From cfb9e0d05fa172aefe75d3890f76e80f77a53938 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 12 Mar 2025 05:24:08 +0000 Subject: [PATCH] fix: package.json & yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-AXIOS-9292519 --- package.json | 2 +- yarn.lock | 8 ++++---- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/package.json b/package.json index 8ce762d..7457fa1 100644 --- a/package.json +++ b/package.json @@ -45,7 +45,7 @@ "typescript": "^5.3.3" }, "dependencies": { - "axios": "^1.7.4", + "axios": "^1.8.2", "chalk": "^4.1.2", "commander": "^12.0.0", "fs-directory": "^1.0.0", diff --git a/yarn.lock b/yarn.lock index 20dc24c..5dd004f 100644 --- a/yarn.lock +++ b/yarn.lock @@ -314,10 +314,10 @@ available-typed-arrays@^1.0.7: dependencies: possible-typed-array-names "^1.0.0" -axios@^1.7.4: - version "1.7.7" - resolved "https://registry.yarnpkg.com/axios/-/axios-1.7.7.tgz#2f554296f9892a72ac8d8e4c5b79c14a91d0a47f" - integrity sha512-S4kL7XrjgBmvdGut0sN3yJxqYzrDOnivkBiN0OFs6hLiUam3UPvswUo0kqGyhqUZGEOytHyumEdXsAkgCOUf3Q== +axios@^1.8.2: + version "1.8.2" + resolved "https://registry.yarnpkg.com/axios/-/axios-1.8.2.tgz#fabe06e241dfe83071d4edfbcaa7b1c3a40f7979" + integrity sha512-ls4GYBm5aig9vWx8AWDSGLpnpDQRtWAfrjU+EuytuODrFBkqesN2RkOQCBzrA1RQNHw1SmRMSDDDSwzNAYQ6Rg== dependencies: follow-redirects "^1.15.6" form-data "^4.0.0"