Skip to content

Commit 277ce74

Browse files
committed
OCPBUGS-81587: upgrade lodash and lodash-es to 4.17.23 to address CVE-2025-13465
Signed-off-by: Venkata Charan Sunku <vsunku@redhat.com>
1 parent 80dfa98 commit 277ce74

File tree

5 files changed

+17
-15
lines changed

5 files changed

+17
-15
lines changed

apps/assisted-disconnected-ui/package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -14,7 +14,7 @@
1414
"axios": ">=0.22.0 <2.0.0",
1515
"i18next": "^20.4.0",
1616
"i18next-browser-languagedetector": "^6.1.2",
17-
"lodash": "^4",
17+
"lodash": "^4.17.23",
1818
"monaco-editor": "^0.44.0",
1919
"react": "^18.2.0",
2020
"react-dom": "^18.2.0",

apps/assisted-ui/package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -18,7 +18,7 @@
1818
"axios": ">=0.22.0 <2.0.0",
1919
"i18next": "^20.4.0",
2020
"i18next-browser-languagedetector": "^6.1.2",
21-
"lodash": "^4",
21+
"lodash": "^4.17.23",
2222
"monaco-editor": "^0.44.0",
2323
"react": "^18.2.0",
2424
"react-dom": "^18.2.0",

libs/ui-lib/package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -24,7 +24,7 @@
2424
"is-cidr": "^4.0.2",
2525
"is-in-subnet": "^4",
2626
"js-yaml": "^4.1.0",
27-
"lodash-es": "^4.17.21",
27+
"lodash-es": "^4.17.23",
2828
"parse-url": "^9.2.0",
2929
"prism-react-renderer": "^1.1.1",
3030
"react-error-boundary": "^3.1.4",

package.json

Lines changed: 3 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -22,7 +22,9 @@
2222
"private": true,
2323
"resolutions": {
2424
"@types/react": "17.0.x",
25-
"@patternfly/chatbot/@patternfly/react-icons": "6.3.1"
25+
"@patternfly/chatbot/@patternfly/react-icons": "6.3.1",
26+
"lodash": "^4.17.23",
27+
"lodash-es": "^4.17.23"
2628
},
2729
"scripts": {
2830
"_build:lib": "yarn workspace @openshift-assisted/ui-lib build && yarn workspace @openshift-assisted/chatbot build",

yarn.lock

Lines changed: 11 additions & 11 deletions
Original file line numberDiff line numberDiff line change
@@ -612,7 +612,7 @@ __metadata:
612612
concurrently: ^8.2.2
613613
i18next: ^20.4.0
614614
i18next-browser-languagedetector: ^6.1.2
615-
lodash: ^4
615+
lodash: ^4.17.23
616616
monaco-editor: ^0.44.0
617617
nodemon: ^3.0.3
618618
react: ^18.2.0
@@ -656,7 +656,7 @@ __metadata:
656656
axios: ">=0.22.0 <2.0.0"
657657
i18next: ^20.4.0
658658
i18next-browser-languagedetector: ^6.1.2
659-
lodash: ^4
659+
lodash: ^4.17.23
660660
monaco-editor: ^0.44.0
661661
react: ^18.2.0
662662
react-dom: ^18.2.0
@@ -819,7 +819,7 @@ __metadata:
819819
is-cidr: ^4.0.2
820820
is-in-subnet: ^4
821821
js-yaml: ^4.1.0
822-
lodash-es: ^4.17.21
822+
lodash-es: ^4.17.23
823823
parse-url: ^9.2.0
824824
prism-react-renderer: ^1.1.1
825825
react-error-boundary: ^3.1.4
@@ -7040,10 +7040,10 @@ __metadata:
70407040
languageName: node
70417041
linkType: hard
70427042

7043-
"lodash-es@npm:^4.17.14, lodash-es@npm:^4.17.21":
7044-
version: 4.17.21
7045-
resolution: "lodash-es@npm:4.17.21"
7046-
checksum: 05cbffad6e2adbb331a4e16fbd826e7faee403a1a04873b82b42c0f22090f280839f85b95393f487c1303c8a3d2a010048bf06151a6cbe03eee4d388fb0a12d2
7043+
"lodash-es@npm:^4.17.23":
7044+
version: 4.17.23
7045+
resolution: "lodash-es@npm:4.17.23"
7046+
checksum: b1bd1d141bbde8ffc72978e34b364065675806b0ca42ab99477d247fb2ae795faeed81db9283bf18ae1f096c2b6611ec0589e0503fa9724bf82e3dce947bad69
70477047
languageName: node
70487048
linkType: hard
70497049

@@ -7061,10 +7061,10 @@ __metadata:
70617061
languageName: node
70627062
linkType: hard
70637063

7064-
"lodash@npm:4.17.21, lodash@npm:^4, lodash@npm:^4.17.14, lodash@npm:^4.17.15, lodash@npm:^4.17.19, lodash@npm:^4.17.21":
7065-
version: 4.17.21
7066-
resolution: "lodash@npm:4.17.21"
7067-
checksum: eb835a2e51d381e561e508ce932ea50a8e5a68f4ebdd771ea240d3048244a8d13658acbd502cd4829768c56f2e16bdd4340b9ea141297d472517b83868e677f7
7064+
"lodash@npm:^4.17.23":
7065+
version: 4.17.23
7066+
resolution: "lodash@npm:4.17.23"
7067+
checksum: 7daad39758a72872e94651630fbb54ba76868f904211089721a64516ce865506a759d9ad3d8ff22a2a49a50a09db5d27c36f22762d21766e47e3ba918d6d7bab
70687068
languageName: node
70697069
linkType: hard
70707070

0 commit comments

Comments
 (0)