Skip to content
This repository was archived by the owner on Dec 3, 2025. It is now read-only.

Commit 47b3df8

Browse files
Bugfix/hero 10763 cves mitigation (#60)
2 parents b5c1fea + 7196181 commit 47b3df8

File tree

2 files changed

+23
-110
lines changed

2 files changed

+23
-110
lines changed

package.json

Lines changed: 6 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -91,5 +91,11 @@
9191
},
9292
"ember-addon": {
9393
"configPath": "tests/dummy/config"
94+
},
95+
"resolutions": {
96+
"cross-spawn": "7.0.5",
97+
"path-to-regexp": "0.1.12",
98+
"ansi-html": "0.0.8",
99+
"braces": "3.0.3"
94100
}
95101
}

yarn.lock

Lines changed: 17 additions & 110 deletions
Original file line numberDiff line numberDiff line change
@@ -1967,10 +1967,10 @@ ansi-escapes@^4.2.1, ansi-escapes@^4.3.2:
19671967
dependencies:
19681968
type-fest "^0.21.3"
19691969

1970-
ansi-html@^0.0.7:
1971-
version "0.0.7"
1972-
resolved "https://registry.yarnpkg.com/ansi-html/-/ansi-html-0.0.7.tgz#813584021962a9e9e6fd039f940d12f56ca7859e"
1973-
integrity sha512-JoAxEa1DfP9m2xfB/y2r/aKcwXNlltr4+0QSBC4TrLfcxyvepX2Pv0t/xpgGV5bGsDzCYV8SzjWgyCW0T9yYbA==
1970+
ansi-html@0.0.8, ansi-html@^0.0.7:
1971+
version "0.0.8"
1972+
resolved "https://registry.yarnpkg.com/ansi-html/-/ansi-html-0.0.8.tgz#e969db193b12bcdfa6727b29ffd8882dc13cc501"
1973+
integrity sha512-QROYz1I1Kj+8bTYgx0IlMBpRSCIU+7GjbE0oH+KF7QKc+qSF8YAlIutN59Db17tXN70Ono9upT9Ht0iG93W7ug==
19741974

19751975
ansi-regex@^3.0.0:
19761976
version "3.0.1"
@@ -2064,11 +2064,6 @@ arr-diff@^4.0.0:
20642064
resolved "https://registry.yarnpkg.com/arr-diff/-/arr-diff-4.0.0.tgz#d6461074febfec71e7e15235761a329a5dc7c520"
20652065
integrity sha512-YVIQ82gZPGBebQV/a8dar4AitzCQs0jjXwMPZllpXMaGjXPYVUawSxQrRsjhjupyVxEvbHgUmIhKVlND+j02kA==
20662066

2067-
arr-flatten@^1.1.0:
2068-
version "1.1.0"
2069-
resolved "https://registry.yarnpkg.com/arr-flatten/-/arr-flatten-1.1.0.tgz#36048bbff4e7b47e136644316c99669ea5ae91f1"
2070-
integrity sha512-L3hKV5R/p5o81R7O02IGnwpDmkp6E982XhtbuwSe3O4qOtMMMtodicASA1Cny2U+aCXcNpml+m4dPsvsJ3jatg==
2071-
20722067
arr-union@^3.1.0:
20732068
version "3.1.0"
20742069
resolved "https://registry.yarnpkg.com/arr-union/-/arr-union-3.1.0.tgz#e39b09aea9def866a8f206e288af63919bae39c4"
@@ -2458,23 +2453,7 @@ brace-expansion@^2.0.1:
24582453
dependencies:
24592454
balanced-match "^1.0.0"
24602455

2461-
braces@^2.3.1:
2462-
version "2.3.2"
2463-
resolved "https://registry.yarnpkg.com/braces/-/braces-2.3.2.tgz#5979fd3f14cd531565e5fa2df1abfff1dfaee729"
2464-
integrity sha512-aNdbnj9P8PjdXU4ybaWLK2IF3jc/EoDYbC7AazW6to3TRsfXxscC9UXOB5iDiEQrkyIbWp2SLQda4+QAa7nc3w==
2465-
dependencies:
2466-
arr-flatten "^1.1.0"
2467-
array-unique "^0.3.2"
2468-
extend-shallow "^2.0.1"
2469-
fill-range "^4.0.0"
2470-
isobject "^3.0.1"
2471-
repeat-element "^1.1.2"
2472-
snapdragon "^0.8.1"
2473-
snapdragon-node "^2.0.1"
2474-
split-string "^3.0.2"
2475-
to-regex "^3.0.1"
2476-
2477-
braces@^3.0.3:
2456+
[email protected], braces@^2.3.1, braces@^3.0.3:
24782457
version "3.0.3"
24792458
resolved "https://registry.yarnpkg.com/braces/-/braces-3.0.3.tgz#490332f40919452272d55a8480adc0c441358789"
24802459
integrity sha512-yQbXgO/OSZVD2IsiLlro+7Hf6Q18EJrKSEsdoMzKePKXct3gvD8oLcOQdIzGupr5Fj+EDe8gO/lxc1BzfMpxvA==
@@ -3509,21 +3488,10 @@ cosmiconfig@^8.2.0:
35093488
parse-json "^5.2.0"
35103489
path-type "^4.0.0"
35113490

