Skip to content

Commit 3243fd4

Browse files
fix(Deps): Upgrade @npmcli/arborist using resolutions (LLC-1383) (#833)
1 parent 235d410 commit 3243fd4

File tree

2 files changed

+159
-20
lines changed

2 files changed

+159
-20
lines changed

package.json

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -124,7 +124,8 @@
124124
},
125125
"resolutions": {
126126
"normalize-url": "^6.0.1",
127-
"@npmcli/git": "2.0.8"
127+
"@npmcli/git": "^2.0.8",
128+
"@npmcli/arborist": "^2.8.0"
128129
},
129130
"publishConfig": {
130131
"access": "public"

yarn.lock

Lines changed: 157 additions & 19 deletions
Original file line numberDiff line numberDiff line change
@@ -425,6 +425,11 @@
425425
reflect-metadata "^0.1.12"
426426
tslib "^1.8.1"
427427

428+
"@gar/promisify@^1.0.1":
429+
version "1.1.2"
430+
resolved "https://registry.yarnpkg.com/@gar/promisify/-/promisify-1.1.2.tgz#30aa825f11d438671d585bd44e7fd564535fc210"
431+
integrity sha512-82cpyJyKRoQoRi+14ibCeGPu0CwypgtBAdBhq1WfvagpCZNKqwXbKwXllYSMG91DhmG4jt9gN8eP6lGOtozuaw==
432+
428433
"@google-cloud/common@^3.6.0":
429434
version "3.6.0"
430435
resolved "https://registry.yarnpkg.com/@google-cloud/common/-/common-3.6.0.tgz#c2f6da5f79279a4a9ac7c71fc02d582beab98e8b"
@@ -607,36 +612,40 @@
607612
"@nodelib/fs.scandir" "2.1.4"
608613
fastq "^1.6.0"
609614

610-
"@npmcli/arborist@^2.0.0", "@npmcli/arborist@^2.3.0":
611-
version "2.3.0"
612-
resolved "https://registry.yarnpkg.com/@npmcli/arborist/-/arborist-2.3.0.tgz#0d3273f85691711b10a85f82dffd235d755a3f57"
613-
integrity sha512-4z8x8jImp/Clwol4sgmR6qdntLQZDxNFabBSbyr9EB11cyWHyqhRvBKip/1sBTcQAScIwuFT64MOu/HI4a5Nkw==
615+
"@npmcli/arborist@^2.0.0", "@npmcli/arborist@^2.3.0", "@npmcli/arborist@^2.8.0":
616+
version "2.8.3"
617+
resolved "https://registry.yarnpkg.com/@npmcli/arborist/-/arborist-2.8.3.tgz#5569e7d2038f6893abc81f9c879f497b506e6980"
618+
integrity sha512-miFcxbZjmQqeFTeRSLLh+lc/gxIKDO5L4PVCp+dp+kmcwJmYsEJmF7YvHR2yi3jF+fxgvLf3CCFzboPIXAuabg==
614619
dependencies:
615620
"@npmcli/installed-package-contents" "^1.0.7"
616621
"@npmcli/map-workspaces" "^1.0.2"
617622
"@npmcli/metavuln-calculator" "^1.1.0"
618623
"@npmcli/move-file" "^1.1.0"
619624
"@npmcli/name-from-folder" "^1.0.1"
620625
"@npmcli/node-gyp" "^1.0.1"
626+
"@npmcli/package-json" "^1.0.1"
621627
"@npmcli/run-script" "^1.8.2"
622628
bin-links "^2.2.1"
623629
cacache "^15.0.3"
624630
common-ancestor-path "^1.0.1"
625631
json-parse-even-better-errors "^2.3.1"
626-
json-stringify-nice "^1.1.2"
632+
json-stringify-nice "^1.1.4"
633+
mkdirp "^1.0.4"
627634
mkdirp-infer-owner "^2.0.0"
628635
npm-install-checks "^4.0.0"
629-
npm-package-arg "^8.1.0"
636+
npm-package-arg "^8.1.5"
630637
npm-pick-manifest "^6.1.0"
631-
npm-registry-fetch "^9.0.0"
632-
pacote "^11.2.6"
638+
npm-registry-fetch "^11.0.0"
639+
pacote "^11.3.5"
633640
parse-conflict-json "^1.1.1"
641+
proc-log "^1.0.0"
634642
promise-all-reject-late "^1.0.0"
635643
promise-call-limit "^1.0.1"
636644
read-package-json-fast "^2.0.2"
637645
readdir-scoped-modules "^1.1.0"
646+
rimraf "^3.0.2"
638647
semver "^7.3.5"
639-
tar "^6.1.0"
648+
ssri "^8.0.1"
640649
treeverse "^1.0.4"
641650
walk-up-path "^1.0.0"
642651

