From cd759668ef8e75ed526244b61b48b02f9a90212b Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 15 Aug 2024 05:55:19 +0000 Subject: [PATCH] fix: package.json & package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-AXIOS-7361793 --- package-lock.json | 11 ++++++----- package.json | 2 +- 2 files changed, 7 insertions(+), 6 deletions(-) diff --git a/package-lock.json b/package-lock.json index 03edfb5..5732d78 100644 --- a/package-lock.json +++ b/package-lock.json @@ -11,7 +11,7 @@ "dependencies": { "@js-joda/core": "^5.6.1", "@js-joda/timezone": "^2.18.2", - "axios": "~1.6.7", + "axios": "^1.7.4", "https-proxy-agent": "^7.0.3", "is-base64": "^1.1.0", "jsonwebtoken": "^9.0.2", @@ -2221,11 +2221,12 @@ } }, "node_modules/axios": { - "version": "1.6.7", - "resolved": "https://registry.npmjs.org/axios/-/axios-1.6.7.tgz", - "integrity": "sha512-/hDJGff6/c7u0hDkvkGxR/oy6CbCs8ziCsC7SqmhjfozqiJGc8Z11wrv9z9lYfY4K8l+H9TpjcMDX0xOZmx+RA==", + "version": "1.7.4", + "resolved": "https://registry.npmjs.org/axios/-/axios-1.7.4.tgz", + "integrity": "sha512-DukmaFRnY6AzAALSH4J2M3k6PkaC+MfaAGdEERRWcC9q3/TWQwLpHR8ZRLKTdQ3aBDL64EdluRDjJqKw+BPZEw==", + "license": "MIT", "dependencies": { - "follow-redirects": "^1.15.4", + "follow-redirects": "^1.15.6", "form-data": "^4.0.0", "proxy-from-env": "^1.1.0" } diff --git a/package.json b/package.json index 6134399..d632ff7 100644 --- a/package.json +++ b/package.json @@ -24,7 +24,7 @@ "dependencies": { "@js-joda/core": "^5.6.1", "@js-joda/timezone": "^2.18.2", - "axios": "~1.6.7", + "axios": "~1.7.4", "https-proxy-agent": "^7.0.3", "is-base64": "^1.1.0", "jsonwebtoken": "^9.0.2",