From f4355e12670bfeb7bd3a53256927951f3ad21424 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 3 Jul 2024 04:07:01 +0000 Subject: [PATCH] fix: package.json & yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-ECHARTS-7300340 --- package.json | 2 +- yarn.lock | 27 +++++++++++++++++++-------- 2 files changed, 20 insertions(+), 9 deletions(-) diff --git a/package.json b/package.json index 6b5f251..5435f7b 100644 --- a/package.json +++ b/package.json @@ -1,7 +1,7 @@ { "dependencies": { "chartjs": "^0.3.24", - "echarts": "^3.3.2", + "echarts": "^5.5.1", "highcharts": "^v5.0.6", "nvd3": "^1.8.5" } diff --git a/yarn.lock b/yarn.lock index 04a4e53..1851a90 100644 --- a/yarn.lock +++ b/yarn.lock @@ -1,24 +1,35 @@ # THIS IS AN AUTOGENERATED FILE. DO NOT EDIT THIS FILE DIRECTLY. # yarn lockfile v1 + + chartjs: version "0.3.24" resolved "https://registry.yarnpkg.com/chartjs/-/chartjs-0.3.24.tgz#3addeb5ae3606b3e89e346c27d52ca158416e93d" -echarts@^3.3.2: - version "3.3.2" - resolved "https://registry.yarnpkg.com/echarts/-/echarts-3.3.2.tgz#06f42a47d213248d45fe585719ec8940fdc610aa" +echarts@^5.5.1: + version "5.5.1" + resolved "https://registry.yarnpkg.com/echarts/-/echarts-5.5.1.tgz#8dc9c68d0c548934bedcb5f633db07ed1dd2101c" + integrity sha512-Fce8upazaAXUVUVsjgV6mBnGuqgO+JNDlcgF79Dksy4+wgGpQB2lmYoO4TSweFg/mZITdpGHomw/cNBJZj1icA== dependencies: - zrender "^3.2.1" + tslib "2.3.0" + zrender "5.6.0" highcharts: - version v5.0.6 + version "5.0.6" resolved "https://registry.yarnpkg.com/highcharts/-/highcharts-5.0.6.tgz#9fba0fbd38c34cca23ffffa8898d39eb23fd35ba" nvd3: version "1.8.5" resolved "https://registry.yarnpkg.com/nvd3/-/nvd3-1.8.5.tgz#94a0c98ff1c3366b721fa7a8705b3c6e9eaf6bb6" -zrender@^3.2.1: - version "3.2.2" - resolved "https://registry.yarnpkg.com/zrender/-/zrender-3.2.2.tgz#b33d250456859944a48c4f3550986168a0952ec5" +tslib@2.3.0: + version "2.3.0" + resolved "https://registry.yarnpkg.com/tslib/-/tslib-2.3.0.tgz#803b8cdab3e12ba581a4ca41c8839bbb0dacb09e" + integrity sha512-N82ooyxVNm6h1riLCoyS9e3fuJ3AMG2zIZs2Gd1ATcSFjSA23Q0fzjjZeh0jbJvWVDZ0cJT8yaNNaaXHzueNjg== +zrender@5.6.0: + version "5.6.0" + resolved "https://registry.yarnpkg.com/zrender/-/zrender-5.6.0.tgz#01325b0bb38332dd5e87a8dbee7336cafc0f4a5b" + integrity sha512-uzgraf4njmmHAbEUxMJ8Oxg+P3fT04O+9p7gY+wJRVxo8Ge+KmYv0WJev945EH4wFuc4OY2NLXz46FZrWS9xJg== + dependencies: + tslib "2.3.0"