forked from kedro-org/kedro-viz
-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy path.snyk
127 lines (127 loc) · 6.99 KB
/
.snyk
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
# Snyk (https://snyk.io) policy file, patches or ignores known vulnerabilities.
version: v1.14.1
# ignores vulnerabilities until expiry date; change duration by modifying expiry date
ignore:
'snyk:lic:npm:mdn-data:MPL-2.0':
- react-scripts > @svgr/webpack > @svgr/plugin-svgo > svgo > css-tree > mdn-data:
reason: 'False positive: mdn-data is actually on a CC0-1.0 license'
expires: '2020-08-29T11:59:59.883Z'
- react-scripts > @svgr/webpack > @svgr/plugin-svgo > svgo > csso > css-tree > mdn-data:
reason: 'False positive: mdn-data is actually on a CC0-1.0 license'
expires: '2020-08-29T11:59:59.884Z'
- react-scripts > optimize-css-assets-webpack-plugin > cssnano > cssnano-preset-default > postcss-svgo > svgo > css-tree > mdn-data:
reason: 'False positive: mdn-data is actually on a CC0-1.0 license'
expires: '2020-08-29T11:59:59.884Z'
- react-scripts > optimize-css-assets-webpack-plugin > cssnano > cssnano-preset-default > postcss-svgo > svgo > csso > css-tree > mdn-data:
reason: 'False positive: mdn-data is actually on a CC0-1.0 license'
expires: '2020-08-29T11:59:59.884Z'
# patches apply the minimum changes required to fix a vulnerability
patch:
SNYK-JS-LODASH-450202:
- react-scripts > html-webpack-plugin > lodash:
patched: '2020-07-30T11:48:08.238Z'
- '@quantumblack/kedro-ui > lodash':
patched: '2020-07-30T11:48:08.238Z'
SNYK-JS-HTTPSPROXYAGENT-469131:
- snyk > proxy-agent > https-proxy-agent:
patched: '2019-10-04T00:46:16.708Z'
- snyk > proxy-agent > pac-proxy-agent > https-proxy-agent:
patched: '2019-10-04T00:46:16.708Z'
- '@quantumblack/kedro-ui > snyk > proxy-agent > https-proxy-agent':
patched: '2019-10-04T00:46:16.708Z'
- '@quantumblack/kedro-ui > snyk > proxy-agent > pac-proxy-agent > https-proxy-agent':
patched: '2019-10-04T00:46:16.708Z'
- '@quantumblack/kedro-ui > snyk > proxy-agent > pac-proxy-agent > https-proxy-agent':
patched: '2019-10-14T14:25:57.814Z'
- '@quantumblack/kedro-ui > snyk > proxy-agent > https-proxy-agent':
patched: '2019-10-14T14:25:57.814Z'
SNYK-JS-TREEKILL-536781:
- snyk > snyk-sbt-plugin > tree-kill:
patched: '2019-12-12T00:44:17.874Z'
- '@quantumblack/kedro-ui > snyk > snyk-sbt-plugin > tree-kill':
patched: '2019-12-12T00:44:17.874Z'
SNYK-JS-LODASH-567746:
- snyk > lodash:
patched: '2020-05-01T06:43:24.842Z'
- '@quantumblack/kedro-ui > lodash':
patched: '2020-05-01T06:43:24.842Z'
- dagre > lodash:
patched: '2020-05-01T06:43:24.842Z'
- dagre > graphlib > lodash:
patched: '2020-05-01T06:43:24.842Z'
- snyk > @snyk/dep-graph > lodash:
patched: '2020-05-01T06:43:24.842Z'
- snyk > inquirer > lodash:
patched: '2020-05-01T06:43:24.842Z'
- snyk > snyk-config > lodash:
patched: '2020-05-01T06:43:24.842Z'
- snyk > snyk-mvn-plugin > lodash:
patched: '2020-05-01T06:43:24.842Z'
- snyk > snyk-nodejs-lockfile-parser > lodash:
patched: '2020-05-01T06:43:24.842Z'
- snyk > snyk-nuget-plugin > lodash:
patched: '2020-05-01T06:43:24.842Z'
- '@quantumblack/kedro-ui > snyk > lodash':
patched: '2020-05-01T06:43:24.842Z'
- react-scripts > @babel/core > lodash:
patched: '2020-05-01T06:43:24.842Z'
- react-scripts > eslint > lodash:
patched: '2020-05-01T06:43:24.842Z'
