From 3b79d896ab4e0632a15db333e8ad0b61bf289dee Mon Sep 17 00:00:00 2001 From: Paul Lynch Date: Mon, 30 Sep 2019 13:13:11 -0400 Subject: [PATCH 1/2] Updated dependencies to get patches for security vulnerabilities --- package-lock.json | 99 ++++++++++++++++++++++------------------------- package.json | 2 +- 2 files changed, 48 insertions(+), 53 deletions(-) diff --git a/package-lock.json b/package-lock.json index c6f7ca3..091d685 100644 --- a/package-lock.json +++ b/package-lock.json @@ -1,6 +1,6 @@ { "name": "fhirpath", - "version": "0.17.0", + "version": "0.17.1", "lockfileVersion": 1, "requires": true, "dependencies": { @@ -3339,16 +3339,16 @@ } }, "@lhncbc/ucum-lhc": { - "version": "2.6.2", - "resolved": "https://registry.npmjs.org/@lhncbc/ucum-lhc/-/ucum-lhc-2.6.2.tgz", - "integrity": "sha512-K7LHX9NqDDLaHPPJYWhHY8tkZ5O93tkamY7CgqpfecUEoQhiBWdqkGONIlZKODKB1a36yMeBVwUHvo61PEl2Zw==", + "version": "3.0.0", + "resolved": "https://registry.npmjs.org/@lhncbc/ucum-lhc/-/ucum-lhc-3.0.0.tgz", + "integrity": "sha512-+HW1h0cPfC0vqrg1vfoz4lhTRdYI77R6wMUiSZDiEIBpBCur2qF7UMqHrod2JjRMfYXsJA8lPkyskC32OEgzEA==", "requires": { "braces": "^2.3.1", - "csv": "^1.1.0", - "csv-parse": "^1.1.7", + "csv-parse": "^4.4.6", "csv-stringify": "^1.0.4", "escape-html": "^1.0.3", "fs": "0.0.1-security", + "grunt-extract-sourcemap": "^0.1.19", "is-integer": "^1.0.6", "jsonfile": "^2.2.3", "stream": "0.0.2", @@ -5489,33 +5489,10 @@ "cssom": "0.3.x" } }, - "csv": { - "version": "1.2.1", - "resolved": "https://registry.npmjs.org/csv/-/csv-1.2.1.tgz", - "integrity": "sha1-UjHt/BxxUlEuxFeBB2p6l/9SXAw=", - "requires": { - "csv-generate": "^1.1.2", - "csv-parse": "^1.3.3", - "csv-stringify": "^1.1.2", - "stream-transform": "^0.2.2" - }, - "dependencies": { - "stream-transform": { - "version": "0.2.2", - "resolved": "https://registry.npmjs.org/stream-transform/-/stream-transform-0.2.2.tgz", - "integrity": "sha1-dYZ0h/SVKPi/HYJJllh1PQLfeDg=" - } - } - }, - "csv-generate": { - "version": "1.1.2", - "resolved": "https://registry.npmjs.org/csv-generate/-/csv-generate-1.1.2.tgz", - "integrity": "sha1-7GsA7a7W5ZrZwgWC9MNk4osUYkA=" - }, "csv-parse": { - "version": "1.3.3", - "resolved": "https://registry.npmjs.org/csv-parse/-/csv-parse-1.3.3.tgz", - "integrity": "sha1-0c/YdDwvhJoKuy/VRNtWaV0ZpJA=" + "version": "4.4.7", + "resolved": "https://registry.npmjs.org/csv-parse/-/csv-parse-4.4.7.tgz", + "integrity": "sha512-QfjZ9mhBHcNDUM7Ab1sLC5HNa7wVFSl5jDK3lpM0YyvAUb9bVgO1Veht13tWJno8cEZ2eSowFDwcvRCO4BVvNA==" }, "csv-stringify": { "version": "1.1.2", @@ -6019,10 +5996,13 @@ } }, "eslint-utils": { - "version": "1.3.1", - "resolved": "https://registry.npmjs.org/eslint-utils/-/eslint-utils-1.3.1.tgz", - "integrity": "sha512-Z7YjnIldX+2XMcjr7ZkgEsOj/bREONV60qYeB/bjMAqqqZ4zxKyWX+BOUkdmRmA9riiIPVvo5x86m5elviOk0Q==", - "dev": true + "version": "1.4.2", + "resolved": "https://registry.npmjs.org/eslint-utils/-/eslint-utils-1.4.2.tgz", + "integrity": "sha512-eAZS2sEUMlIeCjBeubdj45dmBHQwPHWyBcT1VSYB7o9x9WRRqKxyUoiXlRjyAwzN7YEzHJlYg0NmzDRWx6GP4Q==", + "dev": true, + "requires": { + "eslint-visitor-keys": "^1.0.0" + } }, "eslint-visitor-keys": { "version": "1.0.0", @@ -7684,6 +7664,22 @@ "serve-static": "^1.13.2" } }, + "grunt-extract-sourcemap": { + "version": "0.1.19", + "resolved": "https://registry.npmjs.org/grunt-extract-sourcemap/-/grunt-extract-sourcemap-0.1.19.tgz", + "integrity": "sha1-vUYwEl1Wh1x8s7cAA8owE3JFppI=", + "requires": { + "coffee-script": "~1.10.0", + "lazy.js": "~0.4.2" + }, + "dependencies": { + "coffee-script": { + "version": "1.10.0", + "resolved": "https://registry.npmjs.org/coffee-script/-/coffee-script-1.10.0.tgz", + "integrity": "sha1-EpOLz5vhlI+gBvkuDEyegXBRCMA=" + } + } + }, "grunt-known-options": { "version": "1.1.1", "resolved": "https://registry.npmjs.org/grunt-known-options/-/grunt-known-options-1.1.1.tgz", @@ -7765,9 +7761,9 @@ } }, "handlebars": { - "version": "4.1.2", - "resolved": "https://registry.npmjs.org/handlebars/-/handlebars-4.1.2.tgz", - "integrity": "sha512-nvfrjqvt9xQ8Z/w0ijewdD/vvWDTOweBUm96NTr66Wfvo1mJenBLwcYmPs3TIBP5ruzYGD7Hx/DaM9RmhroGPw==", + "version": "4.4.0", + "resolved": "https://registry.npmjs.org/handlebars/-/handlebars-4.4.0.tgz", + "integrity": "sha512-xkRtOt3/3DzTKMOt3xahj2M/EqNhY988T+imYSlMgs5fVhLN2fmKVVj0LtEGmb+3UUYV5Qmm1052Mm3dIQxOvw==", "dev": true, "requires": { "neo-async": "^2.6.0", @@ -7776,12 +7772,6 @@ "uglify-js": "^3.1.4" }, "dependencies": { - "neo-async": { - "version": "2.6.1", - "resolved": "https://registry.npmjs.org/neo-async/-/neo-async-2.6.1.tgz", - "integrity": "sha512-iyam8fBuCUpWeKPGpaNMetEocMt364qkCsfL9JuhjXX6dRnguRVOfk2GZaDpPjcOKiiXCPINZC1GczQ7iTq3Zw==", - "dev": true - }, "source-map": { "version": "0.6.1", "resolved": "https://registry.npmjs.org/source-map/-/source-map-0.6.1.tgz", @@ -9465,6 +9455,11 @@ "integrity": "sha512-3h7B2WRT5LNXOtQiAaWonilegHcPSf9nLVXlSTci8lu1dZUuui61+EsPEZqSVxY7rXYmB2DVKMQILxaO5WL61Q==", "dev": true }, + "lazy.js": { + "version": "0.4.3", + "resolved": "https://registry.npmjs.org/lazy.js/-/lazy.js-0.4.3.tgz", + "integrity": "sha1-h/Z6B602VVEh5P/xUg3zG+Znhtg=" + }, "lcid": { "version": "2.0.0", "resolved": "https://registry.npmjs.org/lcid/-/lcid-2.0.0.tgz", @@ -13193,20 +13188,20 @@ "dev": true }, "uglify-js": { - "version": "3.4.9", - "resolved": "https://registry.npmjs.org/uglify-js/-/uglify-js-3.4.9.tgz", - "integrity": "sha512-8CJsbKOtEbnJsTyv6LE6m6ZKniqMiFWmm9sRbopbkGs3gMPPfd3Fh8iIA4Ykv5MgaTbqHr4BaoGLJLZNhsrW1Q==", + "version": "3.6.0", + "resolved": "https://registry.npmjs.org/uglify-js/-/uglify-js-3.6.0.tgz", + "integrity": "sha512-W+jrUHJr3DXKhrsS7NUVxn3zqMOFn0hL/Ei6v0anCIMoKC93TjcflTagwIHLW7SfMFfiQuktQyFVCFHGUE0+yg==", "dev": true, "optional": true, "requires": { - "commander": "~2.17.1", + "commander": "~2.20.0", "source-map": "~0.6.1" }, "dependencies": { "commander": { - "version": "2.17.1", - "resolved": "https://registry.npmjs.org/commander/-/commander-2.17.1.tgz", - "integrity": "sha512-wPMUt6FnH2yzG95SA6mzjQOEKUU3aLaDEmzs1ti+1E9h+CsrZghRlqEM/EJ4KscsQVG8uNN4uVreUeT8+drlgg==", + "version": "2.20.1", + "resolved": "https://registry.npmjs.org/commander/-/commander-2.20.1.tgz", + "integrity": "sha512-cCuLsMhJeWQ/ZpsFTbE765kvVfoeSddc4nU3up4fV+fDBcfUXnbITJ+JzhkdjzOqhURjZgujxaioam4RM9yGUg==", "dev": true, "optional": true }, diff --git a/package.json b/package.json index ed55787..1312b16 100644 --- a/package.json +++ b/package.json @@ -4,7 +4,7 @@ "description": "A FHIRPath engine", "main": "src/fhirpath.js", "dependencies": { - "@lhncbc/ucum-lhc": "^2.6.2", + "@lhncbc/ucum-lhc": "^3.0.0", "antlr4": "^4.7.1", "commander": "^2.18.0", "date-fns": "^1.30.1", From 0179968a276dd50e37c6c716a578b90626422a4f Mon Sep 17 00:00:00 2001 From: Paul Lynch Date: Mon, 30 Sep 2019 13:16:34 -0400 Subject: [PATCH 2/2] Set version to 0.17.2 and updated the change log --- CHANGELOG.md | 4 ++++ package.json | 2 +- 2 files changed, 5 insertions(+), 1 deletion(-) diff --git a/CHANGELOG.md b/CHANGELOG.md index e937632..af74b42 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -3,6 +3,10 @@ This log documents significant changes for each release. This project follows [Semantic Versioning](http://semver.org/). +## [0.17.2] - 2019-09-30 +### Fixed +- Updated packages for the demo to get patches for vulnerabilities. + ## [0.17.1] - 2019-08-22 ### Fixed - Set the charset of the test pages to UTF-8, because fhirpath.min.js is UTF-8, diff --git a/package.json b/package.json index 1312b16..a5568c2 100644 --- a/package.json +++ b/package.json @@ -1,6 +1,6 @@ { "name": "fhirpath", - "version": "0.17.1", + "version": "0.17.2", "description": "A FHIRPath engine", "main": "src/fhirpath.js", "dependencies": {