From fe54f4f30efeb6286a13c1e4ec54cedf8acc1e2c Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 27 Jan 2022 04:28:11 +0000 Subject: [PATCH] fix: package.json & package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-SWAGGERUIDIST-2314884 --- package-lock.json | 14 +++++++------- package.json | 2 +- 2 files changed, 8 insertions(+), 8 deletions(-) diff --git a/package-lock.json b/package-lock.json index 6f7e7dd6..f9942766 100644 --- a/package-lock.json +++ b/package-lock.json @@ -8912,16 +8912,16 @@ "integrity": "sha1-U10EXOa2Nj+kARcIRimZXp3zJMc=" }, "swagger-ui-dist": { - "version": "3.25.0", - "resolved": "https://registry.npmjs.org/swagger-ui-dist/-/swagger-ui-dist-3.25.0.tgz", - "integrity": "sha512-vwvJPPbdooTvDwLGzjIXinOXizDJJ6U1hxnJL3y6U3aL1d2MSXDmKg2139XaLBhsVZdnQJV2bOkX4reB+RXamg==" + "version": "4.3.0", + "resolved": "https://registry.npmjs.org/swagger-ui-dist/-/swagger-ui-dist-4.3.0.tgz", + "integrity": "sha512-RY1c3y6uuHBTu4nZPXcvrv9cnKj6MbaNMZK1NDyGHrUbQOO5WmkuMo6wi93WFzSURJk0SboD1X9nM5CtQAu2Og==" }, "swagger-ui-express": { - "version": "4.1.3", - "resolved": "https://registry.npmjs.org/swagger-ui-express/-/swagger-ui-express-4.1.3.tgz", - "integrity": "sha512-f8SEn4YWkKh/HGK0ZjuA2VqA78i1aY6OIa5cqYNgOkBobfHV6Mz4dphQW/us8HYhEFfbENq329PyfIonWfzFrw==", + "version": "4.2.0", + "resolved": "https://registry.npmjs.org/swagger-ui-express/-/swagger-ui-express-4.2.0.tgz", + "integrity": "sha512-znrHTwh9UpvsjqgWopA4noIet7mi7UGuIYZ465YfUDKQ5Dpas0jxnkfUKCo+0aB17YCBv26AhIjiQYDV4uvJFA==", "requires": { - "swagger-ui-dist": "^3.18.1" + "swagger-ui-dist": ">3.52.5" } }, "table": { diff --git a/package.json b/package.json index 79065802..e0524022 100644 --- a/package.json +++ b/package.json @@ -74,7 +74,7 @@ "pg-native": "^3.0.0", "sequelize": "^5.8.7", "stripe": "^8.195.0", - "swagger-ui-express": "^4.0.6", + "swagger-ui-express": "^4.2.0", "tc-core-library-js": "github:appirio-tech/tc-core-library-js#v2.6.6", "traverse": "^0.6.6", "urlencode": "^1.1.0",