Skip to content

Commit bc11d2d

Browse files
Update dependency jsonwebtoken to v9 [SECURITY]
1 parent ee9c9b3 commit bc11d2d

2 files changed

Lines changed: 24 additions & 23 deletions

File tree

package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -40,7 +40,7 @@
4040
"async": "^3.2.0",
4141
"connect-multiparty": "^2.2.0",
4242
"express": "^4.17.1",
43-
"jsonwebtoken": "^8.5.1",
43+
"jsonwebtoken": "^9.0.0",
4444
"markdown-it": "^12.0.0",
4545
"passport-http-bearer": "^1.0.1"
4646
},

yarn.lock

Lines changed: 23 additions & 22 deletions
Original file line numberDiff line numberDiff line change
@@ -567,9 +567,10 @@ brace-expansion@^5.0.2:
567567
dependencies:
568568
balanced-match "^4.0.2"
569569

570-
buffer-equal-constant-time@1.0.1:
570+
buffer-equal-constant-time@^1.0.1:
571571
version "1.0.1"
572572
resolved "https://registry.yarnpkg.com/buffer-equal-constant-time/-/buffer-equal-constant-time-1.0.1.tgz#f8e71132f7ffe6e01a5c9697a4c6f3e48d5cc819"
573+
integrity sha512-zRpUiDwd/xk6ADqPMATG8vc9VPrkck7T07OIx0gnjmJAnHnTVXNQG3vfvWNuiZIkwu9KrKdA1iJKfsfTVxE6NA==
573574

574575
bytes@3.1.0:
575576
version "3.1.0"
@@ -2395,12 +2396,12 @@ json5@^1.0.2:
23952396
dependencies:
23962397
minimist "^1.2.0"
23972398

2398-
jsonwebtoken@^8.5.1:
2399-
version "8.5.1"
2400-
resolved "https://registry.yarnpkg.com/jsonwebtoken/-/jsonwebtoken-8.5.1.tgz#00e71e0b8df54c2121a1f26137df2280673bcc0d"
2401-
integrity sha512-XjwVfRS6jTMsqYs0EsuJ4LGxXV14zQybNd4L2r0UvbVnSF9Af8x7p5MzbJ90Ioz/9TI41/hTCvznF/loiSzn8w==
2399+
jsonwebtoken@^9.0.0:
2400+
version "9.0.3"
2401+
resolved "https://registry.yarnpkg.com/jsonwebtoken/-/jsonwebtoken-9.0.3.tgz#6cd57ab01e9b0ac07cb847d53d3c9b6ee31f7ae2"
2402+
integrity sha512-MT/xP0CrubFRNLNKvxJ2BYfy53Zkm++5bX9dtuPbqAeQpTVe0MQTFhao8+Cp//EmJp244xt6Drw/GVEGCUj40g==
24022403
dependencies:
2403-
jws "^3.2.2"
2404+
jws "^4.0.1"
24042405
lodash.includes "^4.3.0"
24052406
lodash.isboolean "^3.0.3"
24062407
lodash.isinteger "^4.0.4"
@@ -2409,23 +2410,23 @@ jsonwebtoken@^8.5.1:
24092410
lodash.isstring "^4.0.1"
24102411
lodash.once "^4.0.0"
24112412
ms "^2.1.1"
2412-
semver "^5.6.0"
2413+
semver "^7.5.4"
24132414

2414-
jwa@^1.4.1:
2415-
version "1.4.1"
2416-
resolved "https://registry.yarnpkg.com/jwa/-/jwa-1.4.1.tgz#743c32985cb9e98655530d53641b66c8645b039a"
2417-
integrity sha512-qiLX/xhEEFKUAJ6FiBMbes3w9ATzyk5W7Hvzpa/SLYdxNtng+gcurvrI7TbACjIXlsJyr05/S1oUhZrc63evQA==
2415+
jwa@^2.0.1:
2416+
version "2.0.1"
2417+
resolved "https://registry.yarnpkg.com/jwa/-/jwa-2.0.1.tgz#bf8176d1ad0cd72e0f3f58338595a13e110bc804"
2418+
integrity sha512-hRF04fqJIP8Abbkq5NKGN0Bbr3JxlQ+qhZufXVr0DvujKy93ZCbXZMHDL4EOtodSbCWxOqR8MS1tXA5hwqCXDg==
24182419
dependencies:
2419-
buffer-equal-constant-time "1.0.1"
2420+
buffer-equal-constant-time "^1.0.1"
24202421
ecdsa-sig-formatter "1.0.11"
24212422
safe-buffer "^5.0.1"
24222423

