From 829d47d1ed9e0a2497546e8d059139f275c07a4e Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sun, 9 Jan 2022 17:38:58 +0000 Subject: [PATCH] fix: package.json & package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-NODEFORGE-2331908 - https://snyk.io/vuln/SNYK-JS-NODEFORGE-2331910 --- package-lock.json | 10 ++++++---- package.json | 2 +- 2 files changed, 7 insertions(+), 5 deletions(-) diff --git a/package-lock.json b/package-lock.json index a696380..1b655e4 100644 --- a/package-lock.json +++ b/package-lock.json @@ -1,6 +1,8 @@ { - "requires": true, + "name": "sign", + "version": "1.0.0", "lockfileVersion": 1, + "requires": true, "dependencies": { "acorn": { "version": "5.5.3", @@ -509,9 +511,9 @@ "integrity": "sha1-q4hOjn5X44qUR1POxwb3iNF2i7U=" }, "node-forge": { - "version": "0.7.5", - "resolved": "https://registry.npmjs.org/node-forge/-/node-forge-0.7.5.tgz", - "integrity": "sha512-MmbQJ2MTESTjt3Gi/3yG1wGpIMhUfcIypUCGtTizFR9IiccFwxSpfp0vtIZlkFclEqERemxfnSdZEMR9VqqEFQ==" + "version": "1.0.0", + "resolved": "https://registry.npmjs.org/node-forge/-/node-forge-1.0.0.tgz", + "integrity": "sha512-ShkiiAlzSsgH1IwGlA0jybk9vQTIOLyJ9nBd0JTuP+nzADJFLY0NoDijM2zvD/JaezooGu3G2p2FNxOAK6459g==" }, "once": { "version": "1.4.0", diff --git a/package.json b/package.json index 3ec1df6..9a49617 100644 --- a/package.json +++ b/package.json @@ -7,7 +7,7 @@ "forge": "^2.3.0", "inquirer": "^5.2.0", "node-fetch": "^2.1.2", - "node-forge": "^0.7.5" + "node-forge": "^1.0.0" }, "devDependencies": {}, "scripts": {