2017-10-03 01:30:08 +03:00
|
|
|
# Snyk (https://snyk.io) policy file, patches or ignores known vulnerabilities.
|
|
|
|
version: v1.7.1
|
|
|
|
# ignores vulnerabilities until expiry date; change duration by modifying expiry date
|
2016-06-27 10:36:02 +03:00
|
|
|
ignore:
|
|
|
|
'npm:minimatch:20160620':
|
|
|
|
- node-sass-middleware > node-sass > node-gyp > minimatch:
|
|
|
|
reason: None given
|
2016-06-27 10:45:42 +03:00
|
|
|
expires: '2016-07-27T07:44:15.628Z'
|
2016-07-14 11:14:25 +03:00
|
|
|
- node-sass-middleware > node-sass > gaze > globule > glob > minimatch:
|
2016-06-27 10:45:42 +03:00
|
|
|
reason: None given
|
|
|
|
expires: '2016-07-27T07:45:09.991Z'
|
2016-07-14 11:14:25 +03:00
|
|
|
- node-sass-middleware > node-sass > gaze > globule > minimatch:
|
2016-06-27 10:45:42 +03:00
|
|
|
reason: None given
|
|
|
|
expires: '2016-07-27T07:45:09.991Z'
|
2016-06-27 10:36:02 +03:00
|
|
|
'npm:negotiator:20160616':
|
|
|
|
- socket.io > engine.io > accepts > negotiator:
|
|
|
|
reason: None given
|
2016-07-19 10:55:40 +03:00
|
|
|
expires: '2016-08-18T07:45:03.181Z'
|
2016-06-27 10:45:42 +03:00
|
|
|
- karma > socket.io > engine.io > accepts > negotiator:
|
|
|
|
reason: None given
|
2016-07-19 10:55:40 +03:00
|
|
|
expires: '2016-08-18T07:45:03.181Z'
|
2017-11-02 15:41:13 +03:00
|
|
|
'npm:parsejson:20170908':
|
|
|
|
- socket.io > socket.io-client > engine.io-client > parsejson:
|
|
|
|
reason: None given
|
|
|
|
expires: '2017-12-02T12:37:04.466Z'
|
|
|
|
- karma > socket.io > socket.io-client > engine.io-client > parsejson:
|
|
|
|
reason: None given
|
|
|
|
expires: '2017-12-02T12:37:04.467Z'
|
2018-04-10 16:19:55 +03:00
|
|
|
'npm:hoek:20180212':
|
|
|
|
- node-sass-middleware > node-sass > request > hawk > hoek:
|
|
|
|
reason: no patch available
|
|
|
|
expires: '2018-05-10T12:43:31.486Z'
|
|
|
|
bunyan-slack > request > hawk > hoek:
|
|
|
|
reason: reinstall doesn't solve the issue
|
|
|
|
expires: '2018-05-10T13:19:17.100Z'
|
|
|
|
- node-sass-middleware > node-sass > request > hawk > boom > hoek:
|
|
|
|
reason: no patch available
|
|
|
|
expires: '2018-05-10T12:43:31.486Z'
|
|
|
|
bunyan-slack > request > hawk > boom > hoek:
|
|
|
|
reason: reinstall doesn't solve the issue
|
|
|
|
expires: '2018-05-10T13:19:17.100Z'
|
|
|
|
- node-sass-middleware > node-sass > request > hawk > sntp > hoek:
|
|
|
|
reason: no patch available
|
|
|
|
expires: '2018-05-10T12:43:31.486Z'
|
|
|
|
bunyan-slack > request > hawk > sntp > hoek:
|
|
|
|
reason: reinstall doesn't solve the issue
|
|
|
|
expires: '2018-05-10T13:19:17.100Z'
|
|
|
|
- node-sass-middleware > node-sass > request > hawk > cryptiles > boom > hoek:
|
|
|
|
reason: no patch available
|
|
|
|
expires: '2018-05-10T12:43:31.486Z'
|
|
|
|
bunyan-slack > request > hawk > cryptiles > boom > hoek:
|
|
|
|
reason: reinstall doesn't solve the issue
|
|
|
|
expires: '2018-05-10T13:19:17.100Z'
|
|
|
|
- node-sass-middleware > node-sass > node-gyp > request > hawk > hoek:
|
|
|
|
reason: reinstall doesn't solve the issue
|
|
|
|
expires: '2018-05-10T13:19:17.100Z'
|
|
|
|
- node-sass-middleware > node-sass > node-gyp > request > hawk > boom > hoek:
