Skip to content
This repository was archived by the owner on Apr 22, 2024. It is now read-only.

Commit 4ef7b1a

Browse files
authored
Bump vue-i18n-extract to version "1.2.3 (#279)
Version 1.0.2 depends on dot-object@^1.7.1 which is vulnerable to prototype pollution.
1 parent e3bb0e9 commit 4ef7b1a

File tree

2 files changed

+54
-28
lines changed

2 files changed

+54
-28
lines changed

package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -31,7 +31,7 @@
3131
"rimraf": "^3.0.0",
3232
"vue": "^2.6.11",
3333
"vue-i18n": "^8.17.0",
34-
"vue-i18n-extract": "1.0.2"
34+
"vue-i18n-extract": "^1.0.2"
3535
},
3636
"devDependencies": {
3737
"@vue/cli": "^4.5.10",

yarn.lock

Lines changed: 53 additions & 27 deletions
Original file line numberDiff line numberDiff line change
@@ -4884,16 +4884,6 @@ cli-spinners@^2.0.0:
48844884
resolved "https://registry.yarnpkg.com/cli-spinners/-/cli-spinners-2.3.0.tgz#0632239a4b5aa4c958610142c34bb7a651fc8df5"
48854885
integrity sha512-Xs2Hf2nzrvJMFKimOR7YR0QwZ8fc0u98kdtwN1eNAZzNQgH3vK2pXzff6GJtKh7S5hoJ87ECiAiZFS2fb5Ii2w==
48864886

4887-
cli-table3@^0.5.1:
4888-
version "0.5.1"
4889-
resolved "https://registry.yarnpkg.com/cli-table3/-/cli-table3-0.5.1.tgz#0252372d94dfc40dbd8df06005f48f31f656f202"
4890-
integrity sha512-7Qg2Jrep1S/+Q3EceiZtQcDPWxhAvBw+ERf1162v4sikJrvojMHFqXt8QIVha8UlH9rgU0BeWPytZ9/TzYqlUw==
4891-
dependencies:
4892-
object-assign "^4.1.0"
4893-
string-width "^2.1.1"
4894-
optionalDependencies:
4895-
colors "^1.1.2"
4896-
48974887
cli-truncate@^0.2.1:
48984888
version "0.2.1"
48994889
resolved "https://registry.yarnpkg.com/cli-truncate/-/cli-truncate-0.2.1.tgz#9f15cfbb0705005369216c626ac7d05ab90dd574"
@@ -5127,6 +5117,16 @@ commander@^2.18.0, commander@^2.20.0, commander@^2.20.3:
51275117
resolved "https://registry.yarnpkg.com/commander/-/commander-2.20.3.tgz#fd485e84c03eb4881c20722ba48035e8531aeb33"
51285118
integrity sha512-GpVkmM8vF2vQUkj2LvZmD35JxeJOLCwJ9cUkugyk2nuhbv3+mJvpLYYt+0+USMxE+oj+ey/lJEnhZw75x/OMcQ==
51295119

5120+
commander@^4.0.0:
5121+
version "4.1.1"
5122+
resolved "https://registry.yarnpkg.com/commander/-/commander-4.1.1.tgz#9fd602bd936294e9e9ef46a3f4d6964044b18068"
5123+
integrity sha512-NOKm8xhkzAjzFx8B2v5OAHT+u5pRQc2UCa2Vq9jYL/31o2wi9mxBA7LIFs3sV5VSC49z6pEhfbMULvShKj26WA==
5124+
5125+
commander@^6.1.0:
5126+
version "6.2.1"
5127+
resolved "https://registry.yarnpkg.com/commander/-/commander-6.2.1.tgz#0792eb682dfbc325999bb2b84fddddba110ac73c"
5128+
integrity sha512-U7VdrJFnJgo4xjrHpTzu0yrHPGImdsmD95ZlgYSEajAn2JKzDhDTPG9kBTefmObL2w/ngeZnilk+OV9CG3d7UA==
5129+
51305130
commander@~2.19.0:
51315131
version "2.19.0"
51325132
resolved "https://registry.yarnpkg.com/commander/-/commander-2.19.0.tgz#f6198aa84e5b83c46054b94ddedbfed5ee9ff12a"
@@ -6222,13 +6222,13 @@ dot-case@^3.0.3:
62226222
no-case "^3.0.3"
62236223
tslib "^1.10.0"
62246224

