From 0e22f68d7f5f7985cd4437842dc2d8020af71fc7 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 17 Aug 2022 08:56:41 +0000 Subject: [PATCH] fix: package.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-EJS-1049328 - https://snyk.io/vuln/SNYK-JS-EJS-2803307 - https://snyk.io/vuln/SNYK-JS-LOG4JS-2348757 - https://snyk.io/vuln/SNYK-JS-MORGAN-72579 - https://snyk.io/vuln/npm:debug:20170905 - https://snyk.io/vuln/npm:fresh:20170908 - https://snyk.io/vuln/npm:mime:20170907 - https://snyk.io/vuln/npm:ms:20170412 - https://snyk.io/vuln/npm:negotiator:20160616 - https://snyk.io/vuln/npm:pg:20170813 - https://snyk.io/vuln/npm:qs:20170213 --- package.json | 16 ++++++++-------- 1 file changed, 8 insertions(+), 8 deletions(-) diff --git a/package.json b/package.json index 3b0a82b4..576cdbd4 100644 --- a/package.json +++ b/package.json @@ -6,16 +6,16 @@ "start": "node ./bin/www" }, "dependencies": { - "body-parser": "~1.13.2", + "body-parser": "~1.18.2", "cookie-parser": "~1.3.5", - "debug": "~2.2.0", - "ejs": "^2.4.2", + "debug": "~2.6.9", + "ejs": "^3.1.7", "ejs-locals": "^1.0.2", - "express": "~4.13.1", + "express": "~4.16.0", "express-session": "^1.13.0", - "log4js": "^0.6.36", - "morgan": "~1.6.1", - "pg-promise": "^4.4.6", - "serve-favicon": "~2.3.0" + "log4js": "^6.4.0", + "morgan": "~1.9.1", + "pg-promise": "^5.9.2", + "serve-favicon": "~2.4.5" } }