|
|
|
|
reason: reinstall doesn't solve the issue
|
|
|
|
expires: '2018-05-10T13:19:17.100Z'
|
|
|
|
- node-sass-middleware > node-sass > node-gyp > request > hawk > sntp > hoek:
|
|
|
|
reason: reinstall doesn't solve the issue
|
|
|
|
expires: '2018-05-10T13:19:17.101Z'
|
|
|
|
- node-sass-middleware > node-sass > node-gyp > request > hawk > cryptiles > boom > hoek:
|
|
|
|
reason: reinstall doesn't solve the issue
|
|
|
|
expires: '2018-05-10T13:19:17.101Z'
|
|
|
|
- request > hawk > boom > hoek:
|
|
|
|
reason: reinstall doesn't solve the issue
|
|
|
|
expires: '2018-05-10T13:19:17.101Z'
|
|
|
|
- request > hawk > cryptiles > boom > hoek:
|
|
|
|
reason: reinstall doesn't solve the issue
|
|
|
|
expires: '2018-05-10T13:19:17.101Z'
|
|
|
|
- request > hawk > sntp > hoek:
|
|
|
|
reason: reinstall doesn't solve the issue
|
|
|
|
expires: '2018-05-10T13:19:17.101Z'
|
|
|
|
- request > hawk > hoek:
|
|
|
|
reason: reinstall doesn't solve the issue
|
|
|
|
expires: '2018-05-10T13:19:17.101Z'
|
|
|
|
- node-sass-middleware > node-sass > request > hawk > hoek:
|
|
|
|
reason: no patch available
|
|
|
|
expires: '2018-05-10T13:19:17.101Z'
|
|
|
|
- node-sass-middleware > node-sass > request > hawk > boom > hoek:
|
|
|
|
reason: no patch available
|
|
|
|
expires: '2018-05-10T13:19:17.101Z'
|
|
|
|
- node-sass-middleware > node-sass > request > hawk > sntp > hoek:
|
|
|
|
reason: no patch available
|
|
|
|
expires: '2018-05-10T13:19:17.101Z'
|
|
|
|
- node-sass-middleware > node-sass > request > hawk > cryptiles > boom > hoek:
|
|
|
|
reason: no patch available
|
|
|
|
expires: '2018-05-10T13:19:17.101Z'
|
|
|
|
'npm:tunnel-agent:20170305':
|
|
|
|
- node-sass-middleware > node-sass > request > tunnel-agent:
|
|
|
|
reason: no patch available
|
|
|
|
expires: '2018-05-10T13:19:17.101Z'
|
|
|
|
'npm:sshpk:20180409':
|
|
|
|
- bunyan-slack > request > http-signature > sshpk:
|
|
|
|
reason: reinstall doesn't solve the issue
|
|
|
|
expires: '2018-05-10T13:19:17.100Z'
|
|
|
|
- node-sass-middleware > node-sass > request > http-signature > sshpk:
|
|
|
|
reason: reinstall doesn't solve the issue
|
|
|
|
expires: '2018-05-10T13:19:17.100Z'
|
|
|
|
- node-sass-middleware > node-sass > node-gyp > request > http-signature > sshpk:
|
|
|
|
reason: reinstall doesn't solve the issue
|
|
|
|
expires: '2018-05-10T13:19:17.100Z'
|
|
|
|
- request > http-signature > sshpk:
|
|
|
|
reason: reinstall doesn't solve the issue
|
|
|
|
expires: '2018-05-10T13:19:17.101Z'
|
|
|
|
'npm:is-my-json-valid:20180214':
|
|
|
|
- node-sass-middleware > node-sass > request > har-validator > is-my-json-valid:
|
|
|
|
reason: reinstall doesn't solve the issue
|
|
|
|
expires: '2018-05-10T13:19:17.100Z'
|
2017-10-03 01:30:08 +03:00
|
|
|
# patches apply the minimum changes required to fix a vulnerability
|
2016-06-27 10:36:02 +03:00
|
|
|
patch:
|
|
|
|
'npm:minimatch:20160620':
|
|
|
|
- node-sass-middleware > node-sass > node-gyp > glob > minimatch:
|
2016-06-27 10:45:42 +03:00
|
|
|
patched: '2016-06-27T07:44:47.254Z'
|
|
|
|
- karma > chokidar > fsevents > node-pre-gyp > tar-pack > fstream > rimraf > glob > minimatch:
|
|
|
|
