From 28e9ddfc72c7831d49155c1bc95fea8a2b22e5ce Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 15 Aug 2024 09:12:53 +0000 Subject: [PATCH] fix: package.json & package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-AXIOS-7361793 --- package-lock.json | 13 +++++++------ package.json | 2 +- 2 files changed, 8 insertions(+), 7 deletions(-) diff --git a/package-lock.json b/package-lock.json index 610dfe2..45d1b2b 100644 --- a/package-lock.json +++ b/package-lock.json @@ -1,15 +1,15 @@ { "name": "@amsame/kinde-auth-nestjs", - "version": "1.3.0", + "version": "1.3.1", "lockfileVersion": 3, "requires": true, "packages": { "": { "name": "@amsame/kinde-auth-nestjs", - "version": "1.3.0", + "version": "1.3.1", "license": "MIT", "dependencies": { - "axios": "^1.7.3", + "axios": "^1.7.4", "cookie": "^0.6.0", "jsonwebtoken": "^9.0.2", "jwks-rsa": "^3.1.0", @@ -2260,9 +2260,10 @@ } }, "node_modules/axios": { - "version": "1.7.3", - "resolved": "https://registry.npmjs.org/axios/-/axios-1.7.3.tgz", - "integrity": "sha512-Ar7ND9pU99eJ9GpoGQKhKf58GpUOgnzuaB7ueNQ5BMi0p+LZ5oaEnfF999fAArcTIBwXTCHAmGcHOZJaWPq9Nw==", + "version": "1.7.4", + "resolved": "https://registry.npmjs.org/axios/-/axios-1.7.4.tgz", + "integrity": "sha512-DukmaFRnY6AzAALSH4J2M3k6PkaC+MfaAGdEERRWcC9q3/TWQwLpHR8ZRLKTdQ3aBDL64EdluRDjJqKw+BPZEw==", + "license": "MIT", "dependencies": { "follow-redirects": "^1.15.6", "form-data": "^4.0.0", diff --git a/package.json b/package.json index 196f25b..413d769 100644 --- a/package.json +++ b/package.json @@ -42,7 +42,7 @@ "postpack": "pinst --enable" }, "dependencies": { - "axios": "^1.7.3", + "axios": "^1.7.4", "cookie": "^0.6.0", "jsonwebtoken": "^9.0.2", "jwks-rsa": "^3.1.0",