From acf5e6481fe158e7ef2a9f21db7556c6540af880 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 22 Feb 2021 22:17:19 +0000 Subject: [PATCH] fix: package.json & package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-LODASH-1018905 - https://snyk.io/vuln/SNYK-JS-LODASH-1040724 --- package-lock.json | 13 ++++++++++--- package.json | 2 +- 2 files changed, 11 insertions(+), 4 deletions(-) diff --git a/package-lock.json b/package-lock.json index e09d679..439a40a 100644 --- a/package-lock.json +++ b/package-lock.json @@ -70,6 +70,13 @@ "moment": "2.29.1", "object-sizeof": "1.6.1", "uuid": "8.3.2" + }, + "dependencies": { + "lodash": { + "version": "4.17.20", + "resolved": "https://registry.npmjs.org/lodash/-/lodash-4.17.20.tgz", + "integrity": "sha512-PlhdFcillOINfeV7Ni6oF1TAEayyZBoZ8bcshTHqOYJYlrqzRK5hagpagky5o4HfCzzd1TRkXPMFq6cKk9rGmA==" + } } }, "@runnerty/module-core": { @@ -712,9 +719,9 @@ } }, "lodash": { - "version": "4.17.20", - "resolved": "https://registry.npmjs.org/lodash/-/lodash-4.17.20.tgz", - "integrity": "sha512-PlhdFcillOINfeV7Ni6oF1TAEayyZBoZ8bcshTHqOYJYlrqzRK5hagpagky5o4HfCzzd1TRkXPMFq6cKk9rGmA==" + "version": "4.17.21", + "resolved": "https://registry.npmjs.org/lodash/-/lodash-4.17.21.tgz", + "integrity": "sha512-v2kDEe57lecTulaDIuNTPy3Ry4gLGJ6Z1O3vE1krgXZNrsQ+LFTGHVxVjcXPs17LhbZVGedAJv8XZ1tvj5FvSg==" }, "lru-cache": { "version": "6.0.0", diff --git a/package.json b/package.json index 3d5d24f..59a7c70 100644 --- a/package.json +++ b/package.json @@ -27,7 +27,7 @@ "bytes": "~3.1.0", "fs-extra": "~9.1.0", "glob": "~7.1.6", - "lodash": "~4.17.20" + "lodash": "~4.17.21" }, "devDependencies": { "eslint": "^7.19.0",