From f82ba2682777a7ab1d0c779964b0aeb8f34dedf6 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 8 Aug 2024 06:01:42 +0000 Subject: [PATCH 1/2] fix: upgrade react-router-dom from 6.24.1 to 6.25.1 Snyk has created this PR to upgrade react-router-dom from 6.24.1 to 6.25.1. See this package in npm: react-router-dom See this project in Snyk: https://app.snyk.io/org/clarin-eric/project/7e36aabb-988e-4f86-97cd-167d3eb49c71?utm_source=github&utm_medium=referral&page=upgrade-pr --- webui/package-lock.json | 26 +++++++++++++------------- webui/package.json | 2 +- 2 files changed, 14 insertions(+), 14 deletions(-) diff --git a/webui/package-lock.json b/webui/package-lock.json index 7e0053d4..98e1385c 100644 --- a/webui/package-lock.json +++ b/webui/package-lock.json @@ -16,7 +16,7 @@ "react-markdown": "^9.0.1", "react-modal": "^3.16.1", "react-redux": "^9.1.2", - "react-router-dom": "^6.24.1", + "react-router-dom": "^6.25.1", "react-router-hash-link": "^2.4.3", "react-select": "^5.8.0", "remark-gfm": "^4.0.0", @@ -2793,9 +2793,9 @@ } }, "node_modules/@remix-run/router": { - "version": "1.17.1", - "resolved": "https://registry.npmjs.org/@remix-run/router/-/router-1.17.1.tgz", - "integrity": "sha512-mCOMec4BKd6BRGBZeSnGiIgwsbLGp3yhVqAD8H+PxiRNEHgDpZb8J1TnrSDlg97t0ySKMQJTHCWBCmBpSmkF6Q==", + "version": "1.18.0", + "resolved": "https://registry.npmjs.org/@remix-run/router/-/router-1.18.0.tgz", + "integrity": "sha512-L3jkqmqoSVBVKHfpGZmLrex0lxR5SucGA0sUfFzGctehw+S/ggL9L/0NnC5mw6P8HUWpFZ3nQw3cRApjjWx9Sw==", "license": "MIT", "engines": { "node": ">=14.0.0" @@ -10213,12 +10213,12 @@ } }, "node_modules/react-router": { - "version": "6.24.1", - "resolved": "https://registry.npmjs.org/react-router/-/react-router-6.24.1.tgz", - "integrity": "sha512-PTXFXGK2pyXpHzVo3rR9H7ip4lSPZZc0bHG5CARmj65fTT6qG7sTngmb6lcYu1gf3y/8KxORoy9yn59pGpCnpg==", + "version": "6.25.1", + "resolved": "https://registry.npmjs.org/react-router/-/react-router-6.25.1.tgz", + "integrity": "sha512-u8ELFr5Z6g02nUtpPAggP73Jigj1mRePSwhS/2nkTrlPU5yEkH1vYzWNyvSnSzeeE2DNqWdH+P8OhIh9wuXhTw==", "license": "MIT", "dependencies": { - "@remix-run/router": "1.17.1" + "@remix-run/router": "1.18.0" }, "engines": { "node": ">=14.0.0" @@ -10228,13 +10228,13 @@ } }, "node_modules/react-router-dom": { - "version": "6.24.1", - "resolved": "https://registry.npmjs.org/react-router-dom/-/react-router-dom-6.24.1.tgz", - "integrity": "sha512-U19KtXqooqw967Vw0Qcn5cOvrX5Ejo9ORmOtJMzYWtCT4/WOfFLIZGGsVLxcd9UkBO0mSTZtXqhZBsWlHr7+Sg==", + "version": "6.25.1", + "resolved": "https://registry.npmjs.org/react-router-dom/-/react-router-dom-6.25.1.tgz", + "integrity": "sha512-0tUDpbFvk35iv+N89dWNrJp+afLgd+y4VtorJZuOCXK0kkCWjEvb3vTJM++SYvMEpbVwXKf3FjeVveVEb6JpDQ==", "license": "MIT", "dependencies": { - "@remix-run/router": "1.17.1", - "react-router": "6.24.1" + "@remix-run/router": "1.18.0", + "react-router": "6.25.1" }, "engines": { "node": ">=14.0.0" diff --git a/webui/package.json b/webui/package.json index 64d52062..54fdb64d 100644 --- a/webui/package.json +++ b/webui/package.json @@ -43,7 +43,7 @@ "react-markdown": "^9.0.1", "react-modal": "^3.16.1", "react-redux": "^9.1.2", - "react-router-dom": "^6.24.1", + "react-router-dom": "^6.25.1", "react-router-hash-link": "^2.4.3", "react-select": "^5.8.0", "remark-gfm": "^4.0.0", From 50f22a2413465a580ed89f0acd701b5fefd3cc9a Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 15 Aug 2024 03:31:36 +0000 Subject: [PATCH 2/2] fix: webui/package.json & webui/package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-AXIOS-7361793 --- webui/package-lock.json | 8 ++++---- webui/package.json | 2 +- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/webui/package-lock.json b/webui/package-lock.json index 7e0053d4..a2a7b0ea 100644 --- a/webui/package-lock.json +++ b/webui/package-lock.json @@ -7,7 +7,7 @@ "name": "switchboard-webui", "dependencies": { "@reduxjs/toolkit": "^2.2.6", - "axios": "^1.7.2", + "axios": "^1.7.4", "core-js": "^3.37.1", "history": "^5.3.0", "prop-types": "^15.8.1", @@ -3694,9 +3694,9 @@ "license": "MIT" }, "node_modules/axios": { - "version": "1.7.2", - "resolved": "https://registry.npmjs.org/axios/-/axios-1.7.2.tgz", - "integrity": "sha512-2A8QhOMrbomlDuiLeK9XibIBzuHeRcqqNOHp0Cyp5EoJ1IFDh+XZH3A6BkXtv0K4gFGCI0Y4BM7B1wOEi0Rmgw==", + "version": "1.7.4", + "resolved": "https://registry.npmjs.org/axios/-/axios-1.7.4.tgz", + "integrity": "sha512-DukmaFRnY6AzAALSH4J2M3k6PkaC+MfaAGdEERRWcC9q3/TWQwLpHR8ZRLKTdQ3aBDL64EdluRDjJqKw+BPZEw==", "license": "MIT", "dependencies": { "follow-redirects": "^1.15.6", diff --git a/webui/package.json b/webui/package.json index 64d52062..1a706370 100644 --- a/webui/package.json +++ b/webui/package.json @@ -34,7 +34,7 @@ }, "dependencies": { "@reduxjs/toolkit": "^2.2.6", - "axios": "^1.7.2", + "axios": "^1.7.4", "core-js": "^3.37.1", "history": "^5.3.0", "prop-types": "^15.8.1",