6225-
dot-object@^1.7.1:
6226-
version "1.9.0"
6227-
resolved "https://registry.yarnpkg.com/dot-object/-/dot-object-1.9.0.tgz#6e3d6d8379f794c5174599ddf05528f5990f076e"
6228-
integrity sha512-7MPN6y7XhAO4vM4eguj5+5HNKLjJYfkVG1ZR1Aput4Q4TR6SYeSjhpVQ77IzJHoSHffKbDxBC+48aCiiRurDPw==
6225+
dot-object@^2.1.4:
6226+
version "2.1.4"
6227+
resolved "https://registry.yarnpkg.com/dot-object/-/dot-object-2.1.4.tgz#c6c54e9fca510b4d0ea4d65acf33726963843b5f"
6228+
integrity sha512-7FXnyyCLFawNYJ+NhkqyP9Wd2yzuo+7n9pGiYpkmXCTYa8Ci2U0eUNDVg5OuO5Pm6aFXI2SWN8/N/w7SJWu1WA==
62296229
dependencies:
6230-
commander "^2.20.0"
6231-
glob "^7.1.4"
6230+
commander "^4.0.0"
6231+
glob "^7.1.5"
62326232

62336233
dot-prop@^3.0.0:
62346234
version "3.0.0"
@@ -6694,7 +6694,7 @@ eslint@^7.17.0:
66946694
text-table "^0.2.0"
66956695
v8-compile-cache "^2.0.3"
66966696

6697-
[email protected], esm@^3.2.13, esm@^3.2.25:
6697+
[email protected], esm@^3.2.25:
66986698
version "3.2.25"
66996699
resolved "https://registry.yarnpkg.com/esm/-/esm-3.2.25.tgz#342c18c29d56157688ba5ce31f8431fbb795cc10"
67006700
integrity sha512-U1suiZ2oDVWv4zPO56S0NcR5QriEahGtdN2OR6FiOG4WJvcjBVFB0qI4+eKoWFH483PKGuLuu6V8Z4T5g63UVA==
@@ -7739,6 +7739,18 @@ glob@^7.0.0, glob@^7.0.3, glob@^7.1.1, glob@^7.1.2, glob@^7.1.3, glob@^7.1.4, gl
77397739
once "^1.3.0"
77407740
path-is-absolute "^1.0.0"
77417741

7742+
glob@^7.1.5, glob@^7.1.6:
7743+
version "7.2.3"
7744+
resolved "https://registry.yarnpkg.com/glob/-/glob-7.2.3.tgz#b8df0fb802bbfa8e89bd1d938b4e16578ed44f2b"
7745+
integrity sha512-nFR0zLpU2YCaRxwoCJvL6UvCH2JFyFVIvwTLsIf21AuHlMskA1hhTdk+LlYJtOlYt9v6dvszD2BGRqBL+iQK9Q==
7746+
dependencies:
7747+
fs.realpath "^1.0.0"
7748+
inflight "^1.0.4"
7749+
inherits "2"
7750+
minimatch "^3.1.1"
7751+
once "^1.3.0"
7752+
path-is-absolute "^1.0.0"
7753+
77427754
global-dirs@^0.1.0:
77437755
version "0.1.1"
77447756
resolved "https://registry.yarnpkg.com/global-dirs/-/global-dirs-0.1.1.tgz#b319c0dd4607f353f3be9cca4c72fc148c49f445"
@@ -9658,6 +9670,14 @@ js-yaml@^3.13.1, js-yaml@^3.5.2:
96589670
argparse "^1.0.7"
96599671
esprima "^4.0.0"
96609672

9673+
js-yaml@^3.14.0:
9674+
version "3.14.1"
9675+
resolved "https://registry.yarnpkg.com/js-yaml/-/js-yaml-3.14.1.tgz#dae812fdb3825fa306609a8717383c50c36a0537"
9676+
integrity sha512-okMH7OXXJ7YrN9Ok3/SXrnu4iX9yOk+25nqX4imS2npuvTYDmo/QEZoqwZkYaIDk3jVvBOTOIEgEhaLOynBS9g==
9677+
dependencies:
9678+
argparse "^1.0.7"
9679+
esprima "^4.0.0"
9680+
96619681
jsbn@~0.1.0:
96629682
version "0.1.1"
96639683
resolved "https://registry.yarnpkg.com/jsbn/-/jsbn-0.1.1.tgz#a5e654c2e5a2deb5f201d96cefbca80c0ef2f513"
@@ -10664,6 +10684,13 @@ [email protected], minimatch@^3.0.2, minimatch@^3.0.4, minimatch@~3.0.2:
1066410684
dependencies:
1066510685
brace-expansion "^1.1.7"
1066610686

