From d80d7b593ea7dcbc011ee7db6f06ac6e86b6a82b Mon Sep 17 00:00:00 2001 From: Dimitris Date: Tue, 3 Mar 2020 21:23:56 +0200 Subject: [PATCH 1/3] fixes typo on mongo image Signed-off-by: Dimitrios Strantsalis --- docs/3.0.0-beta.x/installation/docker.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/docs/3.0.0-beta.x/installation/docker.md b/docs/3.0.0-beta.x/installation/docker.md index dcae25eda3..4d109b761f 100644 --- a/docs/3.0.0-beta.x/installation/docker.md +++ b/docs/3.0.0-beta.x/installation/docker.md @@ -84,7 +84,7 @@ services: - '1337:1337' mongo: - image: postgres + image: mongo environment: MONGO_INITDB_ROOT_USERNAME: strapi MONGO_INITDB_ROOT_PASSWORD: strapi From 615bb166c3473c6098aef9abb3165ebbaf38cbdd Mon Sep 17 00:00:00 2001 From: Derrick Mehaffy Date: Fri, 6 Mar 2020 06:42:35 -0700 Subject: [PATCH 2/3] Update lodash to fix security issues Signed-off-by: Derrick Mehaffy --- packages/strapi-utils/package.json | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/packages/strapi-utils/package.json b/packages/strapi-utils/package.json index 5a07242723..292aa5a806 100644 --- a/packages/strapi-utils/package.json +++ b/packages/strapi-utils/package.json @@ -15,7 +15,7 @@ "main": "./lib", "dependencies": { "date-fns": "^2.8.1", - "lodash": "4.17.11", + "lodash": "4.17.12", "pino": "^4.7.1", "pluralize": "^7.0.0", "shelljs": "^0.8.3", From a70991a37e8bd55573aa0497811ca958d14ce2e5 Mon Sep 17 00:00:00 2001 From: Alexandre Bodin Date: Sun, 8 Mar 2020 22:25:13 +0100 Subject: [PATCH 3/3] Update yarn.lock Signed-off-by: Alexandre Bodin --- yarn.lock | 31 ++++++++++++++++++------------- 1 file changed, 18 insertions(+), 13 deletions(-) diff --git a/yarn.lock b/yarn.lock index 91d29be27c..bde97c1b33 100644 --- a/yarn.lock +++ b/yarn.lock @@ -11352,6 +11352,11 @@ lodash@4.17.11: resolved "https://registry.yarnpkg.com/lodash/-/lodash-4.17.11.tgz#b39ea6229ef607ecd89e2c8df12536891cac9b8d" integrity sha512-cQKh8igo5QUhZ7lg38DYWAxMvjSAKG0A8wGSVimP07SIUEK2UO+arSRKbRZWtelMtN5V0Hkwh5ryOto/SshYIg== +lodash@4.17.12: + version "4.17.12" + resolved "https://registry.yarnpkg.com/lodash/-/lodash-4.17.12.tgz#a712c74fdc31f7ecb20fe44f157d802d208097ef" + integrity sha512-+CiwtLnsJhX03p20mwXuvhoebatoh5B3tt+VvYlrPgZC1g36y+RRbkufX95Xa+X4I59aWEacDFYwnJZiyBh9gA== + lodash@^4.1.1, lodash@^4.14.0, lodash@^4.15.0, lodash@^4.17.10, lodash@^4.17.11, lodash@^4.17.12, lodash@^4.17.13, lodash@^4.17.14, lodash@^4.17.15, lodash@^4.17.3, lodash@^4.17.4, lodash@^4.17.5, lodash@^4.2.1, lodash@^4.7.14: version "4.17.15" resolved "https://registry.yarnpkg.com/lodash/-/lodash-4.17.15.tgz#b447f6670a0455bbfeedd11392eff330ea097548" @@ -18472,19 +18477,7 @@ ylru@^1.2.0: resolved "https://registry.yarnpkg.com/ylru/-/ylru-1.2.1.tgz#f576b63341547989c1de7ba288760923b27fe84f" integrity sha512-faQrqNMzcPCHGVC2aaOINk13K+aaBDUPjGWl0teOXywElLjyVAB6Oe2jj62jHYtwsU49jXhScYbvPENK+6zAvQ== -yup@^0.27.0: - version "0.27.0" - resolved "https://registry.yarnpkg.com/yup/-/yup-0.27.0.tgz#f8cb198c8e7dd2124beddc2457571329096b06e7" - integrity sha512-v1yFnE4+u9za42gG/b/081E7uNW9mUj3qtkmelLbW5YPROZzSH/KUUyJu9Wt8vxFJcT9otL/eZopS0YK1L5yPQ== - dependencies: - "@babel/runtime" "^7.0.0" - fn-name "~2.0.1" - lodash "^4.17.11" - property-expr "^1.5.0" - synchronous-promise "^2.0.6" - toposort "^2.0.2" - -yup@^0.28.0: +yup@0.28.1: version "0.28.1" resolved "https://registry.yarnpkg.com/yup/-/yup-0.28.1.tgz#60c0725be7057ed7a9ae61561333809332a63d47" integrity sha512-xSHMZA7UyecSG/CCTDCtnYZMjBrYDR/C7hu0fMsZ6UcS/ngko4qCVFbw+CAmNtHlbItKkvQ3YXITODeTj/dUkw== @@ -18497,6 +18490,18 @@ yup@^0.28.0: synchronous-promise "^2.0.6" toposort "^2.0.2" +yup@^0.27.0: + version "0.27.0" + resolved "https://registry.yarnpkg.com/yup/-/yup-0.27.0.tgz#f8cb198c8e7dd2124beddc2457571329096b06e7" + integrity sha512-v1yFnE4+u9za42gG/b/081E7uNW9mUj3qtkmelLbW5YPROZzSH/KUUyJu9Wt8vxFJcT9otL/eZopS0YK1L5yPQ== + dependencies: + "@babel/runtime" "^7.0.0" + fn-name "~2.0.1" + lodash "^4.17.11" + property-expr "^1.5.0" + synchronous-promise "^2.0.6" + toposort "^2.0.2" + zen-observable-ts@^0.8.20: version "0.8.20" resolved "https://registry.yarnpkg.com/zen-observable-ts/-/zen-observable-ts-0.8.20.tgz#44091e335d3fcbc97f6497e63e7f57d5b516b163"