From 6b793d4527246e67a5bbc90728a4c69982493a26 Mon Sep 17 00:00:00 2001 From: Pig Fang Date: Thu, 28 Feb 2019 14:15:51 +0800 Subject: [PATCH] fix dep security issue --- package.json | 3 +- yarn.lock | 108 ++++++++++++++++++++++++++++----------------------- 2 files changed, 61 insertions(+), 50 deletions(-) diff --git a/package.json b/package.json index b120496e..d342ad6f 100644 --- a/package.json +++ b/package.json @@ -20,8 +20,7 @@ "dependencies": { "@babel/runtime": "^7.3.1", "@fortawesome/fontawesome-free": "^5.7.2", - "admin-lte": "^2.4.2", - "bootstrap": "^3.3.7", + "admin-lte": "^2.4.9", "chart.js": "^2.7.3", "icheck": "^1.0.2", "jquery": "^3.3.1", diff --git a/yarn.lock b/yarn.lock index f5091b99..40b1ac26 100644 --- a/yarn.lock +++ b/yarn.lock @@ -936,33 +936,34 @@ acorn@^6.0.2, acorn@^6.0.5, acorn@^6.0.7: version "6.1.0" resolved "https://registry.yarnpkg.com/acorn/-/acorn-6.1.0.tgz#b0a3be31752c97a0f7013c5f4903b71a05db6818" -admin-lte@^2.4.2: - version "2.4.2" - resolved "https://registry.yarnpkg.com/admin-lte/-/admin-lte-2.4.2.tgz#6a2928fa34715881eb69a09b64dbccc8d5fae539" +admin-lte@^2.4.9: + version "2.4.9" + resolved "https://registry.npmjs.org/admin-lte/-/admin-lte-2.4.9.tgz#effc04dbb587ccb7d674d4cf663cc141f925ed73" + integrity sha512-+u3zt5sWPPT8HmBvRg4F8IGZPaE5wD0K10+IjXoynfe/jEUrMMj+4eA1LGH9fMK6QulmFr1NCtc1Tk+mTgC24A== dependencies: - bootstrap "^3.3.7" - bootstrap-colorpicker "^2.5.1" - bootstrap-datepicker "^1.7.0" + bootstrap "^3.4.0" + bootstrap-colorpicker "^2.5.3" + bootstrap-datepicker "^1.8.0" bootstrap-daterangepicker "^2.1.25" bootstrap-slider "^9.8.0" bootstrap-timepicker "^0.5.2" chart.js "1.0.*" - ckeditor "^4.7.0" - datatables.net "^1.10.15" - datatables.net-bs "^1.10.15" + ckeditor "^4.11.2" + datatables.net "^1.10.19" + datatables.net-bs "^1.10.19" fastclick "^1.0.6" - flot "^0.8.0-alpha" + flot "^0.8.3" font-awesome "^4.7.0" - fullcalendar "^3.4.0" + fullcalendar "^3.10.0" inputmask "^3.3.7" - ion-rangeslider "^2.2.0" + ion-rangeslider "^2.3.0" ionicons "^3.0.0" jquery "^3.2.1" jquery-knob "^1.2.11" jquery-sparkline "^2.4.0" jquery-ui "^1.12.1" jvectormap "^1.2.2" - moment "^2.18.1" + moment "^2.24.0" morris.js "^0.5.0" pace "0.0.4" raphael "^2.2.7" @@ -1427,15 +1428,17 @@ boolbase@^1.0.0, boolbase@~1.0.0: version "1.0.0" resolved "https://registry.npmjs.org/boolbase/-/boolbase-1.0.0.tgz#68dff5fbe60c51eb37725ea9e3ed310dcc1e776e" -bootstrap-colorpicker@^2.5.1: - version "2.5.2" - resolved "https://registry.yarnpkg.com/bootstrap-colorpicker/-/bootstrap-colorpicker-2.5.2.tgz#33bfb2043485f12dcb3df0f60ad171762cc3c0e4" +bootstrap-colorpicker@^2.5.3: + version "2.5.3" + resolved "https://registry.npmjs.org/bootstrap-colorpicker/-/bootstrap-colorpicker-2.5.3.tgz#b50aff8590fbaa6b5aa63a5624e4213f1659a49d" + integrity sha512-xdllX8LSMvKULs3b8JrgRXTvyvjkSMHHHVuHjjN5FNMqr6kRe5NPiMHFmeAFjlgDF73MspikudLuEwR28LbzLw== dependencies: jquery ">=1.10" -bootstrap-datepicker@^1.7.0: - version "1.7.1" - resolved "https://registry.yarnpkg.com/bootstrap-datepicker/-/bootstrap-datepicker-1.7.1.tgz#4ee7faf34888dbec7834fbf9dbe7c4277e01ddaf" +bootstrap-datepicker@^1.8.0: + version "1.8.0" + resolved "https://registry.npmjs.org/bootstrap-datepicker/-/bootstrap-datepicker-1.8.0.tgz#c63513931e6f09f16ae9f11b62f32d950df3958e" + integrity sha512-213St/G8KT3mjs4qu4qwww74KWysMaIeqgq5OhrboZjIjemIpyuxlSo9FNNI5+KzpkkxkRRba+oewiRGV42B1A== dependencies: jquery ">=1.7.1 <4.0.0" @@ -1454,9 +1457,10 @@ bootstrap-timepicker@^0.5.2: version "0.5.2" resolved "https://registry.yarnpkg.com/bootstrap-timepicker/-/bootstrap-timepicker-0.5.2.tgz#10ed9f2a2f0b8ccaefcde0fcf6a0738b919a3835" -bootstrap@^3.3.7: - version "3.3.7" - resolved "https://registry.yarnpkg.com/bootstrap/-/bootstrap-3.3.7.tgz#5a389394549f23330875a3b150656574f8a9eb71" +bootstrap@^3.4.0: + version "3.4.1" + resolved "https://registry.npmjs.org/bootstrap/-/bootstrap-3.4.1.tgz#c3a347d419e289ad11f4033e3c4132b87c081d72" + integrity sha512-yN5oZVmRCwe5aKwzRj6736nSmKDX7pLYwsXiCj/EYmo16hODaBiT4En5btW/jhBF/seV+XMx3aYwukYC3A49DA== brace-expansion@^1.1.7: version "1.1.11" @@ -1782,8 +1786,8 @@ cache-loader@^2.0.1: schema-utils "^1.0.0" cached-path-relative@^1.0.0: - version "1.0.1" - resolved "https://registry.yarnpkg.com/cached-path-relative/-/cached-path-relative-1.0.1.tgz#d09c4b52800aa4c078e2dd81a869aac90d2e54e7" + version "1.0.2" + resolved "https://registry.yarnpkg.com/cached-path-relative/-/cached-path-relative-1.0.2.tgz" callsites@^3.0.0: version "3.0.0" @@ -1945,9 +1949,10 @@ cipher-base@^1.0.0, cipher-base@^1.0.1, cipher-base@^1.0.3: inherits "^2.0.1" safe-buffer "^5.0.1" -ckeditor@^4.7.0: - version "4.8.0" - resolved "https://registry.yarnpkg.com/ckeditor/-/ckeditor-4.8.0.tgz#5d450fa02a68d5a143cf5619754fbf0c04cad426" +ckeditor@^4.11.2: + version "4.11.3" + resolved "https://registry.npmjs.org/ckeditor/-/ckeditor-4.11.3.tgz#91f66d7ddb5bff3874514fe539779686874ed655" + integrity sha512-v6G+v16WAcukKuQH6m+trA9RCOQntFM2nxPO/GFiLYsdD/5IbZAZ2n7GwMxQmxDXpx4AixpnMWF+yAE1t9wq6Q== class-utils@^0.3.5: version "0.3.6" @@ -2542,16 +2547,18 @@ data-urls@^1.0.0: whatwg-mimetype "^2.1.0" whatwg-url "^7.0.0" -datatables.net-bs@^1.10.15: - version "1.10.16" - resolved "https://registry.yarnpkg.com/datatables.net-bs/-/datatables.net-bs-1.10.16.tgz#b0854f5b374f713ae3db4156c7cea8a760c3de76" +datatables.net-bs@^1.10.19: + version "1.10.19" + resolved "https://registry.npmjs.org/datatables.net-bs/-/datatables.net-bs-1.10.19.tgz#08763b4e4d0cef1a427d019dc15e717c7ed67a4d" + integrity sha512-5gxoI2n+duZP06+4xVC2TtH6zcY369/TRKTZ1DdSgDcDUl4OYQsrXCuaLJmbVzna/5Y5lrMmK7CxgvYgIynICA== dependencies: - datatables.net "1.10.16" + datatables.net "1.10.19" jquery ">=1.7" -datatables.net@1.10.16, datatables.net@^1.10.15: - version "1.10.16" - resolved "https://registry.yarnpkg.com/datatables.net/-/datatables.net-1.10.16.tgz#4b052d1082824261b68eed9d22741b711d3d2469" +datatables.net@1.10.19, datatables.net@^1.10.19: + version "1.10.19" + resolved "https://registry.npmjs.org/datatables.net/-/datatables.net-1.10.19.tgz#97a1ed41c85e62d61040603481b59790a172dd1f" + integrity sha512-+ljXcI6Pj3PTGy5pesp3E5Dr3x3AV45EZe0o1r0gKENN2gafBKXodVnk2ypKwl2tTmivjxbkiqoWnipTefyBTA== dependencies: