From 0b0fab67285dca0182e2ed758e04cb6d2df38d44 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" Date: Wed, 14 Nov 2018 05:50:13 +0000 Subject: [PATCH] [Security] Bump ssri from 5.0.0 to 5.3.0 Bumps [ssri](https://github.com/zkat/ssri) from 5.0.0 to 5.3.0. **This update includes security fixes.** - [Release notes](https://github.com/zkat/ssri/releases) - [Changelog](https://github.com/zkat/ssri/blob/latest/CHANGELOG.md) - [Commits](https://github.com/zkat/ssri/compare/v5.0.0...v5.3.0) Signed-off-by: dependabot[bot] --- package-lock.json | 11 +---------- yarn.lock | 6 +++--- 2 files changed, 4 insertions(+), 13 deletions(-) diff --git a/package-lock.json b/package-lock.json index d035d68..e0938ba 100644 --- a/package-lock.json +++ b/package-lock.json @@ -1,6 +1,6 @@ { "name": "@pressbooks/pressbooks-aldine", - "version": "1.2.1", + "version": "1.5.0", "lockfileVersion": 1, "requires": true, "dependencies": { @@ -17326,15 +17326,6 @@ } } }, - "ssri": { - "version": "5.3.0", - "resolved": "https://registry.npmjs.org/ssri/-/ssri-5.3.0.tgz", - "integrity": "sha512-XRSIPqLij52MtgoQavH/x/dU1qVKtWUAAZeOHsR9c2Ddi4XerFy3mc1alf+dLJKl9EUIm/Ht+EowFkTUOA6GAQ==", - "dev": true, - "requires": { - "safe-buffer": "5.1.1" - } - }, "stable": { "version": "0.1.8", "resolved": "https://registry.npmjs.org/stable/-/stable-0.1.8.tgz", diff --git a/yarn.lock b/yarn.lock index 85e0bb0..ff6ece6 100644 --- a/yarn.lock +++ b/yarn.lock @@ -8757,10 +8757,10 @@ sshpk@^1.7.0: tweetnacl "~0.14.0" ssri@^5.0.0: - version "5.0.0" - resolved "https://registry.yarnpkg.com/ssri/-/ssri-5.0.0.tgz#13c19390b606c821f2a10d02b351c1729b94d8cf" + version "5.3.0" + resolved "https://registry.yarnpkg.com/ssri/-/ssri-5.3.0.tgz#ba3872c9c6d33a0704a7d71ff045e5ec48999d06" dependencies: - safe-buffer "^5.1.0" + safe-buffer "^5.1.1" stackframe@^1.0.3: version "1.0.4"