From f25b800bf82eed667f568b72b658ce86d40a2835 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 17 Sep 2024 18:27:21 +0000 Subject: [PATCH] fix: package.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://dev.snyk.io/vuln/SNYK-JS-BODYPARSER-7926860 - https://dev.snyk.io/vuln/SNYK-JS-EXPRESS-7926867 - https://dev.snyk.io/vuln/SNYK-JS-HANDLEBARS-1056767 - https://dev.snyk.io/vuln/SNYK-JS-HANDLEBARS-1279029 - https://dev.snyk.io/vuln/SNYK-JS-HANDLEBARS-173692 - https://dev.snyk.io/vuln/SNYK-JS-HANDLEBARS-174183 - https://dev.snyk.io/vuln/SNYK-JS-HANDLEBARS-469063 - https://dev.snyk.io/vuln/SNYK-JS-HANDLEBARS-480388 - https://dev.snyk.io/vuln/SNYK-JS-HANDLEBARS-534478 - https://dev.snyk.io/vuln/SNYK-JS-HANDLEBARS-534988 - https://dev.snyk.io/vuln/SNYK-JS-HANDLEBARS-567742 - https://dev.snyk.io/vuln/SNYK-JS-HOSTEDGITINFO-1088355 - https://dev.snyk.io/vuln/SNYK-JS-JSYAML-173999 - https://dev.snyk.io/vuln/SNYK-JS-JSYAML-174129 - https://dev.snyk.io/vuln/SNYK-JS-MINIMIST-2429795 - https://dev.snyk.io/vuln/SNYK-JS-MINIMIST-559764 - https://dev.snyk.io/vuln/SNYK-JS-SEMVER-3247795 - https://dev.snyk.io/vuln/SNYK-JS-SEND-7926862 - https://dev.snyk.io/vuln/SNYK-JS-SERVESTATIC-7926865 - https://dev.snyk.io/vuln/SNYK-JS-UGLIFYJS-1727251 - https://dev.snyk.io/vuln/SNYK-JS-Y18N-1021887 --- package.json | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/package.json b/package.json index 2dc4f94a6..c761f1bdb 100644 --- a/package.json +++ b/package.json @@ -20,7 +20,7 @@ "dependencies": { "@snyk/nodejs-runtime-agent": "^1.31.0", "adm-zip": "0.4.11", - "body-parser": "1.9.0", + "body-parser": "1.20.3", "cfenv": "^1.0.4", "consolidate": "0.14.5", "cookie-parser": "1.3.3", @@ -29,7 +29,7 @@ "ejs": "1.0.0", "ejs-locals": "1.0.2", "errorhandler": "1.2.0", - "express": "4.12.4", + "express": "4.21.0", "express-fileupload": "0.0.5", "file-type": "^8.1.0", "humanize-ms": "1.0.1", @@ -45,7 +45,7 @@ "optional": "^0.1.3", "st": "0.2.4", "stream-buffers": "^3.0.1", - "tap": "^5.7.0", + "tap": "^18.0.0", "snyk": "^1.290.2" }, "devDependencies": {