From 5df87ad0f97ed0b368f5a74db1b64dcae430c6eb Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 12 Sep 2022 21:24:05 +0000 Subject: [PATCH] fix: package.json & package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-PASSPORT-2840631 --- package-lock.json | 9 +++++---- package.json | 2 +- 2 files changed, 6 insertions(+), 5 deletions(-) diff --git a/package-lock.json b/package-lock.json index c403e8686a..b999b0471c 100644 --- a/package-lock.json +++ b/package-lock.json @@ -14610,12 +14610,13 @@ "dev": true }, "passport": { - "version": "0.5.3", - "resolved": "https://registry.npmjs.org/passport/-/passport-0.5.3.tgz", - "integrity": "sha512-gGc+70h4gGdBWNsR3FuV3byLDY6KBTJAIExGFXTpQaYfbbcHCBlRRKx7RBQSpqEqc5Hh2qVzRs7ssvSfOpkUEA==", + "version": "0.6.0", + "resolved": "https://registry.npmjs.org/passport/-/passport-0.6.0.tgz", + "integrity": "sha512-0fe+p3ZnrWRW74fe8+SvCyf4a3Pb2/h7gFkQ8yTJpAO50gDzlfjZUZTO1k5Eg9kUct22OxHLqDZoKUWRHOh9ug==", "requires": { "passport-strategy": "1.x.x", - "pause": "0.0.1" + "pause": "0.0.1", + "utils-merge": "^1.0.1" } }, "passport-local": { diff --git a/package.json b/package.json index 52a1a5b192..5a22f9a86a 100644 --- a/package.json +++ b/package.json @@ -55,7 +55,7 @@ "otpauth": "8.0.1", "package-json": "7.0.0", "parse": "3.4.2", - "passport": "0.5.3", + "passport": "0.6.0", "passport-local": "1.0.0", "prismjs": "1.28.0", "prop-types": "15.8.1",