From e3bfc86f50acb7a9ee9fca97cd02e5a8be8774dd Mon Sep 17 00:00:00 2001 From: Damien Elmes Date: Sun, 16 Jan 2022 13:29:48 +1000 Subject: [PATCH] update JS deps - fixes warnings about security issues in marked/markdown-it - jsdoc is mostly unmaintained at this point, and we need to override its dependencies manually - typescript is still pinned --- package.json | 7 +- ts/change-notetype/ChangeNotetypePage.svelte | 2 +- ts/deck-options/TooltipLabel.svelte | 2 +- ts/licenses.json | 32 +- yarn.lock | 1248 +++++++++--------- 5 files changed, 631 insertions(+), 660 deletions(-) diff --git a/package.json b/package.json index 7b822c2ce..208d2280d 100644 --- a/package.json +++ b/package.json @@ -59,7 +59,7 @@ "@mdi/svg": "^6.1.95", "@popperjs/core": "^2.9.2", "@types/lodash-es": "^4.17.4", - "@types/marked": "^3.0.1", + "@types/marked": "^4.0.1", "bootstrap": "=5.0.2", "bootstrap-icons": "^1.4.0", "codemirror": "^5.63.1", @@ -69,13 +69,14 @@ "jquery": "^3.5.1", "jquery-ui-dist": "^1.12.1", "lodash-es": "^4.17.21", - "marked": "3.0.4", + "marked": "4.0.10", "mathjax": "^3.1.2", "mathjax-full": "^3.2.0", "protobufjs": "^6.10.2" }, "resolutions": { - "jsdoc/marked": "=2.0.5" + "jsdoc/marked": "^4.0.0", + "jsdoc/markdown-it": "^12.3.2" }, "files": [ "dist/*" diff --git a/ts/change-notetype/ChangeNotetypePage.svelte b/ts/change-notetype/ChangeNotetypePage.svelte index 443ba78f9..6c73a7ac4 100644 --- a/ts/change-notetype/ChangeNotetypePage.svelte +++ b/ts/change-notetype/ChangeNotetypePage.svelte @@ -4,7 +4,7 @@ License: GNU AGPL, version 3 or later; http://www.gnu.org/licenses/agpl.html -->