From f227ad7d9b2b7213ed494a98ee5ca01e24c65b35 Mon Sep 17 00:00:00 2001 From: ram grandhi Date: Thu, 4 Jan 2024 20:22:03 +0100 Subject: [PATCH] fix: package.json & yarn.lock to reduce vulnerabilities (#117) The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-AXIOS-6124857 Co-authored-by: snyk-bot --- package.json | 4 ++-- yarn.lock | 8 ++++---- 2 files changed, 6 insertions(+), 6 deletions(-) diff --git a/package.json b/package.json index 9acabf2..d3eee0c 100644 --- a/package.json +++ b/package.json @@ -42,7 +42,7 @@ "serverless" ], "devDependencies": { - "axios": "^1.6.0", + "axios": "^1.6.3", "babel-eslint": "^10.1.0", "chalk": "^4.1.0", "codecov": "^3.8.1", @@ -61,7 +61,7 @@ "split-ca": "^1.0.1" }, "dependencies": { - "axios": "^1.6.0", + "axios": "^1.6.3", "form-data": "^4.0.0", "fs": "^0.0.2", "https": "^1.0.0", diff --git a/yarn.lock b/yarn.lock index c2d4523..74060a7 100644 --- a/yarn.lock +++ b/yarn.lock @@ -1631,10 +1631,10 @@ axios@^0.19.2: dependencies: follow-redirects "1.5.10" -axios@^1.6.0: - version "1.6.0" - resolved "https://registry.yarnpkg.com/axios/-/axios-1.6.0.tgz#f1e5292f26b2fd5c2e66876adc5b06cdbd7d2102" - integrity sha512-EZ1DYihju9pwVB+jg67ogm+Tmqc6JmhamRN6I4Zt8DfZu5lbcQGw3ozH9lFejSJgs/ibaef3A9PMXPLeefFGJg== +axios@^1.6.3: + version "1.6.3" + resolved "https://registry.yarnpkg.com/axios/-/axios-1.6.3.tgz#7f50f23b3aa246eff43c54834272346c396613f4" + integrity sha512-fWyNdeawGam70jXSVlKl+SUNVcL6j6W79CuSIPfi6HnDUmSCH6gyUys/HrqHeA/wU0Az41rRgean494d0Jb+ww== dependencies: follow-redirects "^1.15.0" form-data "^4.0.0"