3512-
cross-spawn@^6.0.0:
3513-
version "6.0.5"
3514-
resolved "https://registry.yarnpkg.com/cross-spawn/-/cross-spawn-6.0.5.tgz#4a5ec7c64dfae22c3a14124dbacdee846d80cbc4"
3515-
integrity sha512-eTVLrBSt7fjbDygz805pMnstIs2VTBNkRm0qxZd+M7A5XDdxVRWO5MxGBXZhjY4cqLYLdtrGqRf8mBPmzwSpWQ==
3516-
dependencies:
3517-
nice-try "^1.0.4"
3518-
path-key "^2.0.1"
3519-
semver "^5.5.0"
3520-
shebang-command "^1.2.0"
3521-
which "^1.2.9"
3522-
3523-
cross-spawn@^7.0.0, cross-spawn@^7.0.2, cross-spawn@^7.0.3:
3524-
version "7.0.3"
3525-
resolved "https://registry.yarnpkg.com/cross-spawn/-/cross-spawn-7.0.3.tgz#f73a85b9d5d41d045551c177e2882d4ac85728a6"
3526-
integrity sha512-iRDPJKUPVEND7dHPO8rkbOnPpyDygcDFtWjpeWNCgy8WP2rXcxXL8TskReQl6OrB2G7+UJrags1q15Fudc7G6w==
3491+
[email protected], cross-spawn@^6.0.0, cross-spawn@^7.0.0, cross-spawn@^7.0.2, cross-spawn@^7.0.3:
3492+
version "7.0.5"
3493+
resolved "https://registry.yarnpkg.com/cross-spawn/-/cross-spawn-7.0.5.tgz#910aac880ff5243da96b728bc6521a5f6c2f2f82"
3494+
integrity sha512-ZVJrKKYunU38/76t0RMOulHOnUcbU9GbpWKAOZ0mhjr7CX6FVrH+4FrAapSOekrgFQ3f/8gwMEuIft0aKq6Hug==
35273495
dependencies:
35283496
path-key "^3.1.0"
35293497
shebang-command "^2.0.0"
@@ -5135,16 +5103,6 @@ filesize@^10.0.8:
51355103
resolved "https://registry.yarnpkg.com/filesize/-/filesize-10.1.6.tgz#31194da825ac58689c0bce3948f33ce83aabd361"
51365104
integrity sha512-sJslQKU2uM33qH5nqewAwVB2QgR6w1aMNsYUp3aN5rMRyXEwJGmZvaWzeJFNTOXWlHQyBFCWrdj3fV/fsTOX8w==
51375105

5138-
fill-range@^4.0.0:
5139-
version "4.0.0"
5140-
resolved "https://registry.yarnpkg.com/fill-range/-/fill-range-4.0.0.tgz#d544811d428f98eb06a63dc402d2403c328c38f7"
5141-
integrity sha512-VcpLTWqWDiTerugjj8e3+esbg+skS3M9e54UuR3iCeIDMXCLTsAH8hTSzDQU/X6/6t3eYkOKoZSef2PlU6U1XQ==
5142-
dependencies:
5143-
extend-shallow "^2.0.1"
5144-
is-number "^3.0.0"
5145-
repeat-string "^1.6.1"
5146-
to-regex-range "^2.1.0"
5147-
51485106
fill-range@^7.1.1:
51495107
version "7.1.1"
51505108
resolved "https://registry.yarnpkg.com/fill-range/-/fill-range-7.1.1.tgz#44265d3cac07e3ea7dc247516380643754a05292"
@@ -6690,7 +6648,7 @@ keyv@^4.5.3:
66906648
dependencies:
66916649
json-buffer "3.0.1"
66926650

