From 2e74f086af5256fa81043313d6b0a40044c7f3dc Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 18 Sep 2024 00:01:44 +0000 Subject: [PATCH] fix: upgrade multiple dependencies with Snyk Snyk has created this PR to upgrade: - @sigstore/bundle from 2.2.0 to 2.3.2. See this package in npm: https://www.npmjs.com/package/@sigstore/bundle - nock from 13.5.1 to 13.5.5. See this package in npm: https://www.npmjs.com/package/nock - @sigstore/mock from 0.6.5 to 0.7.5. See this package in npm: https://www.npmjs.com/package/@sigstore/mock - make-fetch-happen from 13.0.0 to 13.0.1. See this package in npm: https://www.npmjs.com/package/make-fetch-happen - @sigstore/sign from 2.2.3 to 2.3.2. See this package in npm: https://www.npmjs.com/package/@sigstore/sign See this project in Snyk: https://app.snyk.io/org/cachiman/project/593e2294-46a2-4fe3-be43-c6c622b0fdec?utm_source=github&utm_medium=referral&page=upgrade-pr --- packages/attest/package.json | 10 +++++----- 1 file changed, 5 insertions(+), 5 deletions(-) diff --git a/packages/attest/package.json b/packages/attest/package.json index 82d9cd49e3..4428984548 100644 --- a/packages/attest/package.json +++ b/packages/attest/package.json @@ -35,15 +35,15 @@ "url": "https://github.com/actions/toolkit/issues" }, "devDependencies": { - "@sigstore/mock": "^0.6.5", + "@sigstore/mock": "^0.7.5", "@sigstore/rekor-types": "^2.0.0", "@types/make-fetch-happen": "^10.0.4", - "nock": "^13.5.1" + "nock": "^13.5.5" }, "dependencies": { "@actions/github": "^6.0.0", - "@sigstore/bundle": "^2.2.0", - "@sigstore/sign": "^2.2.3", - "make-fetch-happen": "^13.0.0" + "@sigstore/bundle": "^2.3.2", + "@sigstore/sign": "^2.3.2", + "make-fetch-happen": "^13.0.1" } }