From 572848bb03db3e73b1ebf2a97dc2b96ce6598fdc Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 8 Mar 2024 14:59:25 +0000 Subject: [PATCH] fix: package.json & package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-JOSE-6419224 --- package-lock.json | 8 ++++---- package.json | 2 +- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/package-lock.json b/package-lock.json index a3c61b1..7bb8fb8 100644 --- a/package-lock.json +++ b/package-lock.json @@ -13,7 +13,7 @@ "@fastify/cors": "^8.3.0", "fastify": "^4.21.0", "fastify-plugin": "^4.5.1", - "jose": "^4.14.4", + "jose": "^4.15.5", "mssql": "^10.0.1", "pino": "^8.15.0", "pino-elasticsearch": "^6.6.0" @@ -407,9 +407,9 @@ "integrity": "sha512-3wdGidZyq5PB084XLES5TpOSRA3wjXAlIWMhum2kRcv/41Sn2emQ0dycQW4uZXLejwKvg6EsvbdlVL+FYEct7A==" }, "node_modules/jose": { - "version": "4.14.4", - "resolved": "https://registry.npmjs.org/jose/-/jose-4.14.4.tgz", - "integrity": "sha512-j8GhLiKmUAh+dsFXlX1aJCbt5KMibuKb+d7j1JaOJG6s2UjX1PQlW+OKB/sD4a/5ZYF4RcmYmLSndOoU3Lt/3g==", + "version": "4.15.5", + "resolved": "https://registry.npmjs.org/jose/-/jose-4.15.5.tgz", + "integrity": "sha512-jc7BFxgKPKi94uOvEmzlSWFFe2+vASyXaKUpdQKatWAESU2MWjDfFf0fdfc83CDKcA5QecabZeNLyfhe3yKNkg==", "funding": { "url": "https://github.com/sponsors/panva" } diff --git a/package.json b/package.json index 23270ff..74f0b63 100644 --- a/package.json +++ b/package.json @@ -13,7 +13,7 @@ "@fastify/cors": "^8.3.0", "fastify": "^4.21.0", "fastify-plugin": "^4.5.1", - "jose": "^4.14.4", + "jose": "^4.15.5", "mssql": "^10.0.1", "pino": "^8.15.0", "pino-elasticsearch": "^6.6.0"