From 5fa25d5b47d0c46ecf413399a72388c7868a280b Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 15 Aug 2024 06:35:11 +0000 Subject: [PATCH] fix: package.json & package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-AXIOS-7361793 --- package-lock.json | 22 ++++++++++++---------- package.json | 2 +- 2 files changed, 13 insertions(+), 11 deletions(-) diff --git a/package-lock.json b/package-lock.json index a5522a3..7d9a741 100644 --- a/package-lock.json +++ b/package-lock.json @@ -9,9 +9,9 @@ "version": "0.0.0-development", "license": "Apache-2.0", "dependencies": { - "axios": "^1.6.3", + "axios": "^1.7.4", "debug": "^4.3.1", - "runtypes": "6.7.0" + "runtypes": "^6.7.0" }, "devDependencies": { "@commitlint/cli": "^18.4.3", @@ -40,7 +40,7 @@ "rimraf": "^3.0.2", "semantic-release": "^22.0.8", "ts-jest": "^26.5.5", - "typescript": "4.7.4" + "typescript": "^4.7.4" } }, "node_modules/@ampproject/remapping": { @@ -4739,11 +4739,12 @@ } }, "node_modules/axios": { - "version": "1.6.4", - "resolved": "https://registry.npmjs.org/axios/-/axios-1.6.4.tgz", - "integrity": "sha512-heJnIs6N4aa1eSthhN9M5ioILu8Wi8vmQW9iHQ9NUvfkJb0lEEDUiIdQNAuBtfUt3FxReaKdpQA5DbmMOqzF/A==", + "version": "1.7.4", + "resolved": "https://registry.npmjs.org/axios/-/axios-1.7.4.tgz", + "integrity": "sha512-DukmaFRnY6AzAALSH4J2M3k6PkaC+MfaAGdEERRWcC9q3/TWQwLpHR8ZRLKTdQ3aBDL64EdluRDjJqKw+BPZEw==", + "license": "MIT", "dependencies": { - "follow-redirects": "^1.15.4", + "follow-redirects": "^1.15.6", "form-data": "^4.0.0", "proxy-from-env": "^1.1.0" } @@ -8954,15 +8955,16 @@ "dev": true }, "node_modules/follow-redirects": { - "version": "1.15.4", - "resolved": "https://registry.npmjs.org/follow-redirects/-/follow-redirects-1.15.4.tgz", - "integrity": "sha512-Cr4D/5wlrb0z9dgERpUL3LrmPKVDsETIJhaCMeDfuFYcqa5bldGV6wBsAN6X/vxlXQtFBMrXdXxdL8CbDTGniw==", + "version": "1.15.6", + "resolved": "https://registry.npmjs.org/follow-redirects/-/follow-redirects-1.15.6.tgz", + "integrity": "sha512-wWN62YITEaOpSK584EZXJafH1AGpO8RVgElfkuXbTOrPX4fIfOyEpW/CsiNd8JdYrAoOvafRTOEnvsO++qCqFA==", "funding": [ { "type": "individual", "url": "https://github.com/sponsors/RubenVerborgh" } ], + "license": "MIT", "engines": { "node": ">=4.0" }, diff --git a/package.json b/package.json index e53a3d0..28f5135 100644 --- a/package.json +++ b/package.json @@ -49,7 +49,7 @@ "generator-nod" ], "dependencies": { - "axios": "^1.6.3", + "axios": "^1.7.4", "debug": "^4.3.1", "runtypes": "^6.7.0" },