Skip to content

Commit 0616419

Browse files
chore: patch vulnerable browserify-sign dep (#28573)
1 parent 862e263 commit 0616419

File tree

2 files changed

+22
-21
lines changed

2 files changed

+22
-21
lines changed

package.json

+1
Original file line numberDiff line numberDiff line change
@@ -273,6 +273,7 @@
273273
"**/socket.io-parser": "4.0.5",
274274
"**/ua-parser-js": "0.7.33",
275275
"@typescript-eslint/eslint-plugin": "4.18.0",
276+
"browserify-sign": "4.2.2",
276277
"sharp": "0.29.3",
277278
"vue-template-compiler": "2.6.12"
278279
}

yarn.lock

+21-21
Original file line numberDiff line numberDiff line change
@@ -9595,10 +9595,10 @@ bn.js@^4.0.0, bn.js@^4.1.0, bn.js@^4.11.9:
95959595
resolved "https://registry.yarnpkg.com/bn.js/-/bn.js-4.12.0.tgz#775b3f278efbb9718eec7361f483fb36fbbfea88"
95969596
integrity sha512-c98Bf3tPniI+scsdk237ku1Dc3ujXQTSgyiPUDEOe7tRkhrqridvh8klBv0HCEso1OLOYcHuCv/cS6DNxKH+ZA==
95979597

9598-
bn.js@^5.0.0, bn.js@^5.1.1:
9599-
version "5.2.0"
9600-
resolved "https://registry.yarnpkg.com/bn.js/-/bn.js-5.2.0.tgz#358860674396c6997771a9d051fcc1b57d4ae002"
9601-
integrity sha512-D7iWRBvnZE8ecXiLj/9wbxH7Tk79fAh8IHaTNq1RWRixsS02W+5qS+iE9yq6RYl0asXx5tw0bLhmT5pIfbSquw==
9598+
bn.js@^5.0.0, bn.js@^5.2.1:
9599+
version "5.2.1"
9600+
resolved "https://registry.yarnpkg.com/bn.js/-/bn.js-5.2.1.tgz#0bc527a6a0d18d0aa8d5b0538ce4a77dccfa7b70"
9601+
integrity sha512-eXRvHzWyYPBuB4NBy0cmYQjGitUrtqwbvlzP3G6VFnNRbsZQIxQ10PbKKHt8gZ/HW/D/747aDl+QkDqg3KQLMQ==
96029602

96039603
96049604
version "1.19.0"
@@ -9842,28 +9842,28 @@ browserify-fs@^1.0.0:
98429842
level-js "^2.1.3"
98439843
levelup "^0.18.2"
98449844

9845-
browserify-rsa@^4.0.0, browserify-rsa@^4.0.1:
9845+
browserify-rsa@^4.0.0, browserify-rsa@^4.1.0:
98469846
version "4.1.0"
98479847
resolved "https://registry.yarnpkg.com/browserify-rsa/-/browserify-rsa-4.1.0.tgz#b2fd06b5b75ae297f7ce2dc651f918f5be158c8d"
98489848
integrity sha512-AdEER0Hkspgno2aR97SAf6vi0y0k8NuOpGnVH3O99rcA5Q6sh8QxcngtHuJ6uXwnfAXNM4Gn1Gb7/MV1+Ymbog==
98499849
dependencies:
98509850
bn.js "^5.0.0"
98519851
randombytes "^2.0.1"
98529852

9853-
browserify-sign@^4.0.0:
9854-
version "4.2.1"
9855-
resolved "https://registry.yarnpkg.com/browserify-sign/-/browserify-sign-4.2.1.tgz#eaf4add46dd54be3bb3b36c0cf15abbeba7956c3"
9856-
integrity sha512-/vrA5fguVAKKAVTNJjgSm1tRQDHUU6DbwO9IROu/0WAzC8PKhucDSh18J0RMvVeHAn5puMd+QHC2erPRNf8lmg==
9853+
browserify-sign@4.2.2, browserify-sign@^4.0.0:
9854+
version "4.2.2"
9855+
resolved "https://registry.yarnpkg.com/browserify-sign/-/browserify-sign-4.2.2.tgz#e78d4b69816d6e3dd1c747e64e9947f9ad79bc7e"
9856+
integrity sha512-1rudGyeYY42Dk6texmv7c4VcQ0EsvVbLwZkA+AQB7SxvXxmcD93jcHie8bzecJ+ChDlmAm2Qyu0+Ccg5uhZXCg==
98579857
dependencies:
9858-
bn.js "^5.1.1"
9859-
browserify-rsa "^4.0.1"
9858+
bn.js "^5.2.1"
9859+
browserify-rsa "^4.1.0"
98609860
create-hash "^1.2.0"
98619861
create-hmac "^1.1.7"
9862-
elliptic "^6.5.3"
9862+
elliptic "^6.5.4"
98639863
inherits "^2.0.4"
9864-
parse-asn1 "^5.1.5"
9865-
readable-stream "^3.6.0"
9866-
safe-buffer "^5.2.0"
9864+
parse-asn1 "^5.1.6"
9865+
readable-stream "^3.6.2"
9866+
safe-buffer "^5.2.1"
98679867

