From dbdb75da36470a804d8d89f95787472ca82eb424 Mon Sep 17 00:00:00 2001 From: SuZhou-Joe Date: Wed, 26 Feb 2025 14:32:22 +0800 Subject: [PATCH] feat: fix cve (#1733) Signed-off-by: SuZhou-Joe (cherry picked from commit f28596e0cd3e250f46ca19e6afae3978897224a3) --- package-lock.json | 22 ++++++++++++++-------- package.json | 3 ++- 2 files changed, 16 insertions(+), 9 deletions(-) diff --git a/package-lock.json b/package-lock.json index 7ef884012..b8a0fc4d2 100644 --- a/package-lock.json +++ b/package-lock.json @@ -2905,10 +2905,16 @@ "dev": true }, "node_modules/nanoid": { - "version": "3.3.3", - "resolved": "https://registry.npmmirror.com/nanoid/-/nanoid-3.3.3.tgz", - "integrity": "sha512-p1sjXuopFs0xg+fPASzQ28agW1oHD7xDsd9Xkf3T15H3c/cifrFHVwrh74PdoklAPi+i7MdRsE47vm2r6JoB+w==", - "dev": true, + "version": "3.3.8", + "resolved": "https://registry.npmjs.org/nanoid/-/nanoid-3.3.8.tgz", + "integrity": "sha512-WNLf5Sd8oZxOm+TzppcYk8gVOgP+l58xNy58D0nbUnOxOWRWvlcCV4kUF7ltmI6PsrLl/BgKEyS4mqsGChFN0w==", + "dev": true, + "funding": [ + { + "type": "github", + "url": "https://github.com/sponsors/ai" + } + ], "peer": true, "bin": { "nanoid": "bin/nanoid.cjs" @@ -6184,7 +6190,7 @@ "log-symbols": "4.1.0", "minimatch": "5.0.1", "ms": "2.1.3", - "nanoid": "3.3.3", + "nanoid": "^3.3.8", "serialize-javascript": "6.0.0", "strip-json-comments": "3.1.1", "supports-color": "8.1.1", @@ -6302,9 +6308,9 @@ "dev": true }, "nanoid": { - "version": "3.3.3", - "resolved": "https://registry.npmmirror.com/nanoid/-/nanoid-3.3.3.tgz", - "integrity": "sha512-p1sjXuopFs0xg+fPASzQ28agW1oHD7xDsd9Xkf3T15H3c/cifrFHVwrh74PdoklAPi+i7MdRsE47vm2r6JoB+w==", + "version": "3.3.8", + "resolved": "https://registry.npmjs.org/nanoid/-/nanoid-3.3.8.tgz", + "integrity": "sha512-WNLf5Sd8oZxOm+TzppcYk8gVOgP+l58xNy58D0nbUnOxOWRWvlcCV4kUF7ltmI6PsrLl/BgKEyS4mqsGChFN0w==", "dev": true, "peer": true }, diff --git a/package.json b/package.json index f3f986e2f..1b1b1d564 100644 --- a/package.json +++ b/package.json @@ -70,6 +70,7 @@ "overrides": { "tough-cookie": "^4.1.3", "optionator": "^0.9.3", - "cross-spawn": "^7.0.5" + "cross-spawn": "^7.0.5", + "nanoid": "^3.3.8" } }