From 84ed2686457d342af6ad94994fc9fae790d405f9 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 16 Nov 2023 14:54:32 +0000 Subject: [PATCH] fix: package.json & package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-TINYMCE-6062167 --- package-lock.json | 31 +++++++++---------------------- package.json | 2 +- 2 files changed, 10 insertions(+), 23 deletions(-) diff --git a/package-lock.json b/package-lock.json index 16876a2..9ace3da 100644 --- a/package-lock.json +++ b/package-lock.json @@ -26,11 +26,11 @@ "jquery": "^2.2.4", "lodash": "4.17.21", "marked": "1.1.1", - "method-override": "latest", + "method-override": "^3.0.0", "moment": "2.15.1", "mongodb": "^3.5.9", "mongoose": "4.2.5", - "morgan": "latest", + "morgan": "^1.10.0", "ms": "^0.7.1", "mysql": "^2.18.1", "node-notifier": "8.0.0", @@ -39,7 +39,7 @@ "st": "0.2.4", "stream-buffers": "^3.0.1", "tap": "11.1.0", - "tinymce": "4.1.0", + "tinymce": "^5.10.9", "typeorm": "^0.2.24" }, "devDependencies": { @@ -4241,14 +4241,6 @@ "resolved": "https://registry.npmjs.org/ms/-/ms-2.0.0.tgz", "integrity": "sha1-VgiurfwAvmwpAd9fmGF4jeDVl8g=" }, - "node_modules/method-override/node_modules/vary": { - "version": "1.1.2", - "resolved": "https://registry.npmjs.org/vary/-/vary-1.1.2.tgz", - "integrity": "sha1-IpnwLG3tMNSllhsLn3RSShj2NPw=", - "engines": { - "node": ">= 0.8" - } - }, "node_modules/methods": { "version": "1.1.2", "resolved": "https://registry.npmjs.org/methods/-/methods-1.1.2.tgz", @@ -11148,9 +11140,9 @@ } }, "node_modules/tinymce": { - "version": "4.1.0", - "resolved": "https://registry.npmjs.org/tinymce/-/tinymce-4.1.0.tgz", - "integrity": "sha1-dw/lKQrQXKQPAZ4MU8iHRrZ4oVo=" + "version": "5.10.9", + "resolved": "https://registry.npmjs.org/tinymce/-/tinymce-5.10.9.tgz", + "integrity": "sha512-5bkrors87X9LhYX2xq8GgPHrIgJYHl87YNs+kBcjQ5I3CiUgzo/vFcGvT3MZQ9QHsEeYMhYO6a5CLGGffR8hMg==" }, "node_modules/tmatch": { "version": "3.1.0", @@ -15520,11 +15512,6 @@ "version": "2.0.0", "resolved": "https://registry.npmjs.org/ms/-/ms-2.0.0.tgz", "integrity": "sha1-VgiurfwAvmwpAd9fmGF4jeDVl8g=" - }, - "vary": { - "version": "1.1.2", - "resolved": "https://registry.npmjs.org/vary/-/vary-1.1.2.tgz", - "integrity": "sha1-IpnwLG3tMNSllhsLn3RSShj2NPw=" } } }, @@ -20805,9 +20792,9 @@ } }, "tinymce": { - "version": "4.1.0", - "resolved": "https://registry.npmjs.org/tinymce/-/tinymce-4.1.0.tgz", - "integrity": "sha1-dw/lKQrQXKQPAZ4MU8iHRrZ4oVo=" + "version": "5.10.9", + "resolved": "https://registry.npmjs.org/tinymce/-/tinymce-5.10.9.tgz", + "integrity": "sha512-5bkrors87X9LhYX2xq8GgPHrIgJYHl87YNs+kBcjQ5I3CiUgzo/vFcGvT3MZQ9QHsEeYMhYO6a5CLGGffR8hMg==" }, "tmatch": { "version": "3.1.0", diff --git a/package.json b/package.json index 3c6f091..c84ecef 100644 --- a/package.json +++ b/package.json @@ -44,7 +44,7 @@ "st": "0.2.4", "stream-buffers": "^3.0.1", "tap": "11.1.0", - "tinymce": "4.1.0", + "tinymce": "5.10.9", "typeorm": "^0.2.24" }, "devDependencies": {