6693-
kind-of@^3.0.2, kind-of@^3.0.3, kind-of@^3.2.0:
6651+
kind-of@^3.0.2, kind-of@^3.0.3:
66946652
version "3.2.2"
66956653
resolved "https://registry.yarnpkg.com/kind-of/-/kind-of-3.2.2.tgz#31ea21a734bab9bbb0f32466d893aea51e4a3c64"
66966654
integrity sha512-NOW9QQXMoZGg/oqnVNoNTTIFEIid1627WCffUBJEdMxYApq7mNE7CpzucIPc+ZQg25Phej7IJSmX3hO+oblOtQ==
@@ -7379,11 +7337,6 @@ neo-async@^2.6.2:
73797337
resolved "https://registry.yarnpkg.com/neo-async/-/neo-async-2.6.2.tgz#b4aafb93e3aeb2d8174ca53cf163ab7d7308305f"
73807338
integrity sha512-Yd3UES5mWCSqR+qNT93S3UoYUkqAZ9lLg8a7g9rimsWmYGK8cVToA4/sF3RrshdyV3sAGMXVUmpMYOw+dLpOuw==
73817339

7382-
nice-try@^1.0.4:
7383-
version "1.0.5"
7384-
resolved "https://registry.yarnpkg.com/nice-try/-/nice-try-1.0.5.tgz#a3378a7696ce7d223e88fc9b764bd7ef1089e366"
7385-
integrity sha512-1nh45deeb5olNY7eX82BkPO7SSxR5SSYJiPTrTdFUVYwAl8CKMA5N9PjTYkHiRjisVcxcQ1HXdLhx2qxxJzLNQ==
7386-
73877340
no-case@^3.0.4:
73887341
version "3.0.4"
73897342
resolved "https://registry.yarnpkg.com/no-case/-/no-case-3.0.4.tgz#d361fd5c9800f558551a8369fc0dcd4662b6124d"
@@ -7822,7 +7775,7 @@ [email protected], path-is-absolute@^1.0.0:
78227775
resolved "https://registry.yarnpkg.com/path-is-absolute/-/path-is-absolute-1.0.1.tgz#174b9268735534ffbc7ace6bf53a5a9e1b5c5f5f"
78237776
integrity sha512-AVbw3UJ2e9bq64vSaS9Am0fje1Pa8pbGqTTsmXfaIiMpnr5DlDhfJOuLj9Sf95ZPVDAUerDfEk88MPmPe7UCQg==
78247777

7825-
path-key@^2.0.0, path-key@^2.0.1:
7778+
path-key@^2.0.0:
78267779
version "2.0.1"
78277780
resolved "https://registry.yarnpkg.com/path-key/-/path-key-2.0.1.tgz#411cadb574c5a140d3a4b1910d40d80cc9f40b40"
78287781
integrity sha512-fEHGKCSmUSDPv4uoj8AlD+joPlq3peND+HRYyxFz4KPw4z926S/b8rIuFs2FYJg3BwsxJf6A9/3eIdLaYC+9Dw==
@@ -7862,10 +7815,10 @@ path-scurry@^1.6.1:
78627815
lru-cache "^10.2.0"
78637816
minipass "^5.0.0 || ^6.0.2 || ^7.0.0"
78647817

7865-
7866-
version "0.1.10"
7867-
resolved "https://registry.yarnpkg.com/path-to-regexp/-/path-to-regexp-0.1.10.tgz#67e9108c5c0551b9e5326064387de4763c4d5f8b"
7868-
integrity sha512-7lf7qcQidTku0Gu3YDPc8DJ1q7OOucfa/BSsIwjuh56VU7katFvuM8hULfkwB3Fns/rsVF7PwPKVw1sl5KQS9w==
7818+
7819+
version "0.1.12"
7820+
resolved "https://registry.yarnpkg.com/path-to-regexp/-/path-to-regexp-0.1.12.tgz#d5e1a12e478a976d432ef3c58d534b9923164bb7"
7821+
integrity sha512-RA1GjUVMnvYFxuqovrEqZoxxW5NUZqbwKtYz/Tt7nXerk0LbLblQmrsgdeOxV5SFHf0UDggjS/bSeOZwt1pmEQ==
78697822

78707823
path-type@^4.0.0:
78717824
version "4.0.0"
@@ -8336,16 +8289,6 @@ remove-types@^1.0.0:
83368289
"@babel/plugin-transform-typescript" "^7.16.8"
83378290
prettier "^2.5.1"
83388291

