From 377ee6d8288b01fbe34032bb48b44368288c8730 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 6 Apr 2022 06:03:51 +0000 Subject: [PATCH] fix: goof-yarn/package.json & goof-yarn/yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-MOMENT-2440688 --- goof-yarn/package.json | 2 +- goof-yarn/yarn.lock | 8 ++++---- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/goof-yarn/package.json b/goof-yarn/package.json index 2300e7e8a..6fed1c588 100644 --- a/goof-yarn/package.json +++ b/goof-yarn/package.json @@ -31,7 +31,7 @@ "jquery": "^2.2.4", "marked": "0.3.5", "method-override": "latest", - "moment": "2.15.1", + "moment": "2.29.2", "mongoose": "4.2.4", "morgan": "latest", "ms": "^0.7.1", diff --git a/goof-yarn/yarn.lock b/goof-yarn/yarn.lock index 0d71fe809..7e44e3d6b 100644 --- a/goof-yarn/yarn.lock +++ b/goof-yarn/yarn.lock @@ -2184,10 +2184,10 @@ module-deps@^4.0.8: through2 "^2.0.0" xtend "^4.0.0" -moment@2.15.1: - version "2.15.1" - resolved "https://registry.yarnpkg.com/moment/-/moment-2.15.1.tgz#e979c2a29e22888e60f396f2220a6118f85cd94c" - integrity sha1-6XnCop4iiI5g85byIgphGPhc2Uw= +moment@2.29.2: + version "2.29.2" + resolved "https://registry.yarnpkg.com/moment/-/moment-2.29.2.tgz#00910c60b20843bcba52d37d58c628b47b1f20e4" + integrity sha512-UgzG4rvxYpN15jgCmVJwac49h9ly9NurikMWGPdVxm8GZD6XjkKPxDTjQQ43gtGgnV3X0cAyWDdP2Wexoquifg== mongodb-core@1.2.19: version "1.2.19"