Skip to content

Commit

Permalink
Fix ReDoS in word-wrap
Browse files Browse the repository at this point in the history
  • Loading branch information
akunzai committed Jun 28, 2023
1 parent 03e5eef commit bcaec23
Show file tree
Hide file tree
Showing 2 changed files with 15 additions and 54 deletions.
1 change: 1 addition & 0 deletions samples/AspNetCoreReactSample/ClientApp/package.json
Original file line number Diff line number Diff line change
Expand Up @@ -33,6 +33,7 @@
"loader-utils": "^2.0.4",
"minimatch": "^9.0.0",
"nth-check": "^2.1.1",
"optionator": "^0.9.2",
"semver": "^7.5.3"
},
"eslintConfig": {
Expand Down
68 changes: 14 additions & 54 deletions samples/AspNetCoreReactSample/ClientApp/yarn.lock
Original file line number Diff line number Diff line change
Expand Up @@ -5,6 +5,13 @@ __metadata:
version: 6
cacheKey: 8

"@aashutoshrathi/word-wrap@npm:^1.2.3":
version: 1.2.5
resolution: "@aashutoshrathi/word-wrap@npm:1.2.5"
checksum: 06e2e20959a4dbbb06f9d324dc2f877c7fb1b5317237daf08a2ddfcbca6ddcaec67bcf0c9e8e1b7764d5b17b480dc4ef61ecb4f362644d0db5a33192df27680b
languageName: node
linkType: hard

"@ampproject/remapping@npm:^2.1.0":
version: 2.2.0
resolution: "@ampproject/remapping@npm:2.2.0"
Expand Down Expand Up @@ -4819,7 +4826,7 @@ __metadata:
languageName: node
linkType: hard

"deep-is@npm:^0.1.3, deep-is@npm:~0.1.3":
"deep-is@npm:^0.1.3":
version: 0.1.4
resolution: "deep-is@npm:0.1.4"
checksum: edb65dd0d7d1b9c40b2f50219aef30e116cedd6fc79290e740972c132c09106d2e80aa0bc8826673dd5a00222d4179c84b36a790eef63a4c4bca75a37ef90804
Expand Down Expand Up @@ -5837,7 +5844,7 @@ __metadata:
languageName: node
linkType: hard

"fast-levenshtein@npm:^2.0.6, fast-levenshtein@npm:~2.0.6":
"fast-levenshtein@npm:^2.0.6":
version: 2.0.6
resolution: "fast-levenshtein@npm:2.0.6"
checksum: 92cfec0a8dfafd9c7a15fba8f2cc29cd0b62b85f056d99ce448bbcd9f708e18ab2764bda4dd5158364f4145a7c72788538994f0d1787b956ef0d1062b0f7c24c
Expand Down Expand Up @@ -7992,16 +7999,6 @@ __metadata:
languageName: node
linkType: hard

"levn@npm:~0.3.0":
version: 0.3.0
resolution: "levn@npm:0.3.0"
dependencies:
prelude-ls: ~1.1.2
type-check: ~0.3.2
checksum: 0d084a524231a8246bb10fec48cdbb35282099f6954838604f3c7fc66f2e16fa66fd9cc2f3f20a541a113c4dafdf181e822c887c8a319c9195444e6c64ac395e
languageName: node
linkType: hard

"lilconfig@npm:^2.0.3, lilconfig@npm:^2.0.5, lilconfig@npm:^2.0.6":
version: 2.0.6
resolution: "lilconfig@npm:2.0.6"
Expand Down Expand Up @@ -8759,31 +8756,17 @@ __metadata:
languageName: node
linkType: hard

"optionator@npm:^0.8.1":
version: 0.8.3
resolution: "optionator@npm:0.8.3"
dependencies:
deep-is: ~0.1.3
fast-levenshtein: ~2.0.6
levn: ~0.3.0
prelude-ls: ~1.1.2
type-check: ~0.3.2
word-wrap: ~1.2.3
checksum: b8695ddf3d593203e25ab0900e265d860038486c943ff8b774f596a310f8ceebdb30c6832407a8198ba3ec9debe1abe1f51d4aad94843612db3b76d690c61d34
languageName: node
linkType: hard

"optionator@npm:^0.9.1":
version: 0.9.1
resolution: "optionator@npm:0.9.1"
"optionator@npm:^0.9.2":
version: 0.9.2
resolution: "optionator@npm:0.9.2"
dependencies:
"@aashutoshrathi/word-wrap": ^1.2.3
deep-is: ^0.1.3
fast-levenshtein: ^2.0.6
levn: ^0.4.1
prelude-ls: ^1.2.1
type-check: ^0.4.0
word-wrap: ^1.2.3
checksum: dbc6fa065604b24ea57d734261914e697bd73b69eff7f18e967e8912aa2a40a19a9f599a507fa805be6c13c24c4eae8c71306c239d517d42d4c041c942f508a0
checksum: ed9b12f526915c52cac5e9aa6f4cf11ffeab4db733913604215d68e99d1f5cb5b0e3869481dd9ecca94e9440020b4c94ae97f2cd11a5ed28a6696c51d52d9350
languageName: node
linkType: hard

Expand Down Expand Up @@ -9878,13 +9861,6 @@ __metadata:
languageName: node
linkType: hard

"prelude-ls@npm:~1.1.2":
version: 1.1.2
resolution: "prelude-ls@npm:1.1.2"
checksum: c4867c87488e4a0c233e158e4d0d5565b609b105d75e4c05dc760840475f06b731332eb93cc8c9cecb840aa8ec323ca3c9a56ad7820ad2e63f0261dadcb154e4
languageName: node
linkType: hard

"pretty-bytes@npm:^5.3.0, pretty-bytes@npm:^5.4.1":
version: 5.6.0
resolution: "pretty-bytes@npm:5.6.0"
Expand Down Expand Up @@ -11708,15 +11684,6 @@ __metadata:
languageName: node
linkType: hard

"type-check@npm:~0.3.2":
version: 0.3.2
resolution: "type-check@npm:0.3.2"
dependencies:
prelude-ls: ~1.1.2
checksum: dd3b1495642731bc0e1fc40abe5e977e0263005551ac83342ecb6f4f89551d106b368ec32ad3fb2da19b3bd7b2d1f64330da2ea9176d8ddbfe389fb286eb5124
languageName: node
linkType: hard

"type-detect@npm:4.0.8":
version: 4.0.8
resolution: "type-detect@npm:4.0.8"
Expand Down Expand Up @@ -12298,13 +12265,6 @@ __metadata:
languageName: node
linkType: hard

"word-wrap@npm:^1.2.3, word-wrap@npm:~1.2.3":
version: 1.2.3
resolution: "word-wrap@npm:1.2.3"
checksum: 30b48f91fcf12106ed3186ae4fa86a6a1842416df425be7b60485de14bec665a54a68e4b5156647dec3a70f25e84d270ca8bc8cd23182ed095f5c7206a938c1f
languageName: node
linkType: hard

"workbox-background-sync@npm:6.5.4":
version: 6.5.4
resolution: "workbox-background-sync@npm:6.5.4"
Expand Down

0 comments on commit bcaec23

Please sign in to comment.