From c8449d31db01dffdbe8f8411087437245888e7f9 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Janne=20Kiiskil=C3=A4?= Date: Tue, 2 Mar 2021 20:12:04 +0200 Subject: [PATCH] fix: package.json - pathval to 1.1.1 (CVE-2020-7751) (#1377) * package.json - pathval to 1.1.1 (CVE-2020-7751) Update pathval to version 1.1.1 to include fix for CVE-2020-7751. * package-lock - pathval v1.1.1 update Update the package-lock as well, this one needs updating, too. --- package-lock.json | 6 +++--- package.json | 2 +- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/package-lock.json b/package-lock.json index 089a510b5..fff80357a 100644 --- a/package-lock.json +++ b/package-lock.json @@ -5232,9 +5232,9 @@ } }, "pathval": { - "version": "1.1.0", - "resolved": "https://registry.npmjs.org/pathval/-/pathval-1.1.0.tgz", - "integrity": "sha1-uULm1L3mUwBe9rcTYd74cn0GReA=" + "version": "1.1.1", + "resolved": "https://registry.npmjs.org/pathval/-/pathval-1.1.1.tgz", + "integrity": "sha512-Dp6zGqpTdETdR63lehJYPeIOqpiNBNtc7BpWSLrOje7UaIsE5aY92r/AunQA7rsXvet3lrJ3JnZX29UPTKXyKQ==" }, "pbkdf2": { "version": "3.0.17", diff --git a/package.json b/package.json index 585fd84a2..b0435877f 100644 --- a/package.json +++ b/package.json @@ -44,7 +44,7 @@ "check-error": "^1.0.2", "deep-eql": "^3.0.1", "get-func-name": "^2.0.0", - "pathval": "^1.1.0", + "pathval": "^1.1.1", "type-detect": "^4.0.5" }, "devDependencies": {