@@ -663,10 +672,18 @@
663672
dependencies:
664673
ansi-styles "^4.3.0"
665674

666-
"@npmcli/[email protected]", "@npmcli/git@^2.0.1", "@npmcli/git@^2.0.6":
667-
version "2.0.8"
668-
resolved "https://registry.yarnpkg.com/@npmcli/git/-/git-2.0.8.tgz#c38b54cdeec556ab641cf6161cc7825711a88d65"
669-
integrity sha512-LPnzyBZ+1p7+JzHVwwKycMF8M3lr1ze3wxGRnxn/QxJtk++Y3prSJQrdBDGCxJyRpFsup6J3lrRBVYBhJVrM8Q==
675+
"@npmcli/fs@^1.0.0":
676+
version "1.0.0"
677+
resolved "https://registry.yarnpkg.com/@npmcli/fs/-/fs-1.0.0.tgz#589612cfad3a6ea0feafcb901d29c63fd52db09f"
678+
integrity sha512-8ltnOpRR/oJbOp8vaGUnipOi3bqkcW+sLHFlyXIr08OGHmVJLB1Hn7QtGXbYcpVtH1gAYZTlmDXtE4YV0+AMMQ==
679+
dependencies:
680+
"@gar/promisify" "^1.0.1"
681+
semver "^7.3.5"
682+
683+
"@npmcli/git@^2.0.1", "@npmcli/git@^2.0.6", "@npmcli/git@^2.0.8", "@npmcli/git@^2.1.0":
684+
version "2.1.0"
685+
resolved "https://registry.yarnpkg.com/@npmcli/git/-/git-2.1.0.tgz#2fbd77e147530247d37f325930d457b3ebe894f6"
686+
integrity sha512-/hBFX/QG1b+N7PZBFs0bi+evgRZcK9nWBxQKZkGoXUT5hJSwl5c4d7y8/hm+NQZRPhQ67RzFaj5UM9YeyKoryw==
670687
dependencies:
671688
"@npmcli/promise-spawn" "^1.3.2"
672689
lru-cache "^6.0.0"
@@ -722,6 +739,13 @@
722739
resolved "https://registry.yarnpkg.com/@npmcli/node-gyp/-/node-gyp-1.0.2.tgz#3cdc1f30e9736dbc417373ed803b42b1a0a29ede"
723740
integrity sha512-yrJUe6reVMpktcvagumoqD9r08fH1iRo01gn1u0zoCApa9lnZGEigVKUd2hzsCId4gdtkZZIVscLhNxMECKgRg==
724741

