From 97b0cc7897124951460055d40fb5249dea09f15e Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 17 Nov 2023 14:05:43 +0000 Subject: [PATCH] fix: package.json & yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-TINYMCE-6062167 --- package.json | 2 +- yarn.lock | 8 ++++---- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/package.json b/package.json index 4442e5f2165..c65af837c2e 100644 --- a/package.json +++ b/package.json @@ -51,7 +51,7 @@ "jquery-ui-touch-punch": "^0.2.3", "nestedSortable": "^1.3.4", "spectrum-colorpicker2": "^2.0.5", - "tinymce": "^5.1.6", + "tinymce": "^5.10.9", "twig": "^1.12.0" }, "browserslist": [ diff --git a/yarn.lock b/yarn.lock index a3642dd3530..bedc85d2400 100644 --- a/yarn.lock +++ b/yarn.lock @@ -8613,10 +8613,10 @@ timsort@^0.3.0: resolved "https://registry.yarnpkg.com/timsort/-/timsort-0.3.0.tgz#405411a8e7e6339fe64db9a234de11dc31e02bd4" integrity sha1-QFQRqOfmM5/mTbmiNN4R3DHgK9Q= -tinymce@^5.1.6: - version "5.8.1" - resolved "https://registry.yarnpkg.com/tinymce/-/tinymce-5.8.1.tgz#f6ace70e47cf6b5b0a63f52cf38e4ae04a35ba58" - integrity sha512-1zGXdZplWQafstlC7sri0ttCgMagsiXDc9N3I8JNrPOsWAeTfq4AAJWZoxsQBYn8gYcuPu/WzMKG5SoJjxI1VA== +tinymce@^5.10.9: + version "5.10.9" + resolved "https://registry.yarnpkg.com/tinymce/-/tinymce-5.10.9.tgz#1dfacb3231c71a688d90ff44a0b3f2e91b3b9edf" + integrity sha512-5bkrors87X9LhYX2xq8GgPHrIgJYHl87YNs+kBcjQ5I3CiUgzo/vFcGvT3MZQ9QHsEeYMhYO6a5CLGGffR8hMg== tmp@^0.0.33: version "0.0.33"