patched: '2016-06-27T07:43:31.076Z'
|
|
|
|
- karma > chokidar > fsevents > node-pre-gyp > tar-pack > fstream-ignore > fstream > rimraf > glob > minimatch:
|
|
|
|
patched: '2016-06-27T07:43:31.076Z'
|
|
|
|
- karma > chokidar > fsevents > node-pre-gyp > rimraf > glob > minimatch:
|
|
|
|
patched: '2016-06-27T07:43:31.076Z'
|
|
|
|
- karma > chokidar > fsevents > node-pre-gyp > tar-pack > fstream-ignore > minimatch:
|
|
|
|
patched: '2016-06-27T07:43:31.076Z'
|
|
|
|
- node-sass-middleware > node-sass > node-gyp > glob > minimatch:
|
|
|
|
patched: '2016-06-27T07:43:31.076Z'
|
|
|
|
- karma > chokidar > fsevents > node-pre-gyp > tar-pack > rimraf > glob > minimatch:
|
|
|
|
patched: '2016-06-27T07:43:31.076Z'
|
2016-07-19 10:55:40 +03:00
|
|
|
- karma > chokidar > fsevents > node-pre-gyp > tar-pack > fstream > rimraf > glob > minimatch:
|
|
|
|
patched: '2016-07-14T08:12:26.746Z'
|
|
|
|
- karma > chokidar > fsevents > node-pre-gyp > tar-pack > fstream-ignore > fstream > rimraf > glob > minimatch:
|
|
|
|
patched: '2016-07-14T08:12:26.746Z'
|
|
|
|
- karma > chokidar > fsevents > node-pre-gyp > tar-pack > rimraf > glob > minimatch:
|
|
|
|
patched: '2016-07-14T08:12:26.746Z'
|
|
|
|
- karma > chokidar > fsevents > node-pre-gyp > tar > fstream > rimraf > glob > minimatch:
|
|
|
|
patched: '2016-07-14T08:12:26.746Z'
|
|
|
|
- karma > chokidar > fsevents > node-pre-gyp > tar-pack > tar > fstream > rimraf > glob > minimatch:
|
|
|
|
patched: '2016-07-14T08:12:26.746Z'
|
|
|
|
- karma > chokidar > fsevents > node-pre-gyp > rimraf > glob > minimatch:
|
|
|
|
patched: '2016-07-14T08:12:26.746Z'
|
|
|
|
- karma > chokidar > fsevents > node-pre-gyp > tar-pack > fstream-ignore > minimatch:
|
2016-07-14 11:14:25 +03:00
|
|
|
patched: '2016-07-14T08:12:26.746Z'
|
2016-07-25 11:25:16 +03:00
|
|
|
- karma > chokidar > fsevents > node-pre-gyp > tar-pack > fstream > rimraf > glob > minimatch:
|
|
|
|
patched: '2016-07-19T07:44:32.981Z'
|
|
|
|
- karma > chokidar > fsevents > node-pre-gyp > tar-pack > fstream-ignore > fstream > rimraf > glob > minimatch:
|
|
|
|
patched: '2016-07-19T07:44:32.981Z'
|
|
|
|
- karma > chokidar > fsevents > node-pre-gyp > tar-pack > rimraf > glob > minimatch:
|
|
|
|
patched: '2016-07-19T07:44:32.981Z'
|
|
|
|
- karma > chokidar > fsevents > node-pre-gyp > tar > fstream > rimraf > glob > minimatch:
|
|
|
|
patched: '2016-07-19T07:44:32.981Z'
|
|
|
|
- karma > chokidar > fsevents > node-pre-gyp > tar-pack > tar > fstream > rimraf > glob > minimatch:
|
|
|
|
patched: '2016-07-19T07:44:32.981Z'
|
|
|
|
- karma > chokidar > fsevents > node-pre-gyp > rimraf > glob > minimatch:
|
|
|
|
patched: '2016-07-19T07:44:32.981Z'
|
|
|
|
- karma > chokidar > fsevents > node-pre-gyp > tar-pack > fstream-ignore > minimatch:
|
|
|
|
patched: '2016-07-19T07:44:32.981Z'
|
2016-07-14 11:14:25 +03:00
|
|
|
'npm:ws:20160624':
|
|
|
|
- karma > socket.io > socket.io-client > engine.io-client > ws:
|
2016-07-25 11:25:16 +03:00
|
|
|
patched: '2016-07-25T08:23:48.823Z'
|
2016-07-14 11:14:25 +03:00
|
|
|
- karma > socket.io > engine.io > ws:
|
2016-07-25 11:25:16 +03:00
|
|
|
patched: '2016-07-25T08:23:48.823Z'
|