8339-
repeat-element@^1.1.2:
8340-
version "1.1.4"
8341-
resolved "https://registry.yarnpkg.com/repeat-element/-/repeat-element-1.1.4.tgz#be681520847ab58c7568ac75fbfad28ed42d39e9"
8342-
integrity sha512-LFiNfRcSu7KK3evMyYOuCzv3L10TW7yC1G2/+StMjK8Y6Vqd2MG7r/Qjw4ghtuCOjFvlnms/iMmLqpvW/ES/WQ==
8343-
8344-
repeat-string@^1.6.1:
8345-
version "1.6.1"
8346-
resolved "https://registry.yarnpkg.com/repeat-string/-/repeat-string-1.6.1.tgz#8dcae470e1c88abc2d600fff4a776286da75e637"
8347-
integrity sha512-PV0dzCYDNfRi1jCDbJzpW7jNNDRuCOG/jI5ctQcGKt/clZD+YcPS3yIlWuTJMmESC8aevCFmWJy5wjAFgNqN6w==
8348-
83498292
require-directory@^2.1.1:
83508293
version "2.1.1"
83518294
resolved "https://registry.yarnpkg.com/require-directory/-/require-directory-2.1.1.tgz#8c64ad5fd30dab1c976e2344ffe7f792a6a6df42"
@@ -8776,25 +8719,13 @@ [email protected]:
87768719
resolved "https://registry.yarnpkg.com/setprototypeof/-/setprototypeof-1.2.0.tgz#66c9a24a73f9fc28cbe66b09fed3d33dcaf1b424"
87778720
integrity sha512-E5LDX7Wrp85Kil5bhZv46j8jOeboKq5JMmYM3gVGdGH8xFpPWXUMsNrlODCrkoxMEeNi/XZIwuRvY4XNwYMJpw==
87788721

8779-
shebang-command@^1.2.0:
8780-
version "1.2.0"
8781-
resolved "https://registry.yarnpkg.com/shebang-command/-/shebang-command-1.2.0.tgz#44aac65b695b03398968c39f363fee5deafdf1ea"
8782-
integrity sha512-EV3L1+UQWGor21OmnvojK36mhg+TyIKDh3iFBKBohr5xeXIhNBcx8oWdgkTEEQ+BEFFYdLRuqMfd5L84N1V5Vg==
8783-
dependencies:
8784-
shebang-regex "^1.0.0"
8785-
87868722
shebang-command@^2.0.0:
87878723
version "2.0.0"
87888724
resolved "https://registry.yarnpkg.com/shebang-command/-/shebang-command-2.0.0.tgz#ccd0af4f8835fbdc265b82461aaf0c36663f34ea"
87898725
integrity sha512-kHxr2zZpYtdmrN1qDjrrX/Z1rR1kG8Dx+gkpK1G4eXmvXswmcE1hTWBWYUzlraYw1/yZp6YuDY77YtvbN0dmDA==
87908726
dependencies:
87918727
shebang-regex "^3.0.0"
87928728

8793-
shebang-regex@^1.0.0:
8794-
version "1.0.0"
8795-
resolved "https://registry.yarnpkg.com/shebang-regex/-/shebang-regex-1.0.0.tgz#da42f49740c0b42db2ca9728571cb190c98efea3"
8796-
integrity sha512-wpoSFAxys6b2a2wHZ1XpDSgD7N9iVjg29Ph9uV/uaP9Ex/KXlkTZTeddxDPSYQpgvzKLGJke2UU0AzoGCjNIvQ==
8797-
87988729
shebang-regex@^3.0.0:
87998730
version "3.0.0"
88008731
resolved "https://registry.yarnpkg.com/shebang-regex/-/shebang-regex-3.0.0.tgz#ae16f1644d873ecad843b0307b143362d4c42172"
@@ -8869,22 +8800,6 @@ snake-case@^3.0.3:
88698800
dot-case "^3.0.4"
88708801
tslib "^2.0.3"
88718802