jquery ">=1.7" @@ -3483,9 +3490,10 @@ flatted@^2.0.0: version "2.0.0" resolved "https://registry.yarnpkg.com/flatted/-/flatted-2.0.0.tgz#55122b6536ea496b4b44893ee2608141d10d9916" -flot@^0.8.0-alpha: - version "0.8.0-alpha" - resolved "https://registry.yarnpkg.com/flot/-/flot-0.8.0-alpha.tgz#9cbbc7147c10a47d2549db90bd2987ec1ba784ba" +flot@^0.8.3: + version "0.8.3" + resolved "https://registry.npmjs.org/flot/-/flot-0.8.3.tgz#6d9b93c7aa2cfb30dfa1af9c1ec4c94070b1217f" + integrity sha512-xg2otcTJDvS+ERK+my4wxG/ASq90QURXtoM4LhacCq0jQW2jbyjdttbRNqU2cPykrpMvJ6b2uSp6SAgYAzj9tQ== flush-write-stream@^1.0.0: version "1.0.3" @@ -3586,12 +3594,10 @@ fsevents@^1.2.7: nan "^2.9.2" node-pre-gyp "^0.10.0" -fullcalendar@^3.4.0: - version "3.8.2" - resolved "https://registry.yarnpkg.com/fullcalendar/-/fullcalendar-3.8.2.tgz#ef7dc77b89134bbe6163e51136f7a1f8bfc1d807" - dependencies: - jquery "2 - 3" - moment "^2.9.0" +fullcalendar@^3.10.0: + version "3.10.0" + resolved "https://registry.npmjs.org/fullcalendar/-/fullcalendar-3.10.0.tgz#cc5e87d518fd6550e142816a31dd191664847919" + integrity sha512-0OtsHhmdYhtFmQwXzyo8VqHzYgamg+zVOoytv5N13gI+iF6CGjevpCi/yBaQs0O4wY3OAp8I688IxdNYe0iAvw== function-bind@^1.1.0, function-bind@^1.1.1: version "1.1.1" @@ -4131,9 +4137,10 @@ invert-kv@^2.0.0: version "2.0.0" resolved "https://registry.yarnpkg.com/invert-kv/-/invert-kv-2.0.0.tgz#7393f5afa59ec9ff5f67a27620d11c226e3eec02" -ion-rangeslider@^2.2.0: - version "2.2.0" - resolved "https://registry.yarnpkg.com/ion-rangeslider/-/ion-rangeslider-2.2.0.tgz#388f12cd70593a61b3368fad6c4f30a5da8b97c9" +ion-rangeslider@^2.3.0: + version "2.3.0" + resolved "https://registry.npmjs.org/ion-rangeslider/-/ion-rangeslider-2.3.0.tgz#7957ce2e78acfc956b8c43009373da91f743347e" + integrity sha512-7TtH9/X4Aq/xCzboWxjwlv20gVqR90Ysc3aehMlTuH2/ULaSxpB80hq+yvD1N0FwWbPDtxQpjQrz/iX+LWXKmg== dependencies: jquery ">=1.8" @@ -4874,7 +4881,7 @@ jquery-ui@^1.12.1: version "1.12.1" resolved "https://registry.yarnpkg.com/jquery-ui/-/jquery-ui-1.12.1.tgz#bcb4045c8dd0539c134bc1488cdd3e768a7a9e51" -"jquery@2 - 3", jquery@>=1.10, jquery@>=1.12.0, jquery@>=1.5, jquery@>=1.7, "jquery@>=1.7.1 <4.0.0", jquery@>=1.8, jquery@^3.2.1, jquery@^3.3.1: +jquery@>=1.10, jquery@>=1.12.0, jquery@>=1.5, jquery@>=1.7, "jquery@>=1.7.1 <4.0.0", jquery@>=1.8, jquery@^3.2.1, jquery@^3.3.1: version "3.3.1" resolved "https://registry.yarnpkg.com/jquery/-/jquery-3.3.1.tgz#958ce29e81c9790f31be7792df5d4d95fc57fbca" @@ -5588,7 +5595,12 @@ moment@^2.10.2: version "2.22.2" resolved "https://registry.npmjs.org/moment/-/moment-2.22.2.tgz#3c257f9839fc0e93ff53149632239eb90783ff66" -moment@^2.18.1, moment@^2.9.0: +moment@^2.24.0: + version "2.24.0" + resolved "https://registry.npmjs.org/moment/-/moment-2.24.0.tgz#0d055d53f5052aa653c9f6eb68bb5d12bf5c2b5b" + integrity sha512-bV7f+6l2QigeBBZSM/6yTNq4P2fNpSWj/0e7jQcy87A8e7o2nAfP/34/2ky5Vw4B9S446EtIhodAzkFCcR4dQg== + +moment@^2.9.0: version "2.20.1" resolved "https://registry.yarnpkg.com/moment/-/moment-2.20.1.tgz#d6eb1a46cbcc14a2b2f9434112c1ff8907f313fd"