From 34fd04cd4598e3e4006b6df29326d0e05d10ade4 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 26 Sep 2022 09:14:47 +0000 Subject: [PATCH] fix: package.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-EXPRESSJWT-575022 - https://snyk.io/vuln/SNYK-JS-GOT-2932019 - https://snyk.io/vuln/SNYK-JS-MONGOOSE-2961688 - https://snyk.io/vuln/SNYK-JS-PASSPORT-2840631 - https://snyk.io/vuln/SNYK-JS-SWAGGERUIDIST-2314884 --- package.json | 10 +++++----- 1 file changed, 5 insertions(+), 5 deletions(-) diff --git a/package.json b/package.json index 105250ce3d..fb96cf2ced 100644 --- a/package.json +++ b/package.json @@ -33,7 +33,7 @@ "events": "^3.0.0", "express": "^4.16.3", "express-async-handler": "^1.1.3", - "express-jwt": "^5.3.1", + "express-jwt": "^6.0.0", "express-validation": "^1.0.2", "formidable": "^3.1.3", "helmet": "^4.6.0", @@ -41,14 +41,14 @@ "joi": "^17.4.2", "jsonwebtoken": "^8.2.1", "method-override": "^3.0.0", - "mongoose": "^6.0.13", + "mongoose": "^6.4.6", "morgan": "^1.9.1", - "nodemon": "^2.0.15", - "passport": "^0.4.0", + "nodemon": "^2.0.17", + "passport": "^0.6.0", "passport-jwt": "^4.0.0", "passport-local": "^1.0.0", "rxjs": "^7.4.0", - "swagger-ui-express": "^4.1.6", + "swagger-ui-express": "^4.2.0", "zone.js": "~0.11.4" }, "devDependencies": {