From fddc040c42bf9fa575e9f2b59a2bb5572d4ab2f1 Mon Sep 17 00:00:00 2001 From: curben <2809763-curben@users.noreply.gitlab.com> Date: Thu, 17 Oct 2019 04:41:00 +0100 Subject: [PATCH] ci(snyk): update policy --- .snyk | 104 +++++++++++++++++++++++++++++++++++++++++++++++++++++----- 1 file changed, 95 insertions(+), 9 deletions(-) diff --git a/.snyk b/.snyk index d74be56..f926b8f 100644 --- a/.snyk +++ b/.snyk @@ -3,14 +3,100 @@ version: v1.13.5 # ignores vulnerabilities until expiry date; change duration by modifying expiry date ignore: 'npm:mem:20180117': - - renovate > npm > libnpx > yargs > os-locale > mem: - reason: Update/patch unavailable - expires: '2019-10-31T00:00:00.000Z' - npm > libnpx > yargs > os-locale > mem: reason: Update/patch unavailable - expires: '2019-10-31T00:00:00.000Z' - 'SNYK-JS-HANDLEBARS-469063': - - renovate > handlebars: - reason: Pending update from renovate - expires: '2019-10-31T00:00:00.000Z' -patch: {} + expires: '2019-12-31T00:00:00.000Z' + - renovate > npm > libnpx > yargs > os-locale > mem: + reason: Update/patch unavailable + expires: '2019-12-31T00:00:00.000Z' + SNYK-JS-MARKDOWNIT-459438: + - renovate > markdown-it: + reason: Update/patch unavailable + expires: '2019-12-31T00:00:00.000Z' +# patches apply the minimum changes required to fix a vulnerability +patch: + SNYK-JS-HTTPSPROXYAGENT-469131: + - npm > pacote > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - npm > pacote > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - npm > libnpmaccess > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - npm > libnpmhook > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - npm > libnpmorg > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - npm > libnpmsearch > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - npm > libnpmteam > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - npm > npm-profile > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - npm > libnpm > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - renovate > npm > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - npm > libcipm > pacote > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - npm > libnpm > pacote > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - renovate > npm > pacote > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - npm > libcipm > pacote > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - npm > libnpm > pacote > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - renovate > npm > pacote > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - npm > libnpm > libnpmaccess > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - renovate > npm > libnpmaccess > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - npm > libnpm > libnpmhook > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - renovate > npm > libnpmhook > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - npm > libnpm > libnpmorg > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - renovate > npm > libnpmorg > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - npm > libnpm > libnpmpublish > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - npm > libnpm > libnpmsearch > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - renovate > npm > libnpmsearch > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - npm > libnpm > libnpmteam > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - renovate > npm > libnpmteam > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - npm > libnpm > npm-profile > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - renovate > npm > npm-profile > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - renovate > npm > libnpm > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - renovate > npm > libcipm > pacote > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - renovate > npm > libnpm > pacote > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - renovate > npm > libcipm > pacote > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - renovate > npm > libnpm > pacote > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - renovate > npm > libnpm > libnpmaccess > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - renovate > npm > libnpm > libnpmhook > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - renovate > npm > libnpm > libnpmorg > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - renovate > npm > libnpm > libnpmpublish > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - renovate > npm > libnpm > libnpmsearch > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - renovate > npm > libnpm > libnpmteam > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - renovate > npm > libnpm > npm-profile > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z' + - npm > npm-registry-fetch > make-fetch-happen > https-proxy-agent: + patched: '2019-10-17T00:00:00.000Z'