98689868
browserify-zlib@^0.2.0:
98699869
version "0.2.0"
@@ -13288,7 +13288,7 @@ elegant-spinner@^1.0.1:
1328813288
resolved "https://registry.yarnpkg.com/elegant-spinner/-/elegant-spinner-1.0.1.tgz#db043521c95d7e303fd8f345bedc3349cfb0729e"
1328913289
integrity sha1-2wQ1IcldfjA/2PNFvtwzSc+wcp4=
1329013290

13291-
elliptic@^6.5.3:
13291+
elliptic@^6.5.3, elliptic@^6.5.4:
1329213292
version "6.5.4"
1329313293
resolved "https://registry.yarnpkg.com/elliptic/-/elliptic-6.5.4.tgz#da37cebd31e79a1367e941b592ed1fbebd58abbb"
1329413294
integrity sha512-iLhC6ULemrljPZb+QutR5TQGB+pdW6KGD5RSegS+8sorOZT+rdQFbsQFJgvN3eRqNALqJer4oQ16YvJHlU8hzQ==
@@ -23112,7 +23112,7 @@ parent-module@^1.0.0:
2311223112
dependencies:
2311323113
callsites "^3.0.0"
2311423114

23115-
parse-asn1@^5.0.0, parse-asn1@^5.1.5:
23115+
parse-asn1@^5.0.0, parse-asn1@^5.1.6:
2311623116
version "5.1.6"
2311723117
resolved "https://registry.yarnpkg.com/parse-asn1/-/parse-asn1-5.1.6.tgz#385080a3ec13cb62a62d39409cb3e88844cdaed4"
2311823118
integrity sha512-RnZRo1EPU6JBnra2vGHj0yhp6ebyjBZpmUCLHWiFhxlzvBCCpAuZ7elsBp1PVAbQN0/04VD/19rfzlBSwLstMw==
@@ -25000,10 +25000,10 @@ [email protected], readable-stream@^1.0.26-4:
2500025000
isarray "0.0.1"
2500125001
string_decoder "~0.10.x"
2500225002

25003-
"readable-stream@2 || 3", readable-stream@3, readable-stream@^3.0.0, readable-stream@^3.0.2, readable-stream@^3.0.6, readable-stream@^3.1.1, readable-stream@^3.4.0, readable-stream@^3.5.0, readable-stream@^3.6.0:
25004-
version "3.6.0"
25005-
resolved "https://registry.yarnpkg.com/readable-stream/-/readable-stream-3.6.0.tgz#337bbda3adc0706bd3e024426a286d4b4b2c9198"
25006-
integrity sha512-BViHy7LKeTz4oNnkcLJ+lVSL6vpiFeX6/d3oSH8zCW7UxP2onchk+vTGB143xuFjHS3deTgkKoXXymXqymiIdA==
25003+
"readable-stream@2 || 3", readable-stream@3, readable-stream@^3.0.0, readable-stream@^3.0.2, readable-stream@^3.0.6, readable-stream@^3.1.1, readable-stream@^3.4.0, readable-stream@^3.5.0, readable-stream@^3.6.0, readable-stream@^3.6.2:
25004+
version "3.6.2"
25005+
resolved "https://registry.yarnpkg.com/readable-stream/-/readable-stream-3.6.2.tgz#56a9b36ea965c00c5a93ef31eb111a0f11056967"
25006+
integrity sha512-9u/sniCrY3D5WdsERHzHE4G2YCXqoG5FTHUiCC4SIbr6XcLZBY05ya9EKjYek9O5xOAwjGq+1JdGBAS7Q9ScoA==
2500725007
dependencies:
2500825008
inherits "^2.0.3"
2500925009
string_decoder "^1.1.1"

0 commit comments

Comments
 (0)