From 9bd596238a62c7c051fe8ccea81e3e2d504b4d6d Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 11 Oct 2017 13:57:47 +0000 Subject: [PATCH] fix: package.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/npm:debug:20170905 - https://snyk.io/vuln/npm:ms:20170412 - https://snyk.io/vuln/npm:negotiator:20160616 - https://snyk.io/vuln/npm:ms:20151024 - https://snyk.io/vuln/npm:cookie-signature:20160804 - https://snyk.io/vuln/npm:ejs:20161130 - https://snyk.io/vuln/npm:ejs:20161130-1 - https://snyk.io/vuln/npm:ejs:20161128 - https://snyk.io/vuln/npm:mime:20170907 - https://snyk.io/vuln/npm:fresh:20170908 - https://snyk.io/vuln/npm:debug:20170905 - https://snyk.io/vuln/npm:qs:20170213 - https://snyk.io/vuln/npm:negotiator:20160616 - https://snyk.io/vuln/npm:send:20151103 - https://snyk.io/vuln/npm:serve-static:20150120 - https://snyk.io/vuln/npm:serve-static:20150113 - https://snyk.io/vuln/npm:send:20140912 - https://snyk.io/vuln/npm:qs:20140806-1 - https://snyk.io/vuln/npm:qs:20140806 - https://snyk.io/vuln/npm:express:20140912 - https://snyk.io/vuln/npm:cookie-signature:20160804 - https://snyk.io/vuln/npm:jws:20160726 - https://snyk.io/vuln/npm:jsonwebtoken:20150331 - https://snyk.io/vuln/npm:debug:20170905 - https://snyk.io/vuln/npm:cookie-signature:20160804 - https://snyk.io/vuln/npm:jws:20160726 - https://snyk.io/vuln/npm:jsonwebtoken:20150331 - https://snyk.io/vuln/npm:method-override:20170927 - https://snyk.io/vuln/npm:debug:20170905 - https://snyk.io/vuln/npm:ms:20170412 - https://snyk.io/vuln/npm:ms:20151024 - https://snyk.io/vuln/npm:fresh:20170908 Latest report for code4hr/hrhack: https://snyk.io/test/github/code4hr/hrhack --- package.json | 20 ++++++++++---------- 1 file changed, 10 insertions(+), 10 deletions(-) diff --git a/package.json b/package.json index e98ec12..42cc0db 100644 --- a/package.json +++ b/package.json @@ -5,23 +5,23 @@ "dependencies": { "body-parser": "^1.5.2", "composable-middleware": "^0.3.0", - "compression": "~1.0.1", + "compression": "~1.7.1", "connect-mongo": "^0.4.1", - "cookie-parser": "~1.0.1", - "ejs": "~0.8.4", + "cookie-parser": "~1.3.2", + "ejs": "~2.5.5", "errorhandler": "~1.0.0", - "express": "~4.0.0", - "express-jwt": "^0.1.3", - "express-session": "~1.0.2", - "jsonwebtoken": "^0.3.0", + "express": "~4.16.0", + "express-jwt": "^3.0.0", + "express-session": "~1.15.6", + "jsonwebtoken": "^5.0.0", "lodash": "~2.4.1", - "method-override": "~1.0.0", - "mongoose": "~3.8.8", + "method-override": "~2.3.10", + "mongoose": "~4.11.14", "morgan": "~1.0.0", "passport": "~0.2.0", "passport-local": "~0.1.6", "request": "^2.45.0", - "serve-favicon": "~2.0.1" + "serve-favicon": "~2.4.5" }, "devDependencies": { "grunt": "~0.4.4",