Skip to content

Commit 24d45e3

Browse files
fix(security): patch mongodb dependency vulnerabilities (#1052)
1 parent 82a6704 commit 24d45e3

File tree

2 files changed

+24
-24
lines changed

2 files changed

+24
-24
lines changed

package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -59,7 +59,7 @@
5959
"jest": "26.6.3",
6060
"jest-extended": "0.11.5",
6161
"lint-staged": "12.3.7",
62-
"mongoose": "7.3.3",
62+
"mongoose": "7.5.0",
6363
"mongoose-fixture-loader": "1.0.2",
6464
"semantic-release": "19.0.3",
6565
"semantic-release-npm-deprecate-old-versions": "1.3.2",

yarn.lock

Lines changed: 23 additions & 23 deletions
Original file line numberDiff line numberDiff line change
@@ -1508,6 +1508,13 @@
15081508
"@jridgewell/resolve-uri" "3.1.0"
15091509
"@jridgewell/sourcemap-codec" "1.4.14"
15101510

1511+
"@mongodb-js/saslprep@^1.1.0":
1512+
version "1.1.0"
1513+
resolved "https://registry.yarnpkg.com/@mongodb-js/saslprep/-/saslprep-1.1.0.tgz#022fa36620a7287d17acd05c4aae1e5f390d250d"
1514+
integrity sha512-Xfijy7HvfzzqiOAhAepF4SGN5e9leLkMvg/OPOF97XemjfVCYN/oWa75wnkc6mltMSTwY+XlbhWgUOJmkFspSw==
1515+
dependencies:
1516+
sparse-bitfield "^3.0.3"
1517+
15111518
"@nicolo-ribaudo/[email protected]":
15121519
version "2.1.8-no-fsevents.3"
15131520
resolved "https://registry.yarnpkg.com/@nicolo-ribaudo/chokidar-2/-/chokidar-2-2.1.8-no-fsevents.3.tgz#323d72dd25103d0c4fbdce89dadf574a787b1f9b"
@@ -2917,10 +2924,10 @@ [email protected]:
29172924
dependencies:
29182925
node-int64 "^0.4.0"
29192926

2920-
bson@^5.3.0:
2921-
version "5.3.0"
2922-
resolved "https://registry.yarnpkg.com/bson/-/bson-5.3.0.tgz#37b006df4cd91ed125cb686467c1dd6d4606b514"
2923-
integrity sha512-ukmCZMneMlaC5ebPHXIkP8YJzNl5DC41N5MAIvKDqLggdao342t4McltoJBQfQya/nHBWAcSsYRqlXPoQkTJag==
2927+
bson@^5.4.0:
2928+
version "5.4.0"
2929+
resolved "https://registry.yarnpkg.com/bson/-/bson-5.4.0.tgz#0eea77276d490953ad8616b483298dbff07384c6"
2930+
integrity sha512-WRZ5SQI5GfUuKnPTNmAYPiKIof3ORXAF4IRU5UcgmivNIon01rWQlw5RUH954dpu8yGL8T59YShVddIPaU/gFA==
29242931

29252932
29262933
version "1.0.1"
@@ -7388,30 +7395,30 @@ mongodb-connection-string-url@^2.6.0:
73887395
"@types/whatwg-url" "^8.2.1"
73897396
whatwg-url "^11.0.0"
73907397

7391-
mongodb@5.6.0:
7392-
version "5.6.0"
7393-
resolved "https://registry.yarnpkg.com/mongodb/-/mongodb-5.6.0.tgz#caff5278341bfc0f1ef6f394bb403d207de03d1e"
7394-
integrity sha512-z8qVs9NfobHJm6uzK56XBZF8XwM9H294iRnB7wNjF0SnY93si5HPziIJn+qqvUR5QOff/4L0gCD6SShdR/GtVQ==
7398+
mongodb@5.8.1:
7399+
version "5.8.1"
7400+
resolved "https://registry.yarnpkg.com/mongodb/-/mongodb-5.8.1.tgz#dc201adfbd6c6d73401cdcf12ebdb75f14771faf"
7401+
integrity sha512-wKyh4kZvm6NrCPH8AxyzXm3JBoEf4Xulo0aUWh3hCgwgYJxyQ1KLST86ZZaSWdj6/kxYUA3+YZuyADCE61CMSg==
73957402
dependencies:
7396-
bson "^5.3.0"
7403+
bson "^5.4.0"
73977404
mongodb-connection-string-url "^2.6.0"
73987405
socks "^2.7.1"
73997406
optionalDependencies:
7400-
saslprep "^1.0.3"
7407+
"@mongodb-js/saslprep" "^1.1.0"
74017408

74027409
74037410
version "1.0.2"
74047411
resolved "https://registry.yarnpkg.com/mongoose-fixture-loader/-/mongoose-fixture-loader-1.0.2.tgz#f2daf6d8072398e555b582d751feeea462d142ac"
74057412
integrity sha1-8tr22AcjmOVVtYLXUf7upGLRQqw=
74067413

7407-
mongoose@7.3.3:
7408-
version "7.3.3"
7409-
resolved "https://registry.yarnpkg.com/mongoose/-/mongoose-7.3.3.tgz#4e9cce706d3c5628998f59875c5c2d60ee0c6d9c"
7410-
integrity sha512-g4NrRGIUEUYLeScaSChQR8i4Dlk9lR0UJzkK3r6TPJyqJ6ZWdRVP3oXfOG9Yn+hNeKcCJKfVEHo+jsU1rh3YTA==
7414+
mongoose@7.5.0:
7415+
version "7.5.0"
7416+
resolved "https://registry.yarnpkg.com/mongoose/-/mongoose-7.5.0.tgz#d10003ffc1ff876d761c7cbca6844ddd2aadd42f"
7417+
integrity sha512-FpOWOb0AJuaVcplmEyIJ2eCbVGe4gOoniPD+pmft5BrGrNrsFcnYXlERdXtBApGHMHPwD7WbxTyhCbUNr72F3Q==
74117418
dependencies:
7412-
bson "^5.3.0"
7419+
bson "^5.4.0"
74137420
kareem "2.5.1"
7414-
mongodb "5.6.0"
7421+
mongodb "5.8.1"
74157422
mpath "0.9.0"
74167423
mquery "5.0.0"
74177424
ms "2.1.3"
@@ -8949,13 +8956,6 @@ sane@^4.0.3:
89498956
minimist "^1.1.1"
89508957
walker "~1.0.5"
89518958

8952-
saslprep@^1.0.3:
8953-
version "1.0.3"
8954-
resolved "https://registry.yarnpkg.com/saslprep/-/saslprep-1.0.3.tgz#4c02f946b56cf54297e347ba1093e7acac4cf226"
8955-
integrity sha512-/MY/PEMbk2SuY5sScONwhUDsV2p77Znkb/q3nSVstq/yQzYJOH/Azh29p9oJLsl3LnQwSvZDKagDGBsBwSooag==
8956-
dependencies:
8957-
sparse-bitfield "^3.0.3"
8958-
89598959
saxes@^5.0.1:
89608960
version "5.0.1"
89618961
resolved "https://registry.yarnpkg.com/saxes/-/saxes-5.0.1.tgz#eebab953fa3b7608dbe94e5dadb15c888fa6696d"

0 commit comments

Comments
 (0)