Skip to content

Commit 4241e13

Browse files
authored
fix(security): upgrade moment to 2.29.4 to fix a vulnerability (#901)
1 parent 3dce482 commit 4241e13

File tree

2 files changed

+17
-29
lines changed

2 files changed

+17
-29
lines changed

package.json

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -27,11 +27,11 @@
2727
"dependencies": {
2828
"@babel/runtime": "7.15.4",
2929
"bluebird": "2.9.25",
30-
"forest-express": "9.5.0",
30+
"forest-express": "9.5.4",
3131
"http-errors": "1.7.2",
3232
"lodash": "4.17.21",
33-
"moment": "2.29.2",
34-
"moment-timezone": "0.5.27",
33+
"moment": "2.29.4",
34+
"moment-timezone": "0.5.34",
3535
"semver": "5.6.0"
3636
},
3737
"devDependencies": {

yarn.lock

Lines changed: 14 additions & 26 deletions
Original file line numberDiff line numberDiff line change
@@ -4456,10 +4456,10 @@ for-in@^1.0.2:
44564456
resolved "https://registry.yarnpkg.com/for-in/-/for-in-1.0.2.tgz#81068d295a8142ec0ac726c6e2200c30fb6d5e80"
44574457
integrity sha1-gQaNKVqBQuwKxybG4iAMMPttXoA=
44584458

4459-
4460-
version "9.5.0"
4461-
resolved "https://registry.yarnpkg.com/forest-express/-/forest-express-9.5.0.tgz#cd6b3bb958b4a437b75ad1fd6957d69743a526b1"
4462-
integrity sha512-8YkxAXha0V+C/f7+1V9QQfu6kUYYjBDAM/e/EtFtTjCll0fpSKPeUKMMEG0yVATYdIfHRjlSxs2NPjgCuH51IA==
4459+
4460+
version "9.5.4"
4461+
resolved "https://registry.yarnpkg.com/forest-express/-/forest-express-9.5.4.tgz#26c8559a6dd633ecfd54e4c9a4c7a615a9073b62"
4462+
integrity sha512-ItJRtZTN6Q5hFmswGN/DvB7CDKZgXi7gT+OLPnsUg1fzckooVpd3Ob04tX02VmN9ExC44Qhpv4xVBNXLxwLDWg==
44634463
dependencies:
44644464
"@babel/runtime" "7.10.1"
44654465
"@forestadmin/context" "1.31.0"
@@ -4480,8 +4480,8 @@ [email protected]:
44804480
jsonapi-serializer "3.6.5"
44814481
jsonwebtoken "8.5.1"
44824482
lodash "4.17.21"
4483-
moment "2.29.2"
4484-
moment-timezone "0.5.26"
4483+
moment "2.29.4"
4484+
moment-timezone "0.5.34"
44854485
openid-client "4.2.0"
44864486
otplib "11.0.1"
44874487
require-all "3.0.0"
@@ -7104,29 +7104,17 @@ modify-values@^1.0.0:
71047104
resolved "https://registry.yarnpkg.com/modify-values/-/modify-values-1.0.1.tgz#b3939fa605546474e3e3e3c63d64bd43b4ee6022"
71057105
integrity sha512-xV2bxeN6F7oYjZWTe/YPAy6MN2M+sL4u/Rlm2AHCIVGfo2p1yGmBHQ6vHehl4bRTZBdHu3TSkWdYgkwpYzAGSw==
71067106

7107-
7108-
version "0.5.26"
7109-
resolved "https://registry.yarnpkg.com/moment-timezone/-/moment-timezone-0.5.26.tgz#c0267ca09ae84631aa3dc33f65bedbe6e8e0d772"
7110-
integrity sha512-sFP4cgEKTCymBBKgoxZjYzlSovC20Y6J7y3nanDc5RoBIXKlZhoYwBoZGe3flwU6A372AcRwScH8KiwV6zjy1g==
7107+
7108+
version "0.5.34"
7109+
resolved "https://registry.yarnpkg.com/moment-timezone/-/moment-timezone-0.5.34.tgz#a75938f7476b88f155d3504a9343f7519d9a405c"
7110+
integrity sha512-3zAEHh2hKUs3EXLESx/wsgw6IQdusOT8Bxm3D9UrHPQR7zlMmzwybC8zHEM1tQ4LJwP7fcxrWr8tuBg05fFCbg==
71117111
dependencies:
71127112
moment ">= 2.9.0"
71137113

7114-
7115-
version "0.5.27"
7116-
resolved "https://registry.yarnpkg.com/moment-timezone/-/moment-timezone-0.5.27.tgz#73adec8139b6fe30452e78f210f27b1f346b8877"
7117-
integrity sha512-EIKQs7h5sAsjhPCqN6ggx6cEbs94GK050254TIJySD1bzoM5JTYDwAU1IoVOeTOL6Gm27kYJ51/uuvq1kIlrbw==
7118-
dependencies:
7119-
moment ">= 2.9.0"
7120-
7121-
7122-
version "2.29.2"
7123-
resolved "https://registry.yarnpkg.com/moment/-/moment-2.29.2.tgz#00910c60b20843bcba52d37d58c628b47b1f20e4"
7124-
integrity sha512-UgzG4rvxYpN15jgCmVJwac49h9ly9NurikMWGPdVxm8GZD6XjkKPxDTjQQ43gtGgnV3X0cAyWDdP2Wexoquifg==
7125-
7126-
"moment@>= 2.9.0":
7127-
version "2.29.3"
7128-
resolved "https://registry.yarnpkg.com/moment/-/moment-2.29.3.tgz#edd47411c322413999f7a5940d526de183c031f3"
7129-
integrity sha512-c6YRvhEo//6T2Jz/vVtYzqBzwvPT95JBQ+smCytzf7c50oMZRsR/a4w88aD34I+/QVSfnoAnSBFPJHItlOMJVw==
7114+
[email protected], "moment@>= 2.9.0":
7115+
version "2.29.4"
7116+
resolved "https://registry.yarnpkg.com/moment/-/moment-2.29.4.tgz#3dbe052889fe7c1b2ed966fcb3a77328964ef108"
7117+
integrity sha512-5LC9SOxjSc2HF6vO2CyuTDNivEdoz2IvyJJGj6X8DJ0eFyfszE0QiEd+iXmBvUP3WHxSjFH/vIsA0EN00cgr8w==
71307118

71317119
71327120
version "3.6.11"

0 commit comments

Comments
 (0)