- react-scripts > eslint-plugin-flowtype > lodash:
patched: '2020-05-01T06:43:24.842Z'
- react-scripts > html-webpack-plugin > lodash:
patched: '2020-05-01T06:43:24.842Z'
- react-scripts > webpack-manifest-plugin > lodash:
patched: '2020-05-01T06:43:24.842Z'
- snyk > @snyk/dep-graph > graphlib > lodash:
patched: '2020-05-01T06:43:24.842Z'
- '@quantumblack/kedro-ui > snyk > @snyk/dep-graph > lodash':
patched: '2020-05-01T06:43:24.842Z'
- '@quantumblack/kedro-ui > snyk > inquirer > lodash':
patched: '2020-05-01T06:43:24.842Z'
- '@quantumblack/kedro-ui > snyk > snyk-config > lodash':
patched: '2020-05-01T06:43:24.842Z'
- '@quantumblack/kedro-ui > snyk > snyk-mvn-plugin > lodash':
patched: '2020-05-01T06:43:24.842Z'
- '@quantumblack/kedro-ui > snyk > snyk-nodejs-lockfile-parser > lodash':
patched: '2020-05-01T06:43:24.842Z'
- snyk > snyk-nuget-plugin > dotnet-deps-parser > lodash:
patched: '2020-05-01T06:43:24.842Z'
- '@quantumblack/kedro-ui > snyk > snyk-nuget-plugin > lodash':
patched: '2020-05-01T06:43:24.842Z'
- snyk > snyk-php-plugin > @snyk/composer-lockfile-parser > lodash:
patched: '2020-05-01T06:43:24.842Z'
- react-scripts > @svgr/webpack > @babel/core > lodash:
patched: '2020-05-01T06:43:24.842Z'
- react-scripts > babel-preset-react-app > @babel/core > lodash:
patched: '2020-05-01T06:43:24.842Z'
- react-scripts > eslint > inquirer > lodash:
patched: '2020-05-01T06:43:24.842Z'
- react-scripts > eslint > table > lodash:
patched: '2020-05-01T06:43:24.842Z'
- react-scripts > optimize-css-assets-webpack-plugin > last-call-webpack-plugin > lodash:
patched: '2020-05-01T06:43:24.842Z'
- react-scripts > react-dev-utils > inquirer > lodash:
patched: '2020-05-01T06:43:24.842Z'
- react-scripts > webpack-dev-server > http-proxy-middleware > lodash:
patched: '2020-05-01T06:43:24.842Z'
- '@quantumblack/kedro-ui > snyk > @snyk/dep-graph > graphlib > lodash':
patched: '2020-05-01T06:43:24.842Z'
- snyk > @snyk/snyk-cocoapods-plugin > @snyk/cocoapods-lockfile-parser > @snyk/ruby-semver > lodash:
patched: '2020-05-01T06:43:24.842Z'
- '@quantumblack/kedro-ui > snyk > snyk-nuget-plugin > dotnet-deps-parser > lodash':
patched: '2020-05-01T06:43:24.842Z'
- '@quantumblack/kedro-ui > snyk > snyk-php-plugin > @snyk/composer-lockfile-parser > lodash':
patched: '2020-05-01T06:43:24.842Z'
- react-scripts > @svgr/webpack > @babel/preset-env > @babel/plugin-transform-block-scoping > lodash:
patched: '2020-05-01T06:43:24.842Z'
- react-scripts > webpack-dev-server > portfinder > async > lodash:
patched: '2020-05-01T06:43:24.842Z'
- '@quantumblack/kedro-ui > snyk > @snyk/snyk-cocoapods-plugin > @snyk/cocoapods-lockfile-parser > @snyk/ruby-semver > lodash':
patched: '2020-05-01T06:43:24.842Z'
- react-scripts > @svgr/webpack > @babel/preset-env > @babel/plugin-transform-modules-amd > @babel/helper-module-transforms > lodash:
patched: '2020-05-01T06:43:24.842Z'
- react-scripts > @svgr/webpack > @babel/preset-env > @babel/plugin-proposal-unicode-property-regex > @babel/helper-create-regexp-features-plugin > @babel/helper-regex > lodash:
patched: '2020-05-01T06:43:24.842Z'
- react-scripts > jest > jest-cli > @jest/core > @jest/reporters > jest-runtime > jest-config > jest-environment-jsdom > jsdom > request-promise-native > request-promise-core > lodash:
patched: '2020-05-01T06:43:24.842Z'