From 6733e2c6377fa1d60cdbdd81c2107bcf171e0bb5 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 2 Apr 2024 22:09:08 +0000 Subject: [PATCH] fix: docs/package.json & docs/.snyk to reduce vulnerabilities The following vulnerabilities are fixed with a Snyk patch: - https://snyk.io/vuln/SNYK-JS-LODASH-567746 --- docs/.snyk | 36 ++++++++++++++++++++++++++++++++++++ docs/package.json | 10 +++++++--- 2 files changed, 43 insertions(+), 3 deletions(-) create mode 100644 docs/.snyk diff --git a/docs/.snyk b/docs/.snyk new file mode 100644 index 0000000000000..bb0c4609bd928 --- /dev/null +++ b/docs/.snyk @@ -0,0 +1,36 @@ +# Snyk (https://snyk.io) policy file, patches or ignores known vulnerabilities. +version: v1.25.1 +ignore: {} +# patches apply the minimum changes required to fix a vulnerability +patch: + SNYK-JS-LODASH-567746: + - docz > gatsby > gatsby-cli > gatsby-recipes > @babel/template > @babel/types > lodash: + patched: '2024-04-02T22:09:07.672Z' + id: SNYK-JS-LODASH-567746 + path: >- + docz > gatsby > gatsby-cli > gatsby-recipes > @babel/template > + @babel/types > lodash + - gatsby-theme-docz > gatsby > gatsby-cli > gatsby-recipes > remark-mdxjs > @babel/core > lodash: + patched: '2024-04-02T22:09:07.672Z' + id: SNYK-JS-LODASH-567746 + path: >- + gatsby-theme-docz > gatsby > gatsby-cli > gatsby-recipes > + remark-mdxjs > @babel/core > lodash + - docz > gatsby > gatsby-cli > gatsby-recipes > remark-mdxjs > @babel/core > lodash: + patched: '2024-04-02T22:09:07.672Z' + id: SNYK-JS-LODASH-567746 + path: >- + docz > gatsby > gatsby-cli > gatsby-recipes > remark-mdxjs > + @babel/core > lodash + - gatsby-theme-docz > gatsby > gatsby-cli > gatsby-recipes > remark-mdxjs > @babel/core > @babel/helper-module-transforms > lodash: + patched: '2024-04-02T22:09:07.672Z' + id: SNYK-JS-LODASH-567746 + path: >- + gatsby-theme-docz > gatsby > gatsby-cli > gatsby-recipes > + remark-mdxjs > @babel/core > @babel/helper-module-transforms > lodash + - docz > gatsby > gatsby-cli > gatsby-recipes > remark-mdxjs > @babel/core > @babel/helper-module-transforms > lodash: + patched: '2024-04-02T22:09:07.672Z' + id: SNYK-JS-LODASH-567746 + path: >- + docz > gatsby > gatsby-cli > gatsby-recipes > remark-mdxjs > + @babel/core > @babel/helper-module-transforms > lodash diff --git a/docs/package.json b/docs/package.json index 9458f576d0ed6..e351f4c7b7f25 100644 --- a/docs/package.json +++ b/docs/package.json @@ -39,7 +39,8 @@ "react-helmet": "^6.1.0", "swagger-ui-react": "^3.36.2", "theme-ui": "^0.3.1", - "three": "^0.125.0" + "three": "^0.125.0", + "@snyk/protect": "latest" }, "devDependencies": { "eslint-config-airbnb": "^18.2.1", @@ -61,7 +62,9 @@ "clean": "gatsby clean", "lint": "eslint src/ --ext .ts,.js,.tsx,.jsx", "lint-fix": "eslint --fix src/ --ext .ts,.js,.tsx,.jsx", - "test": "echo \"Write tests! -> https://gatsby.dev/unit-testing\" && exit 1" + "test": "echo \"Write tests! -> https://gatsby.dev/unit-testing\" && exit 1", + "prepare": "npm run snyk-protect", + "snyk-protect": "snyk-protect" }, "repository": { "type": "git", @@ -75,5 +78,6 @@ }, "bugs": { "url": "https://github.com/gatsbyjs/gatsby/issues" - } + }, + "snyk": true }