2423-
jws@^3.2.2:
2424-
version "3.2.2"
2425-
resolved "https://registry.yarnpkg.com/jws/-/jws-3.2.2.tgz#001099f3639468c9414000e99995fa52fb478304"
2426-
integrity sha512-YHlZCB6lMTllWDtSPHz/ZXTsi8S00usEV6v1tjq8tOUZzw7DpSDWVXjXDre6ed1w/pd495ODpHZYSdkRTsa0HA==
2424+
jws@^4.0.1:
2425+
version "4.0.1"
2426+
resolved "https://registry.yarnpkg.com/jws/-/jws-4.0.1.tgz#07edc1be8fac20e677b283ece261498bd38f0690"
2427+
integrity sha512-EKI/M/yqPncGUUh44xz0PxSidXFr/+r0pA70+gIYhjv+et7yxM+s29Y+VGDkovRofQem0fs7Uvf4+YmAdyRduA==
24272428
dependencies:
2428-
jwa "^1.4.1"
2429+
jwa "^2.0.1"
24292430
safe-buffer "^5.0.1"
24302431

24312432
keyv@^4.5.4:
@@ -3085,11 +3086,6 @@ safe-regex-test@^1.1.0:
30853086
resolved "https://registry.yarnpkg.com/safer-buffer/-/safer-buffer-2.1.2.tgz#44fa161b0187b9549dd84bb91802f9bd8385cd6a"
30863087
integrity sha512-YZo3K82SD7Riyi0E1EQPojLz7kpepnSQI9IyPbHHg1XXXevb5dJI7tpyN2ADxGcQbHG7vcyRHk0cbwqcQriUtg==
30873088

3088-
semver@^5.6.0:
3089-
version "5.7.0"
3090-
resolved "https://registry.yarnpkg.com/semver/-/semver-5.7.0.tgz#790a7cf6fea5459bac96110b29b60412dc8ff96b"
3091-
integrity sha512-Ya52jSX2u7QKghxeoFGpLwCtGlt7j0oY9DYb5apt9nPlJ42ID+ulTXESnt/qAQcoSERyZ5sl3LDIOw0nAn/5DA==
3092-
30933089
semver@^6.3.0:
30943090
version "6.3.0"
30953091
resolved "https://registry.yarnpkg.com/semver/-/semver-6.3.0.tgz#ee0a64c8af5e8ceea67687b133761e1becbd1d3d"
@@ -3105,6 +3101,11 @@ semver@^7.5.2:
31053101
resolved "https://registry.yarnpkg.com/semver/-/semver-7.7.4.tgz#28464e36060e991fa7a11d0279d2d3f3b57a7e8a"
31063102
integrity sha512-vFKC2IEtQnVhpT78h1Yp8wzwrf8CM+MzKMHGJZfBtzhZNycRFnXsHk6E5TxIkkMsgNS7mdX3AGB7x2QM2di4lA==
31073103

3104+
semver@^7.5.4:
3105+
version "7.8.0"
3106+
resolved "https://registry.yarnpkg.com/semver/-/semver-7.8.0.tgz#ed0661039fcbcda2ce71f01fa6adbefaa77040df"
3107+
integrity sha512-AcM7dV/5ul4EekoQ29Agm5vri8JNqRyj39o0qpX6vDF2GZrtutZl5RwgD1XnZjiTAfncsJhMI48QQH3sN87YNA==
3108+
31083109
semver@^7.6.0:
31093110
version "7.6.0"
31103111
resolved "https://registry.yarnpkg.com/semver/-/semver-7.6.0.tgz#1a46a4db4bffcccd97b743b5005c8325f23d4e2d"

0 commit comments

Comments
 (0)