From cd9a45f7efa61fd2805e75966fe8a8cf2cb3046c Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sat, 22 Jul 2023 03:23:25 +0000 Subject: [PATCH] fix: src/webui/frontend/package.json & src/webui/frontend/yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-MOMENT-2440688 - https://snyk.io/vuln/SNYK-JS-MOMENT-2944238 --- src/webui/frontend/package.json | 2 +- src/webui/frontend/yarn.lock | 7 ++++++- 2 files changed, 7 insertions(+), 2 deletions(-) diff --git a/src/webui/frontend/package.json b/src/webui/frontend/package.json index c3e861c20..6a454ce83 100644 --- a/src/webui/frontend/package.json +++ b/src/webui/frontend/package.json @@ -18,7 +18,7 @@ "jwt-decode": "^3.0.0-beta.2", "lodash": "^4.17.20", "lodash-decorators": "^6.0.0", - "moment": "^2.29.0", + "moment": "^2.29.4", "path-to-regexp": "^6.1.0", "rc-drawer": "^4.1.0", "react": "^16.13.1", diff --git a/src/webui/frontend/yarn.lock b/src/webui/frontend/yarn.lock index a6a8d3fb6..3edb9d091 100644 --- a/src/webui/frontend/yarn.lock +++ b/src/webui/frontend/yarn.lock @@ -7883,11 +7883,16 @@ mkdirp@~1.0.4: resolved "https://registry.yarnpkg.com/mkdirp/-/mkdirp-1.0.4.tgz#3eb5ed62622756d79a5f0e2a221dfebad75c2f7e" integrity sha512-vVqVZQyf3WLx2Shd0qJ9xuvqgAyKPLAiqITEtqW0oIUjzo3PePDd6fW9iFz30ef7Ysp/oiWqbhszeGWW2T6Gzw== -moment@^2.24.0, moment@^2.25.3, moment@^2.29.0: +moment@^2.24.0, moment@^2.25.3: version "2.29.0" resolved "https://registry.yarnpkg.com/moment/-/moment-2.29.0.tgz#fcbef955844d91deb55438613ddcec56e86a3425" integrity sha512-z6IJ5HXYiuxvFTI6eiQ9dm77uE0gyy1yXNApVHqTcnIKfY9tIwEjlzsZ6u1LQXvVgKeTnv9Xm7NDvJ7lso3MtA== +moment@^2.29.4: + version "2.29.4" + resolved "https://registry.yarnpkg.com/moment/-/moment-2.29.4.tgz#3dbe052889fe7c1b2ed966fcb3a77328964ef108" + integrity sha512-5LC9SOxjSc2HF6vO2CyuTDNivEdoz2IvyJJGj6X8DJ0eFyfszE0QiEd+iXmBvUP3WHxSjFH/vIsA0EN00cgr8w== + move-concurrently@^1.0.1: version "1.0.1" resolved "https://registry.yarnpkg.com/move-concurrently/-/move-concurrently-1.0.1.tgz#be2c005fda32e0b29af1f05d7c4b33214c701f92"