742+
"@npmcli/package-json@^1.0.1":
743+
version "1.0.1"
744+
resolved "https://registry.yarnpkg.com/@npmcli/package-json/-/package-json-1.0.1.tgz#1ed42f00febe5293c3502fd0ef785647355f6e89"
745+
integrity sha512-y6jnu76E9C23osz8gEMBayZmaZ69vFOIk8vR1FJL/wbEJ54+9aVG9rLTjQKSXfgYZEr50nw1txBBFfBZZe+bYg==
746+
dependencies:
747+
json-parse-even-better-errors "^2.3.1"
748+
725749
"@npmcli/promise-spawn@^1.2.0", "@npmcli/promise-spawn@^1.3.2":
726750
version "1.3.2"
727751
resolved "https://registry.yarnpkg.com/@npmcli/promise-spawn/-/promise-spawn-1.3.2.tgz#42d4e56a8e9274fba180dabc0aea6e38f29274f5"
@@ -1500,7 +1524,7 @@ agent-base@5:
15001524
resolved "https://registry.yarnpkg.com/agent-base/-/agent-base-5.1.1.tgz#e8fb3f242959db44d63be665db7a8e739537a32c"
15011525
integrity sha512-TMeqbNl2fMW0nMjTEPOwe3J/PRFP4vqeoNuQMG0HlMrtm5QxKqdvAkZ1pRBQ/ulIyDD5Yq0nJ7YbdD8ey0TO3g==
15021526

1503-
agent-base@6:
1527+
agent-base@6, agent-base@^6.0.2:
15041528
version "6.0.2"
15051529
resolved "https://registry.yarnpkg.com/agent-base/-/agent-base-6.0.2.tgz#49fff58577cfee3f37176feab4c22e00f86d7f77"
15061530
integrity sha512-RZNwNclF7+MS/8bDg70amg32dyeZGZxiDuQmZxKLAlQjr3jGyLx+4Kkk58UO7D2QdgFIQCovuSuZESne6RG6XQ==
@@ -2105,6 +2129,30 @@ cacache@^15.0.3, cacache@^15.0.5, cacache@^15.0.6:
21052129
tar "^6.0.2"
21062130
unique-filename "^1.1.1"
21072131

2132+
cacache@^15.2.0:
2133+
version "15.3.0"
2134+
resolved "https://registry.yarnpkg.com/cacache/-/cacache-15.3.0.tgz#dc85380fb2f556fe3dda4c719bfa0ec875a7f1eb"
2135+
integrity sha512-VVdYzXEn+cnbXpFgWs5hTT7OScegHVmLhJIR8Ufqk3iFD6A6j5iSX1KuBTfNEv4tdJWE2PzA6IVFtcLC7fN9wQ==
2136+
dependencies:
2137+
"@npmcli/fs" "^1.0.0"
2138+
"@npmcli/move-file" "^1.0.1"
2139+
chownr "^2.0.0"
2140+
fs-minipass "^2.0.0"
2141+
glob "^7.1.4"
2142+
infer-owner "^1.0.4"
2143+
lru-cache "^6.0.0"
2144+
minipass "^3.1.1"
2145+
minipass-collect "^1.0.2"
2146+
minipass-flush "^1.0.5"
2147+
minipass-pipeline "^1.2.2"
2148+
mkdirp "^1.0.3"
2149+
p-map "^4.0.0"
2150+
promise-inflight "^1.0.1"
2151+
rimraf "^3.0.2"
2152+
ssri "^8.0.1"
2153+
tar "^6.0.2"
2154+
unique-filename "^1.1.1"
2155+
21082156
cache-base@^1.0.1:
21092157
version "1.0.1"
21102158
resolved "https://registry.yarnpkg.com/cache-base/-/cache-base-1.0.1.tgz#0a7f46416831c8b662ee36fe4e7c59d76f666ab2"
@@ -5226,10 +5274,10 @@ json-stable-stringify-without-jsonify@^1.0.1:
52265274
resolved "https://registry.yarnpkg.com/json-stable-stringify-without-jsonify/-/json-stable-stringify-without-jsonify-1.0.1.tgz#9db7b59496ad3f3cfef30a75142d2d930ad72651"
52275275
integrity sha1-nbe1lJatPzz+8wp1FC0tkwrXJlE=
52285276

