosmjs/stargate" "0.27.1"
"@cosmjs/tendermint-rpc" "0.27.1"
"@cosmjs/utils" "0.27.1"
"@cosmjs/[email protected]":
version "0.28.13"
resolved "https://registry.yarnpkg.com/@cosmjs/amino/-/amino-0.28.13.tgz#b51417a23c1ff8ef8b85a6862eba8492c6c44f38"
integrity sha512-IHnH2zGwaY69qT4mVAavr/pfzx6YE+ud1NHJbvVePlbGiz68CXTi5LHR+K0lrKB5mQ7E+ZErWz2mw5U/x+V1wQ==
dependencies:
"@cosmjs/crypto" "0.28.13"
"@cosmjs/encoding" "0.28.13"
"@cosmjs/math" "0.28.13"
"@cosmjs/utils" "0.28.13"

"@cosmjs/cosmwasm-stargate@^0.28.5":
version "0.28.13"
resolved "https://registry.yarnpkg.com/@cosmjs/cosmwasm-stargate/-/cosmwasm-stargate-0.28.13.tgz#bea77bc999aaafdb677f446465f648cd000c5b4a"
integrity sha512-dVZNOiRd8btQreRUabncGhVXGCS2wToXqxi9l3KEHwCJQ2RWTshuqV+EZAdCaYHE5W6823s2Ol2W/ukA9AXJPw==
dependencies:
"@cosmjs/amino" "0.28.13"
"@cosmjs/crypto" "0.28.13"
"@cosmjs/encoding" "0.28.13"
"@cosmjs/math" "0.28.13"
"@cosmjs/proto-signing" "0.28.13"
"@cosmjs/stargate" "0.28.13"
"@cosmjs/tendermint-rpc" "0.28.13"
"@cosmjs/utils" "0.28.13"
cosmjs-types "^0.4.0"
long "^4.0.0"
pako "^2.0.2"
protobufjs "~6.10.2"

"@cosmjs/[email protected]":
version "0.27.1"
Expand All @@ -85,6 +94,19 @@
ripemd160 "^2.0.2"
sha.js "^2.4.11"

"@cosmjs/[email protected]":
version "0.28.13"
resolved "https://registry.yarnpkg.com/@cosmjs/crypto/-/crypto-0.28.13.tgz#541b6a36f616b2da5a568ead46d4e83841ceb412"
integrity sha512-ynKfM0q/tMBQMHJby6ad8lR3gkgBKaelQhIsCZTjClsnuC7oYT9y3ThSZCUWr7Pa9h0J8ahU2YV2oFWFVWJQzQ==
dependencies:
"@cosmjs/encoding" "0.28.13"
"@cosmjs/math" "0.28.13"
"@cosmjs/utils" "0.28.13"
"@noble/hashes" "^1"
bn.js "^5.2.0"
elliptic "^6.5.3"
libsodium-wrappers "^0.7.6"

"@cosmjs/crypto@^0.20.0":
version "0.20.1"
resolved "https://registry.yarnpkg.com/@cosmjs/crypto/-/crypto-0.20.1.tgz#7765e7a0573818fbaa232e473d77742ff73e8446"
Expand Down Expand Up @@ -113,6 +135,15 @@
bech32 "^1.1.4"
readonly-date "^1.0.0"

"@cosmjs/[email protected]":
version "0.28.13"
resolved "https://registry.yarnpkg.com/@cosmjs/encoding/-/encoding-0.28.13.tgz#7994e8e2c435beaf0690296ffb0f7f3eaec8150b"
integrity sha512-jtXbAYtV77rLHxoIrjGFsvgGjeTKttuHRv6cvuy3toCZzY7JzTclKH5O2g36IIE4lXwD9xwuhGJ2aa6A3dhNkA==
dependencies:
base64-js "^1.3.0"
bech32 "^1.1.4"
readonly-date "^1.0.0"

"@cosmjs/encoding@^0.20.0", "@cosmjs/encoding@^0.20.1":
version "0.20.1"
resolved "https://registry.yarnpkg.com/@cosmjs/encoding/-/encoding-0.20.1.tgz#1d1162b3eca51b7244cd45102e313612cea77281"
Expand All @@ -130,13 +161,28 @@
"@cosmjs/stream" "0.27.1"
xstream "^11.14.0"

