From 0d2035cab5b2de6b80538007c9cede0e038cfbfe Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 18 Jun 2024 06:56:18 +0000 Subject: [PATCH] fix: package.json & yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-WS-7266574 --- package.json | 2 +- yarn.lock | 8 ++++---- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/package.json b/package.json index 666a4089..f008dda5 100644 --- a/package.json +++ b/package.json @@ -64,7 +64,7 @@ "path-browserify": "^1.0.1", "typed-emitter": "^2.1.0", "util": "^0.12.4", - "ws": "^7.4.6" + "ws": "^8.17.1" }, "devDependencies": { "@babel/core": "^7.16.0", diff --git a/yarn.lock b/yarn.lock index 6abb4b05..4b2e5e16 100644 --- a/yarn.lock +++ b/yarn.lock @@ -6310,10 +6310,10 @@ ws@^5.1.0: dependencies: async-limiter "~1.0.0" -ws@^7.4.6: - version "7.5.9" - resolved "https://registry.yarnpkg.com/ws/-/ws-7.5.9.tgz#54fa7db29f4c7cec68b1ddd3a89de099942bb591" - integrity sha512-F+P9Jil7UiSKSkppIiD94dN07AwvFixvLIj1Og1Rl9GGMuNipJnV9JzjD6XuqmAeiswGvUmNLjr5cFuXwNS77Q== +ws@^8.17.1: + version "8.17.1" + resolved "https://registry.yarnpkg.com/ws/-/ws-8.17.1.tgz#9293da530bb548febc95371d90f9c878727d919b" + integrity sha512-6XQFvXTkbfUOZOKKILFG1PDK2NDQs4azKQl26T0YS5CxqWLgXajbPZ+h4gZekJyRqFU8pvnbAbbs/3TgRPy+GQ== xmlbuilder@^13.0.2: version "13.0.2"