2016-07-14 11:14:25 +03:00
|
|
|
- socket.io > socket.io-client > engine.io-client > ws:
|
2016-07-25 11:25:16 +03:00
|
|
|
patched: '2016-07-25T08:23:48.823Z'
|
2016-07-14 11:14:25 +03:00
|
|
|
- socket.io > engine.io > ws:
|
2016-07-25 11:25:16 +03:00
|
|
|
patched: '2016-07-25T08:23:48.823Z'
|
2017-10-03 01:30:08 +03:00
|
|
|
- karma > socket.io > engine.io > ws:
|
|
|
|
patched: '2016-10-26T08:01:33.363Z'
|
|
|
|
- karma > socket.io > socket.io-client > engine.io-client > ws:
|
|
|
|
patched: '2016-10-26T08:01:33.363Z'
|
2016-07-25 11:25:16 +03:00
|
|
|
'npm:negotiator:20160616':
|
|
|
|
- karma > socket.io > engine.io > accepts > negotiator:
|
2016-10-26 11:05:12 +03:00
|
|
|
patched: '2016-10-26T08:01:33.363Z'
|
2016-07-25 11:25:16 +03:00
|
|
|
- socket.io > engine.io > accepts > negotiator:
|
|
|
|
patched: '2016-07-25T08:23:48.823Z'
|
|
|
|
'npm:tough-cookie:20160722':
|
|
|
|
- karma > chokidar > fsevents > node-pre-gyp > request > tough-cookie:
|
2016-10-26 11:05:12 +03:00
|
|
|
patched: '2016-10-26T08:01:33.363Z'
|
2017-10-03 01:30:08 +03:00
|
|
|
'npm:debug:20170905':
|
|
|
|
- karma > socket.io > debug:
|
|
|
|
patched: '2017-10-02T22:30:08.358Z'
|
|
|
|
- karma > socket.io > engine.io > debug:
|
|
|
|
patched: '2017-10-02T22:30:08.358Z'
|
|
|
|
- karma > socket.io > socket.io-adapter > debug:
|
|
|
|
patched: '2017-10-02T22:30:08.358Z'
|
|
|
|
- karma > socket.io > socket.io-client > debug:
|
|
|
|
patched: '2017-10-02T22:30:08.358Z'
|
|
|
|
- karma > socket.io > socket.io-client > engine.io-client > debug:
|
|
|
|
patched: '2017-10-02T22:30:08.358Z'
|
|
|
|
- karma > socket.io > socket.io-parser > debug:
|
|
|
|
patched: '2017-10-02T22:30:08.358Z'
|
|
|
|
- karma > socket.io > socket.io-adapter > socket.io-parser > debug:
|
|
|
|
patched: '2017-10-02T22:30:08.358Z'
|
|
|
|
- karma > socket.io > socket.io-client > socket.io-parser > debug:
|
|
|
|
patched: '2017-10-02T22:30:08.358Z'
|
2017-11-22 12:31:13 +03:00
|
|
|
- karma > chokidar > fsevents > node-pre-gyp > tar-pack > debug:
|
|
|
|
patched: '2017-11-02T10:28:27.408Z'
|
2017-11-02 15:41:13 +03:00
|
|
|
'npm:ms:20170412':
|
|
|
|
- karma > socket.io > engine.io > debug > ms:
|
|
|
|
patched: '2017-11-02T10:28:27.408Z'
|
|
|
|
- karma > socket.io > socket.io-adapter > debug > ms:
|
|
|
|
patched: '2017-11-02T10:28:27.408Z'
|
|
|
|
- karma > socket.io > socket.io-client > debug > ms:
|
|
|
|
patched: '2017-11-02T10:28:27.408Z'
|
|
|
|
- karma > socket.io > socket.io-client > engine.io-client > debug > ms:
|
|
|
|
patched: '2017-11-02T10:28:27.408Z'
|
|
|
|
- karma > socket.io > debug > ms:
|
|
|
|
patched: '2017-11-02T10:28:27.408Z'
|
|
|
|
- karma > socket.io > socket.io-client > socket.io-parser > debug > ms:
|
|
|
|
patched: '2017-11-02T10:28:27.408Z'
|
|
|
|
- karma > socket.io > socket.io-parser > debug > ms:
|
|
|
|
patched: '2017-11-02T10:28:27.408Z'
|
|
|
|
- karma > socket.io > socket.io-adapter > socket.io-parser > debug > ms:
|
|
|
|
patched: '2017-11-02T10:28:27.408Z'
|
|
|
|
'npm:tough-cookie:20170905':
|
|
|
|
- karma > chokidar > fsevents > node-pre-gyp > request > tough-cookie:
|
|
|
|
patched: '2017-11-02T10:28:27.408Z'
|