"@cosmjs/[email protected]":
version "0.28.13"
resolved "https://registry.yarnpkg.com/@cosmjs/json-rpc/-/json-rpc-0.28.13.tgz#ff3f0c4a2f363b1a2c6779f8624a897e217fe297"
integrity sha512-fInSvg7x9P6p+GWqet+TMhrMTM3OWWdLJOGS5w2ryubMjgpR1rLiAx77MdTNkArW+/6sUwku0sN4veM4ENQu6A==
dependencies:
"@cosmjs/stream" "0.28.13"
xstream "^11.14.0"

"@cosmjs/[email protected]":
version "0.27.1"
resolved "https://registry.yarnpkg.com/@cosmjs/math/-/math-0.27.1.tgz#be78857b008ffc6b1ed6fecaa1c4cd5bc38c07d7"
integrity sha512-cHWVjmfIjtRc7f80n7x+J5k8pe+vTVTQ0lA82tIxUgqUvgS6rogPP/TmGtTiZ4+NxWxd11DUISY6gVpr18/VNQ==
dependencies:
bn.js "^5.2.0"

"@cosmjs/[email protected]":
version "0.28.13"
resolved "https://registry.yarnpkg.com/@cosmjs/math/-/math-0.28.13.tgz#50c05bc67007a04216f7f5e0c93f57270f8cc077"
integrity sha512-PDpL8W/kbyeWi0mQ2OruyqE8ZUAdxPs1xCbDX3WXJwy2oU+X2UTbkuweJHVpS9CIqmZulBoWQAmlf6t6zr1N/g==
dependencies:
bn.js "^5.2.0"

"@cosmjs/math@^0.20.0", "@cosmjs/math@^0.20.1":
version "0.20.1"
resolved "https://registry.yarnpkg.com/@cosmjs/math/-/math-0.20.1.tgz#c3c2be821b8b5dbbb9b2c0401bd9f1472e821f2a"
Expand All @@ -156,6 +202,19 @@
long "^4.0.0"
protobufjs "~6.10.2"

"@cosmjs/[email protected]":
version "0.28.13"
resolved "https://registry.yarnpkg.com/@cosmjs/proto-signing/-/proto-signing-0.28.13.tgz#95ac12f0da0f0814f348f5ae996c3e96d015df61"
integrity sha512-nSl/2ZLsUJYz3Ad0RY3ihZUgRHIow2OnYqKsESMu+3RA/jTi9bDYhiBu8mNMHI0xrEJry918B2CyI56pOUHdPQ==
dependencies:
"@cosmjs/amino" "0.28.13"
"@cosmjs/crypto" "0.28.13"
"@cosmjs/encoding" "0.28.13"
"@cosmjs/math" "0.28.13"
"@cosmjs/utils" "0.28.13"
cosmjs-types "^0.4.0"
long "^4.0.0"

"@cosmjs/[email protected]":
version "0.27.1"
resolved "https://registry.yarnpkg.com/@cosmjs/socket/-/socket-0.27.1.tgz#c7a3eceb15efb9874a048c3238d1f0b185185742"
Expand All @@ -166,7 +225,35 @@
ws "^7"
xstream "^11.14.0"

"@cosmjs/[email protected]", "@cosmjs/stargate@^0.27.1":
"@cosmjs/[email protected]":
version "0.28.13"
resolved "https://registry.yarnpkg.com/@cosmjs/socket/-/socket-0.28.13.tgz#d8443ad6e91d080fc6b80a7e9cf297a56b1f6833"
integrity sha512-lavwGxQ5VdeltyhpFtwCRVfxeWjH5D5mmN7jgx9nuCf3XSFbTcOYxrk2pQ4usenu1Q1KZdL4Yl5RCNrJuHD9Ug==
dependencies:
"@cosmjs/stream" "0.28.13"
isomorphic-ws "^4.0.1"
ws "^7"
xstream "^11.14.0"