10687+
minimatch@^3.1.1:
10688+
version "3.1.2"
10689+
resolved "https://registry.yarnpkg.com/minimatch/-/minimatch-3.1.2.tgz#19cd194bfd3e428f049a70817c038d89ab4be35b"
10690+
integrity sha512-J7p63hRiAjw1NDEww1W7i37+ByIrOWO5XQQAzZ3VOcL0PNybwpfmV/N05zFAzwQ9USyEcX6t3UO+K5aqBQOIHw==
10691+
dependencies:
10692+
brace-expansion "^1.1.7"
10693+
1066710694
minimist-options@^3.0.1:
1066810695
version "3.0.2"
1066910696
resolved "https://registry.yarnpkg.com/minimist-options/-/minimist-options-3.0.2.tgz#fba4c8191339e13ecf4d61beb03f070103f3d954"
@@ -15198,17 +15225,16 @@ vue-hot-reload-api@^2.3.0:
1519815225
resolved "https://registry.yarnpkg.com/vue-hot-reload-api/-/vue-hot-reload-api-2.3.4.tgz#532955cc1eb208a3d990b3a9f9a70574657e08f2"
1519915226
integrity sha512-BXq3jwIagosjgNVae6tkHzzIk6a8MHFtzAdwhnV5VlvPTFxDCvIttgSiHWjdGoTJvXtmRu5HacExfdarRcFhog==
1520015227

15201-
15202-
version "1.0.2"
15203-
resolved "https://registry.yarnpkg.com/vue-i18n-extract/-/vue-i18n-extract-1.0.2.tgz#0a136e12d1634d6799e187aad81a7003d02f67a5"
15204-
integrity sha512-+zwDKvle4KcfloXZnj5hF01ViKDiFr5RMx5507D7oyDXpSleRpekF5YHgZa/+Ra6Go68//z0Nya58J9tKFsCjw==
15228+
vue-i18n-extract@^1.0.2:
15229+
version "1.2.3"
15230+
resolved "https://registry.yarnpkg.com/vue-i18n-extract/-/vue-i18n-extract-1.2.3.tgz#7a16bbce29d587476df0bad85c0f9453b5bcfcbe"
15231+
integrity sha512-ZLtF6wp732KHKawHx5ZSmjyydkli9g26z0NfGLP89DkiGx4nKFYZ2oIH35HtImdhcfq1zqkeSwxs7kRzarLoVw==
1520515232
dependencies:
15206-
cli-table3 "^0.5.1"
15207-
dot-object "^1.7.1"
15208-
esm "^3.2.13"
15209-
glob "^7.1.3"
15233+
commander "^6.1.0"
15234+
dot-object "^2.1.4"
15235+
glob "^7.1.6"
1521015236
is-valid-glob "^1.0.0"
15211-
yargs "^13.2.2"
15237+
js-yaml "^3.14.0"
1521215238

1521315239
vue-i18n@^8.17.0:
1521415240
version "8.17.3"
@@ -15745,7 +15771,7 @@ yargs-parser@^18.1.1, yargs-parser@^18.1.2:
1574515771
camelcase "^5.0.0"
1574615772
decamelize "^1.2.0"
1574715773

15748-
yargs@^13.0.0, yargs@^13.2.2, yargs@^13.3.2:
15774+
yargs@^13.0.0, yargs@^13.3.2:
1574915775
version "13.3.2"
1575015776
resolved "https://registry.yarnpkg.com/yargs/-/yargs-13.3.2.tgz#ad7ffefec1aa59565ac915f82dccb38a9c31a2dd"
1575115777
integrity sha512-AX3Zw5iPruN5ie6xGRIDgqkT+ZhnRlZMLMHAs8tg7nRruy2Nb+i5o9bwghAogtM08q1dpr2LVoS8KSTMYpWXUw==

0 commit comments

Comments
 (0)