5229-
json-stringify-nice@^1.1.2:
5230-
version "1.1.3"
5231-
resolved "https://registry.yarnpkg.com/json-stringify-nice/-/json-stringify-nice-1.1.3.tgz#43991531d674ad5c19152d519047849935293add"
5232-
integrity sha512-w8+cZZFgcPtFkZTmkA1UpRH0GXXfpeuc/cClNkQjLt9JoQd8cBFSyB8J1WWjJrthIYViHobwnh3jA4z5X2LdGA==
5277+
json-stringify-nice@^1.1.4:
5278+
version "1.1.4"
5279+
resolved "https://registry.yarnpkg.com/json-stringify-nice/-/json-stringify-nice-1.1.4.tgz#2c937962b80181d3f317dd39aa323e14f5a60a67"
5280+
integrity sha512-5Z5RFW63yxReJ7vANgW6eZFGWaQvnPE3WNmZoOJrSkGju2etKA2L5rrOa1sm877TVTFt57A80BH1bArcmlLfPw==
52335281

52345282
json-stringify-safe@^5.0.0, json-stringify-safe@^5.0.1, json-stringify-safe@~5.0.1:
52355283
version "5.0.1"
@@ -5747,6 +5795,28 @@ make-fetch-happen@^8.0.14, make-fetch-happen@^8.0.9:
57475795
socks-proxy-agent "^5.0.0"
57485796
ssri "^8.0.0"
57495797

5798+
make-fetch-happen@^9.0.1:
5799+
version "9.1.0"
5800+
resolved "https://registry.yarnpkg.com/make-fetch-happen/-/make-fetch-happen-9.1.0.tgz#53085a09e7971433e6765f7971bf63f4e05cb968"
5801+
integrity sha512-+zopwDy7DNknmwPQplem5lAZX/eCOzSvSNNcSKm5eVwTkOBzoktEfXsa9L23J/GIRhxRsaxzkPEhrJEpE2F4Gg==
5802+
dependencies:
5803+
agentkeepalive "^4.1.3"
5804+
cacache "^15.2.0"
5805+
http-cache-semantics "^4.1.0"
5806+
http-proxy-agent "^4.0.1"
5807+
https-proxy-agent "^5.0.0"
5808+
is-lambda "^1.0.1"
5809+
lru-cache "^6.0.0"
5810+
minipass "^3.1.3"
5811+
minipass-collect "^1.0.2"
5812+
minipass-fetch "^1.3.2"
5813+
minipass-flush "^1.0.5"
5814+
minipass-pipeline "^1.2.4"
5815+
negotiator "^0.6.2"
5816+
promise-retry "^2.0.1"
5817+
socks-proxy-agent "^6.0.0"
5818+
ssri "^8.0.0"
5819+
57505820
make-iterator@^1.0.0:
57515821
version "1.0.1"
57525822
resolved "https://registry.yarnpkg.com/make-iterator/-/make-iterator-1.0.1.tgz#29b33f312aa8f547c4a5e490f56afcec99133ad6"
@@ -6166,7 +6236,7 @@ natural-compare@^1.4.0:
61666236
resolved "https://registry.yarnpkg.com/natural-compare/-/natural-compare-1.4.0.tgz#4abebfeed7541f2c27acfb29bdbbd15c8d5ba4f7"
61676237
integrity sha1-Sr6/7tdUHywnrPspvbvRXI1bpPc=
61686238

6169-
6239+
[email protected], negotiator@^0.6.2:
61706240
version "0.6.2"
61716241
resolved "https://registry.yarnpkg.com/negotiator/-/negotiator-0.6.2.tgz#feacf7ccf525a77ae9634436a64883ffeca346fb"
61726242
integrity sha512-hZXc7K2e+PgeI1eDBe/10Ard4ekbfrrqG8Ep+8Jmf4JID2bNg7NvCPOZN+kfF574pFQI7mum2AUqDidoKqcTOw==
@@ -6351,6 +6421,15 @@ npm-package-arg@^8.0.0, npm-package-arg@^8.0.1, npm-package-arg@^8.1.0, npm-pack
63516421
semver "^7.3.4"
63526422
validate-npm-package-name "^3.0.0"
63536423