"@cosmjs/[email protected]":
version "0.28.13"
resolved "https://registry.yarnpkg.com/@cosmjs/stargate/-/stargate-0.28.13.tgz#a73d837a46ee8944e6eafe162f2ff6943c14350e"
integrity sha512-dVBMazDz8/eActHsRcZjDHHptOBMqvibj5CFgEtZBp22gP6ASzoAUXTlkSVk5FBf4sfuUHoff6st134/+PGMAg==
dependencies:
"@confio/ics23" "^0.6.8"
"@cosmjs/amino" "0.28.13"
"@cosmjs/encoding" "0.28.13"
"@cosmjs/math" "0.28.13"
"@cosmjs/proto-signing" "0.28.13"
"@cosmjs/stream" "0.28.13"
"@cosmjs/tendermint-rpc" "0.28.13"
"@cosmjs/utils" "0.28.13"
cosmjs-types "^0.4.0"
long "^4.0.0"
protobufjs "~6.11.3"
xstream "^11.14.0"

"@cosmjs/stargate@^0.27.1":
version "0.27.1"
resolved "https://registry.yarnpkg.com/@cosmjs/stargate/-/stargate-0.27.1.tgz#0abc1f91e5cc421940c920f16a22c6c93cc774d5"
integrity sha512-7hAIyNd6NbhQA51w9mPVyMYw515Hpj0o7SXMaqbc7nxs3hkJNMONQ9RakyMm0U/WeCd6ObcSaPEcdkqbfkc+mg==
Expand All @@ -191,6 +278,13 @@
dependencies:
xstream "^11.14.0"

"@cosmjs/[email protected]":
version "0.28.13"
resolved "https://registry.yarnpkg.com/@cosmjs/stream/-/stream-0.28.13.tgz#1e79d1116fda1e63e5ecddbd9d803d403942b1fa"
integrity sha512-AnjtfwT8NwPPkd3lhZhjOlOzT0Kn9bgEu2IPOZjQ1nmG2bplsr6TJmnwn0dJxHT7UGtex17h6whKB5N4wU37Wg==
dependencies:
xstream "^11.14.0"

"@cosmjs/[email protected]":
version "0.27.1"
resolved "https://registry.yarnpkg.com/@cosmjs/tendermint-rpc/-/tendermint-rpc-0.27.1.tgz#66f4a04d1b9ac5849ea2981c2e67bc229996a85a"
Expand All @@ -206,11 +300,32 @@
readonly-date "^1.0.0"
xstream "^11.14.0"

"@cosmjs/[email protected]":
version "0.28.13"
resolved "https://registry.yarnpkg.com/@cosmjs/tendermint-rpc/-/tendermint-rpc-0.28.13.tgz#0bf587ae66fa3f88319edbd258492d28e73f9f29"
integrity sha512-GB+ZmfuJIGQm0hsRtLYjeR3lOxF7Z6XyCBR0cX5AAYOZzSEBJjevPgUHD6tLn8zIhvzxaW3/VKnMB+WmlxdH4w==
dependencies:
"@cosmjs/crypto" "0.28.13"
"@cosmjs/encoding" "0.28.13"
"@cosmjs/json-rpc" "0.28.13"
"@cosmjs/math" "0.28.13"
"@cosmjs/socket" "0.28.13"
"@cosmjs/stream" "0.28.13"
"@cosmjs/utils" "0.28.13"
axios "^0.21.2"
readonly-date "^1.0.0"
xstream "^11.14.0"

"@cosmjs/[email protected]":
version "0.27.1"
resolved "https://registry.yarnpkg.com/@cosmjs/utils/-/utils-0.27.1.tgz#1c8efde17256346ef142a3bd15158ee4055470e2"
integrity sha512-VG7QPDiMUzVPxRdJahDV8PXxVdnuAHiIuG56hldV4yPnOz/si/DLNd7VAUUA5923b6jS1Hhev0Hr6AhEkcxBMg==

"@cosmjs/[email protected]":
version "0.28.13"
resolved "https://registry.yarnpkg.com/@cosmjs/utils/-/utils-0.28.13.tgz#2fd2844ec832d7833811e2ae1691305d09791a08"
integrity sha512-dVeMBiyg+46x7XBZEfJK8yTihphbCFpjVYmLJVqmTsHfJwymQ65cpyW/C+V/LgWARGK8hWQ/aX9HM5Ao8QmMSg==

