Skip to content

Commit e74f7dc

Browse files
pkg: Update path-to-regexp to v6.3.0 [SECURITY] (#3215)
* pkg: Update `path-to-regexp` to v6.3.0 [SECURITY] * pkg: Bump in package deps --------- Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com> Co-authored-by: Nathaniel Tucker <[email protected]>
1 parent 3f07ba4 commit e74f7dc

File tree

3 files changed

+19
-16
lines changed

3 files changed

+19
-16
lines changed

.changeset/twenty-mice-fry.md

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,5 @@
1+
---
2+
'@data-client/rest': patch
3+
---
4+
5+
Update path-to-regexp for [CVE-2024-45296](https://redirect.github.com/pillarjs/path-to-regexp/security/advisories/GHSA-9wv6-86v2-598j)

packages/rest/package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -132,7 +132,7 @@
132132
"dependencies": {
133133
"@babel/runtime": "^7.17.0",
134134
"@data-client/endpoint": "^0.14.12",
135-
"path-to-regexp": "^6.2.1"
135+
"path-to-regexp": "^6.3.0"
136136
},
137137
"devDependencies": {
138138
"@anansi/browserslist-config": "^1.4.2",

yarn.lock

Lines changed: 13 additions & 15 deletions
Original file line numberDiff line numberDiff line change
@@ -3213,7 +3213,7 @@ __metadata:
32133213
"@babel/runtime": "npm:^7.17.0"
32143214
"@data-client/endpoint": "npm:^0.14.12"
32153215
"@types/node": "npm:^22.0.0"
3216-
path-to-regexp: "npm:^6.2.1"
3216+
path-to-regexp: "npm:^6.3.0"
32173217
languageName: unknown
32183218
linkType: soft
32193219

@@ -23051,19 +23051,26 @@ __metadata:
2305123051
languageName: node
2305223052
linkType: hard
2305323053

23054-
"path-to-regexp@npm:6.2.2, path-to-regexp@npm:^6.2.1":
23054+
"path-to-regexp@npm:6.2.2":
2305523055
version: 6.2.2
2305623056
resolution: "path-to-regexp@npm:6.2.2"
2305723057
checksum: 10c0/4b60852d3501fd05ca9dd08c70033d73844e5eca14e41f499f069afa8364f780f15c5098002f93bd42af8b3514de62ac6e82a53b5662de881d2b08c9ef21ea6b
2305823058
languageName: node
2305923059
linkType: hard
2306023060

2306123061
"path-to-regexp@npm:^1.7.0":
23062-
version: 1.8.0
23063-
resolution: "path-to-regexp@npm:1.8.0"
23062+
version: 1.9.0
23063+
resolution: "path-to-regexp@npm:1.9.0"
2306423064
dependencies:
2306523065
isarray: "npm:0.0.1"
23066-
checksum: 10c0/7b25d6f27a8de03f49406d16195450f5ced694398adea1510b0f949d9660600d1769c5c6c83668583b7e6b503f3caf1ede8ffc08135dbe3e982f034f356fbb5c
23066+
checksum: 10c0/de9ddb01b84d9c2c8e2bed18630d8d039e2d6f60a6538595750fa08c7a6482512257464c8da50616f266ab2cdd2428387e85f3b089e4c3f25d0c537e898a0751
23067+
languageName: node
23068+
linkType: hard
23069+
23070+
"path-to-regexp@npm:^6.3.0":
23071+
version: 6.3.0
23072+
resolution: "path-to-regexp@npm:6.3.0"
23073+
checksum: 10c0/73b67f4638b41cde56254e6354e46ae3a2ebc08279583f6af3d96fe4664fc75788f74ed0d18ca44fa4a98491b69434f9eee73b97bb5314bd1b5adb700f5c18d6
2306723074
languageName: node
2306823075
linkType: hard
2306923076

@@ -24758,7 +24765,7 @@ __metadata:
2475824765
languageName: node
2475924766
linkType: hard
2476024767

24761-
"qs@npm:6.13.0":
24768+
"qs@npm:6.13.0, qs@npm:^6.12.3":
2476224769
version: 6.13.0
2476324770
resolution: "qs@npm:6.13.0"
2476424771
dependencies:
@@ -24767,15 +24774,6 @@ __metadata:
2476724774
languageName: node
2476824775
linkType: hard
2476924776

24770-
"qs@npm:^6.12.3":
24771-
version: 6.12.3
24772-
resolution: "qs@npm:6.12.3"
24773-
dependencies:
24774-
side-channel: "npm:^1.0.6"
24775-
checksum: 10c0/243ddcc8f49dab78fc51041f7f64c500b47c671c45a101a8aca565d8537cb562921da7ef1a831b4a7051596ec88bb35a0d5e25a240025e8b32c6bfb69f00bf2f
24776-
languageName: node
24777-
linkType: hard
24778-
2477924777
"qs@npm:~6.5.2":
2478024778
version: 6.5.3
2478124779
resolution: "qs@npm:6.5.3"

0 commit comments

Comments
 (0)