From 53fdb0ffccf2b41240b913533de984e3a4981b0f Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 6 Jun 2024 07:48:27 +0000 Subject: [PATCH] fix: package.json & package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-EXPRESS-6474509 --- package-lock.json | 9 +++++---- package.json | 2 +- 2 files changed, 6 insertions(+), 5 deletions(-) diff --git a/package-lock.json b/package-lock.json index 3338ff2..7713473 100644 --- a/package-lock.json +++ b/package-lock.json @@ -20,7 +20,7 @@ "cookie-parser": "^1.4.6", "cors": "^2.8.5", "dotenv": "^16.4.4", - "express": "^4.18.2", + "express": "^4.19.2", "express-validator": "^7.0.1", "jsonwebtoken": "^9.0.2", "morgan": "^1.10.0", @@ -830,9 +830,10 @@ } }, "node_modules/express": { - "version": "4.19.1", - "resolved": "https://registry.npmjs.org/express/-/express-4.19.1.tgz", - "integrity": "sha512-K4w1/Bp7y8iSiVObmCrtq8Cs79XjJc/RU2YYkZQ7wpUu5ZyZ7MtPHkqoMz4pf+mgXfNvo2qft8D9OnrH2ABk9w==", + "version": "4.19.2", + "resolved": "https://registry.npmjs.org/express/-/express-4.19.2.tgz", + "integrity": "sha512-5T6nhjsT+EOMzuck8JjBHARTHfMht0POzlA60WV2pMD3gyXw2LZnZ+ueGdNxG+0calOJcWKbpFcuzLZ91YWq9Q==", + "license": "MIT", "dependencies": { "accepts": "~1.3.8", "array-flatten": "1.1.1", diff --git a/package.json b/package.json index 9bc7b00..145f592 100644 --- a/package.json +++ b/package.json @@ -31,7 +31,7 @@ "cookie-parser": "^1.4.6", "cors": "^2.8.5", "dotenv": "^16.4.4", - "express": "^4.18.2", + "express": "^4.19.2", "express-validator": "^7.0.1", "jsonwebtoken": "^9.0.2", "morgan": "^1.10.0",