8872-
snapdragon-node@^2.0.1:
8873-
version "2.1.1"
8874-
resolved "https://registry.yarnpkg.com/snapdragon-node/-/snapdragon-node-2.1.1.tgz#6c175f86ff14bdb0724563e8f3c1b021a286853b"
8875-
integrity sha512-O27l4xaMYt/RSQ5TR3vpWCAB5Kb/czIcqUFOM/C4fYcLnbZUc1PkjTAMjof2pBWaSTwOUd6qUHcFGVGj7aIwnw==
8876-
dependencies:
8877-
define-property "^1.0.0"
8878-
isobject "^3.0.0"
8879-
snapdragon-util "^3.0.1"
8880-
8881-
snapdragon-util@^3.0.1:
8882-
version "3.0.1"
8883-
resolved "https://registry.yarnpkg.com/snapdragon-util/-/snapdragon-util-3.0.1.tgz#f956479486f2acd79700693f6f7b805e45ab56e2"
8884-
integrity sha512-mbKkMdQKsjX4BAL4bRYTj21edOf8cN7XHdYUJEe+Zn99hVEYcMvKPct1IqNe7+AZPirn8BCDOQBHQZknqmKlZQ==
8885-
dependencies:
8886-
kind-of "^3.2.0"
8887-
88888803
snapdragon@^0.8.1:
88898804
version "0.8.2"
88908805
resolved "https://registry.yarnpkg.com/snapdragon/-/snapdragon-0.8.2.tgz#64922e7c565b0e14204ba1aa7d6964278d25182d"
@@ -9037,7 +8952,7 @@ spdx-license-ids@^3.0.0:
90378952
resolved "https://registry.yarnpkg.com/spdx-license-ids/-/spdx-license-ids-3.0.20.tgz#e44ed19ed318dd1e5888f93325cee800f0f51b89"
90388953
integrity sha512-jg25NiDV/1fLtSgEgyvVyDunvaNHbuwF9lfNV17gSmPFAlYzdfNBlLtLzXTevwkPj7DhGbmN9VnmJIgLnhvaBw==
90398954

9040-
split-string@^3.0.1, split-string@^3.0.2:
8955+
split-string@^3.0.1:
90418956
version "3.1.0"
90428957
resolved "https://registry.yarnpkg.com/split-string/-/split-string-3.1.0.tgz#7cb09dda3a86585705c64b39a6466038682e8fe2"
90438958
integrity sha512-NzNVhJDYpwceVVii8/Hu6DKfD2G+NrQHlS/V/qgv763EYudVwEcMQNxd2lh+0VrUByXN/oJkl5grOhYWvQUYiw==
@@ -9540,14 +9455,6 @@ to-readable-stream@^1.0.0:
95409455
resolved "https://registry.yarnpkg.com/to-readable-stream/-/to-readable-stream-1.0.0.tgz#ce0aa0c2f3df6adf852efb404a783e77c0475771"
95419456
integrity sha512-Iq25XBt6zD5npPhlLVXGFN3/gyR2/qODcKNNyTMd4vbm39HUaOiAM4PMq0eMVC/Tkxz+Zjdsc55g9yyz+Yq00Q==
95429457

9543-
to-regex-range@^2.1.0:
9544-
version "2.1.1"
9545-
resolved "https://registry.yarnpkg.com/to-regex-range/-/to-regex-range-2.1.1.tgz#7c80c17b9dfebe599e27367e0d4dd5590141db38"
9546-
integrity sha512-ZZWNfCjUokXXDGXFpZehJIkZqq91BcULFq/Pi7M5i4JnxXdhMKAK682z8bCW3o8Hj1wuuzoKcW3DfVzaP6VuNg==
9547-
dependencies:
9548-
is-number "^3.0.0"
9549-
repeat-string "^1.6.1"
9550-
95519458
to-regex-range@^5.0.1:
95529459
version "5.0.1"
95539460
resolved "https://registry.yarnpkg.com/to-regex-range/-/to-regex-range-5.0.1.tgz#1648c44aae7c8d988a326018ed72f5b4dd0392e4"
@@ -10061,7 +9968,7 @@ which-typed-array@^1.1.14, which-typed-array@^1.1.15:
100619968
gopd "^1.0.1"
100629969
has-tostringtag "^1.0.2"
100639970

10064-
which@^1.2.14, which@^1.2.9, which@^1.3.1:
9971+
which@^1.2.14, which@^1.3.1:
100659972
version "1.3.1"
100669973
resolved "https://registry.yarnpkg.com/which/-/which-1.3.1.tgz#a45043d54f5805316da8d62f9f50918d3da70b0a"
100679974
integrity sha512-HxJdYWq1MTIQbJ3nw0cqssHoTNU267KlrDuGZ1WYlxDStUtKUhOaJmh112/TZmHxxUfuJqPXSOm7tDyas0OSIQ==

0 commit comments

Comments
 (0)