From aa4a9a3060afa3560f729a14564e27c504995d91 Mon Sep 17 00:00:00 2001 From: Joseph Kalandarishvili Date: Wed, 28 Dec 2022 19:33:03 -0600 Subject: [PATCH 1/3] fix: addrssing the vulnerability that came through where jsonwebtoken neeeds to be upgraded dependency: none Signed-off-by: Joseph Kalandarishvili --- package-lock.json | 12 ++++++------ 1 file changed, 6 insertions(+), 6 deletions(-) diff --git a/package-lock.json b/package-lock.json index 4166dc4..fa278fb 100644 --- a/package-lock.json +++ b/package-lock.json @@ -3834,7 +3834,7 @@ "file-type": "^7.7.1", "form-data": "^2.3.3", "isstream": "~0.1.2", - "jsonwebtoken": "^8.5.1", + "jsonwebtoken": "^9.0.0", "lodash.isempty": "^4.4.0", "mime-types": "~2.1.18", "object.omit": "~3.0.0", @@ -6482,8 +6482,8 @@ } }, "node_modules/jsonwebtoken": { - "version": "8.5.1", - "resolved": "https://registry.npmjs.org/jsonwebtoken/-/jsonwebtoken-8.5.1.tgz", + "version": "9.0.0", + "resolved": "https://registry.npmjs.org/jsonwebtoken/-/jsonwebtoken-9.0.0.tgz", "integrity": "sha512-XjwVfRS6jTMsqYs0EsuJ4LGxXV14zQybNd4L2r0UvbVnSF9Af8x7p5MzbJ90Ioz/9TI41/hTCvznF/loiSzn8w==", "dependencies": { "jws": "^3.2.2", @@ -15104,7 +15104,7 @@ "file-type": "^7.7.1", "form-data": "^2.3.3", "isstream": "~0.1.2", - "jsonwebtoken": "^8.5.1", + "jsonwebtoken": "^9.0.0", "lodash.isempty": "^4.4.0", "mime-types": "~2.1.18", "object.omit": "~3.0.0", @@ -17063,8 +17063,8 @@ } }, "jsonwebtoken": { - "version": "8.5.1", - "resolved": "https://registry.npmjs.org/jsonwebtoken/-/jsonwebtoken-8.5.1.tgz", + "version": "9.0.0", + "resolved": "https://registry.npmjs.org/jsonwebtoken/-/jsonwebtoken-9.0.0.tgz", "integrity": "sha512-XjwVfRS6jTMsqYs0EsuJ4LGxXV14zQybNd4L2r0UvbVnSF9Af8x7p5MzbJ90Ioz/9TI41/hTCvznF/loiSzn8w==", "requires": { "jws": "^3.2.2", From 522679730b2435ab46e80c89d9b13d922b9dd50a Mon Sep 17 00:00:00 2001 From: Joseph Kalandarishvili Date: Wed, 28 Dec 2022 19:38:46 -0600 Subject: [PATCH 2/3] fix: addrssing the vulnerability that came through where jsonwebtoken neeeds to be upgraded dependency: none Signed-off-by: Joseph Kalandarishvili --- package-lock.json | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/package-lock.json b/package-lock.json index fa278fb..968ad6c 100644 --- a/package-lock.json +++ b/package-lock.json @@ -3834,7 +3834,7 @@ "file-type": "^7.7.1", "form-data": "^2.3.3", "isstream": "~0.1.2", - "jsonwebtoken": "^9.0.0", + "jsonwebtoken": "^9.0.1", "lodash.isempty": "^4.4.0", "mime-types": "~2.1.18", "object.omit": "~3.0.0", From 7e29afd21b257dd5f92d40c892d8f57c2b7856c1 Mon Sep 17 00:00:00 2001 From: Joseph Kalandarishvili Date: Wed, 28 Dec 2022 19:45:29 -0600 Subject: [PATCH 3/3] fix: addrssing the vulnerability that came through where jsonwebtoken neeeds to be upgraded Signed-off-by: Joseph Kalandarishvili --- package-lock.json | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/package-lock.json b/package-lock.json index 968ad6c..fa278fb 100644 --- a/package-lock.json +++ b/package-lock.json @@ -3834,7 +3834,7 @@ "file-type": "^7.7.1", "form-data": "^2.3.3", "isstream": "~0.1.2", - "jsonwebtoken": "^9.0.1", + "jsonwebtoken": "^9.0.0", "lodash.isempty": "^4.4.0", "mime-types": "~2.1.18", "object.omit": "~3.0.0",