From 504901fc2b67ec0b8c400bc74990037d95cddd38 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 23 Jun 2022 23:06:56 +0000 Subject: [PATCH] fix: package.json & package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-URLPARSE-1533425 - https://snyk.io/vuln/SNYK-JS-URLPARSE-2401205 - https://snyk.io/vuln/SNYK-JS-URLPARSE-2407759 - https://snyk.io/vuln/SNYK-JS-URLPARSE-2407770 - https://snyk.io/vuln/SNYK-JS-URLPARSE-2412697 --- package-lock.json | 14 +++++++------- package.json | 2 +- 2 files changed, 8 insertions(+), 8 deletions(-) diff --git a/package-lock.json b/package-lock.json index 46112b5f9d92..201b4c86f6ac 100644 --- a/package-lock.json +++ b/package-lock.json @@ -223,12 +223,12 @@ } }, "@ampproject/toolbox-cache-url": { - "version": "2.5.4", - "resolved": "https://registry.npmjs.org/@ampproject/toolbox-cache-url/-/toolbox-cache-url-2.5.4.tgz", - "integrity": "sha512-0FDwyA0sZokknwJt7KZenVL41bDmHZ+AgY82KrCzaTRMBNwlin4hANM5O1NMv4RvjCYsZXyg9hua1fCZH1BkfA==", + "version": "2.9.0", + "resolved": "https://registry.npmjs.org/@ampproject/toolbox-cache-url/-/toolbox-cache-url-2.9.0.tgz", + "integrity": "sha512-2J1t4yCiCDnlZFEa8/hrjQ4H0jmh1GHhNAb6GsUek0w0fn2HqWhnv8JCzRD9NlwORcH1H3tW8y3MUteO9fWF+g==", "requires": { "punycode": "2.1.1", - "url-parse": "1.4.7" + "url-parse": "^1.5.10" } }, "@ampproject/viewer-messaging": { @@ -32176,9 +32176,9 @@ "dev": true }, "url-parse": { - "version": "1.4.7", - "resolved": "https://registry.npmjs.org/url-parse/-/url-parse-1.4.7.tgz", - "integrity": "sha512-d3uaVyzDB9tQoSXFvuSUNFibTd9zxd2bkVrDRvF5TmvWWQwqE4lgYJ5m+x1DbecWkw+LK4RNl2CU1hHuOKPVlg==", + "version": "1.5.10", + "resolved": "https://registry.npmjs.org/url-parse/-/url-parse-1.5.10.tgz", + "integrity": "sha512-WypcfiRhfeUP9vvF0j6rw0J3hrWrw6iZv3+22h6iRMJ/8z1Tj6XfLP4DsUix5MhMPnXpiHDoKyoZ/bdCkwBCiQ==", "requires": { "querystringify": "^2.1.1", "requires-port": "^1.0.0" diff --git a/package.json b/package.json index 6dde3eb66c88..d9530212d8dc 100644 --- a/package.json +++ b/package.json @@ -15,7 +15,7 @@ }, "dependencies": { "@ampproject/animations": "0.2.2", - "@ampproject/toolbox-cache-url": "2.5.4", + "@ampproject/toolbox-cache-url": "2.9.0", "@ampproject/viewer-messaging": "1.1.0", "@ampproject/worker-dom": "0.27.4", "dompurify": "2.0.7",