Skip to content

Commit

Permalink
[eng tools] upgrade handlebars version to 4.7.7 (#14878)
Browse files Browse the repository at this point in the history
* [eng tools] upgrade handlebars version to 4.7.7

to address CVE-2021-23369

  https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-23369

* update package-lock.json
  • Loading branch information
jeremymeng authored Apr 16, 2021
1 parent 932f518 commit d32f748
Show file tree
Hide file tree
Showing 2 changed files with 7 additions and 7 deletions.
12 changes: 6 additions & 6 deletions eng/tools/analyze-deps/package-lock.json

Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.

2 changes: 1 addition & 1 deletion eng/tools/analyze-deps/package.json
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@
"license": "ISC",
"dependencies": {
"argparse": "^2.0.1",
"handlebars": "^4.7.6",
"handlebars": "^4.7.7",
"jju": "^1.4.0",
"js-yaml": "^4.0.0",
"semver": "^7.3.4",
Expand Down

0 comments on commit d32f748

Please sign in to comment.