6424+
npm-package-arg@^8.1.5:
6425+
version "8.1.5"
6426+
resolved "https://registry.yarnpkg.com/npm-package-arg/-/npm-package-arg-8.1.5.tgz#3369b2d5fe8fdc674baa7f1786514ddc15466e44"
6427+
integrity sha512-LhgZrg0n0VgvzVdSm1oiZworPbTxYHUJCgtsJW8mGvlDpxTM1vSJc3m5QZeUkhAHIzbz3VCHd/R4osi1L1Tg/Q==
6428+
dependencies:
6429+
hosted-git-info "^4.0.1"
6430+
semver "^7.3.4"
6431+
validate-npm-package-name "^3.0.0"
6432+
63546433
npm-packlist@^2.1.4:
63556434
version "2.1.5"
63566435
resolved "https://registry.yarnpkg.com/npm-packlist/-/npm-packlist-2.1.5.tgz#43ef5bbb9f59b7c0ef91e0905f1dd707b4cfb33c"
@@ -6378,6 +6457,18 @@ npm-profile@^5.0.2:
63786457
dependencies:
63796458
npm-registry-fetch "^9.0.0"
63806459

6460+
npm-registry-fetch@^11.0.0:
6461+
version "11.0.0"
6462+
resolved "https://registry.yarnpkg.com/npm-registry-fetch/-/npm-registry-fetch-11.0.0.tgz#68c1bb810c46542760d62a6a965f85a702d43a76"
6463+
integrity sha512-jmlgSxoDNuhAtxUIG6pVwwtz840i994dL14FoNVZisrmZW5kWd63IUTNv1m/hyRSGSqWjCUp/YZlS1BJyNp9XA==
6464+
dependencies:
6465+
make-fetch-happen "^9.0.1"
6466+
minipass "^3.1.3"
6467+
minipass-fetch "^1.3.0"
6468+
minipass-json-stream "^1.0.1"
6469+
minizlib "^2.0.0"
6470+
npm-package-arg "^8.0.0"
6471+
63816472
npm-registry-fetch@^9.0.0:
63826473
version "9.0.0"
63836474
resolved "https://registry.yarnpkg.com/npm-registry-fetch/-/npm-registry-fetch-9.0.0.tgz#86f3feb4ce00313bc0b8f1f8f69daae6face1661"
@@ -6860,6 +6951,31 @@ pacote@^11.1.11, pacote@^11.2.6, pacote@^11.3.0, pacote@^11.3.1:
68606951
ssri "^8.0.1"
68616952
tar "^6.1.0"
68626953

6954+
pacote@^11.3.5:
6955+
version "11.3.5"
6956+
resolved "https://registry.yarnpkg.com/pacote/-/pacote-11.3.5.tgz#73cf1fc3772b533f575e39efa96c50be8c3dc9d2"
6957+
integrity sha512-fT375Yczn4zi+6Hkk2TBe1x1sP8FgFsEIZ2/iWaXY2r/NkhDJfxbcn5paz1+RTFCyNf+dPnaoBDJoAxXSU8Bkg==
6958+
dependencies:
6959+
"@npmcli/git" "^2.1.0"
6960+
"@npmcli/installed-package-contents" "^1.0.6"
6961+
"@npmcli/promise-spawn" "^1.2.0"
6962+
"@npmcli/run-script" "^1.8.2"
6963+
cacache "^15.0.5"
6964+
chownr "^2.0.0"
6965+
fs-minipass "^2.1.0"
6966+
infer-owner "^1.0.4"
6967+
minipass "^3.1.3"
6968+
mkdirp "^1.0.3"
6969+
npm-package-arg "^8.0.1"
6970+
npm-packlist "^2.1.4"
6971+
npm-pick-manifest "^6.0.0"
6972+
npm-registry-fetch "^11.0.0"
6973+
promise-retry "^2.0.1"
6974+
read-package-json-fast "^2.0.1"
6975+
rimraf "^3.0.2"
6976+
ssri "^8.0.1"
6977+
tar "^6.1.0"
6978+
68636979
parent-module@^1.0.0:
68646980
version "1.0.1"
68656981
resolved "https://registry.yarnpkg.com/parent-module/-/parent-module-1.0.1.tgz#691d2709e78c79fae3a156622452d00762caaaa2"
@@ -7103,6 +7219,11 @@ [email protected]:
71037219
mri "^1.1.5"
71047220
multimatch "^4.0.0"
71057221