"@cosmjs/utils@^0.20.0", "@cosmjs/utils@^0.20.1":
version "0.20.1"
resolved "https://registry.yarnpkg.com/@cosmjs/utils/-/utils-0.20.1.tgz#4d239b7d93c15523cdf109f225cbf61326fb69cd"
Expand Down Expand Up @@ -253,6 +368,11 @@
resolved "https://registry.yarnpkg.com/@jsdevtools/ono/-/ono-7.1.3.tgz#9df03bbd7c696a5c58885c34aa06da41c8543796"
integrity sha512-4JQNk+3mVzK3xh2rqd6RB4J46qUR19azEHBneZyTZM+c456qOrbbM/5xcR8huNCCcbVt7+UmizG6GuUvPvKUYg==

"@noble/hashes@^1":
version "1.3.2"
resolved "https://registry.yarnpkg.com/@noble/hashes/-/hashes-1.3.2.tgz#6f26dbc8fbc7205873ce3cee2f690eba0d421b39"
integrity sha512-MVC8EAQp7MvEcm30KWENFjgR+Mkmf+D189XJTkFIlwohU5hcBbn1ZkKq7KVTi2Hme3PMGF390DaL52beVrIihQ==

"@noble/hashes@^1.0.0":
version "1.0.0"
resolved "https://registry.yarnpkg.com/@noble/hashes/-/hashes-1.0.0.tgz#d5e38bfbdaba174805a4e649f13be9a9ed3351ae"
Expand Down Expand Up @@ -2845,6 +2965,25 @@ protobufjs@~6.10.2:
"@types/node" "^13.7.0"
long "^4.0.0"

protobufjs@~6.11.3:
version "6.11.4"
resolved "https://registry.yarnpkg.com/protobufjs/-/protobufjs-6.11.4.tgz#29a412c38bf70d89e537b6d02d904a6f448173aa"
integrity sha512-5kQWPaJHi1WoCpjTGszzQ32PG2F4+wRY6BmAT4Vfw56Q2FZ4YZzK20xUYQH4YkfehY1e6QSICrJquM6xXZNcrw==
dependencies:
"@protobufjs/aspromise" "^1.1.2"
"@protobufjs/base64" "^1.1.2"
"@protobufjs/codegen" "^2.0.4"
"@protobufjs/eventemitter" "^1.1.0"
"@protobufjs/fetch" "^1.1.0"
"@protobufjs/float" "^1.0.2"
"@protobufjs/inquire" "^1.1.0"
"@protobufjs/path" "^1.1.2"
"@protobufjs/pool" "^1.1.0"
"@protobufjs/utf8" "^1.1.0"
"@types/long" "^4.0.1"
"@types/node" ">=13.7.0"
long "^4.0.0"

pstree.remy@^1.1.7:
version "1.1.8"
resolved "https://registry.yarnpkg.com/pstree.remy/-/pstree.remy-1.1.8.tgz#c242224f4a67c21f686839bbdb4ac282b8373d3a"
Expand Down Expand Up @@ -3672,7 +3811,7 @@ zlib@^1.0.5:
resolved "https://registry.yarnpkg.com/zlib/-/zlib-1.0.5.tgz#6e7c972fc371c645a6afb03ab14769def114fcc0"
integrity sha1-bnyXL8NxxkWmr7A6sUdp3vEU/MA=

zod@^1.10.2:
version "1.11.17"
resolved "https://registry.yarnpkg.com/zod/-/zod-1.11.17.tgz#2aae9e91fc66128116ae9844e8f416a95f453f8e"
integrity sha512-UzIwO92D0dSFwIRyyqAfRXICITLjF0IP8tRbEK/un7adirMssWZx8xF/1hZNE7t61knWZ+lhEuUvxlu2MO8qqA==
zod@^3.22.3:
version "3.22.4"
resolved "https://registry.yarnpkg.com/zod/-/zod-3.22.4.tgz#f31c3a9386f61b1f228af56faa9255e845cf3fff"
integrity sha512-iC+8Io04lddc+mVqQ9AZ7OQ2MrUKGN+oIQyq1vemgt46jwCwLfhq7/pwnBnNXXXZb8VTVLKwp9EDkx+ryxIWmg==

0 comments on commit f444e7a

Please sign in to comment.