7222+
proc-log@^1.0.0:
7223+
version "1.0.0"
7224+
resolved "https://registry.yarnpkg.com/proc-log/-/proc-log-1.0.0.tgz#0d927307401f69ed79341e83a0b2c9a13395eb77"
7225+
integrity sha512-aCk8AO51s+4JyuYGg3Q/a6gnrlDO09NpVWePtjp7xwphcoQ04x5WAfCyugcsbLooWcMJ87CLkD4+604IckEdhg==
7226+
71067227
process-nextick-args@~2.0.0:
71077228
version "2.0.1"
71087229
resolved "https://registry.yarnpkg.com/process-nextick-args/-/process-nextick-args-2.0.1.tgz#7820d9b16120cc55ca9ae7792680ae7dba6d7fe2"
@@ -7985,6 +8106,15 @@ socks-proxy-agent@^5.0.0:
79858106
debug "4"
79868107
socks "^2.3.3"
79878108

8109+
socks-proxy-agent@^6.0.0:
8110+
version "6.0.0"
8111+
resolved "https://registry.yarnpkg.com/socks-proxy-agent/-/socks-proxy-agent-6.0.0.tgz#9f8749cdc05976505fa9f9a958b1818d0e60573b"
8112+
integrity sha512-FIgZbQWlnjVEQvMkylz64/rUggGtrKstPnx8OZyYFG0tAFR8CSBtpXxSwbFLHyeXFn/cunFL7MpuSOvDSOPo9g==
8113+
dependencies:
8114+
agent-base "^6.0.2"
8115+
debug "^4.3.1"
8116+
socks "^2.6.1"
8117+
79888118
socks@^2.3.3:
79898119
version "2.6.0"
79908120
resolved "https://registry.yarnpkg.com/socks/-/socks-2.6.0.tgz#6b984928461d39871b3666754b9000ecf39dfac2"
@@ -7993,6 +8123,14 @@ socks@^2.3.3:
79938123
ip "^1.1.5"
79948124
smart-buffer "^4.1.0"
79958125

8126+
socks@^2.6.1:
8127+
version "2.6.1"
8128+
resolved "https://registry.yarnpkg.com/socks/-/socks-2.6.1.tgz#989e6534a07cf337deb1b1c94aaa44296520d30e"
8129+
integrity sha512-kLQ9N5ucj8uIcxrDwjm0Jsqk06xdpBjGNQtpXy4Q8/QY2k+fY7nZH8CARy+hkbG+SGAovmzzuauCpBlb8FrnBA==
8130+
dependencies:
8131+
ip "^1.1.5"
8132+
smart-buffer "^4.1.0"
8133+
79968134
source-map-resolve@^0.5.0:
79978135
version "0.5.3"
79988136
resolved "https://registry.yarnpkg.com/source-map-resolve/-/source-map-resolve-0.5.3.tgz#190866bece7553e1f8f267a2ee82c606b5509a1a"

0 commit comments

Comments
 (0)