From 1abb3d745b92d2e3985174c8bf63f7c17da15d5f Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 11 Sep 2024 14:59:04 +0000 Subject: [PATCH] fix: package.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-BODYPARSER-7926860 - https://snyk.io/vuln/SNYK-JS-EXPRESS-7926867 - https://snyk.io/vuln/SNYK-JS-SEND-7926862 - https://snyk.io/vuln/SNYK-JS-SERVESTATIC-7926865 --- package.json | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/package.json b/package.json index 23795fb473..8e898ed282 100644 --- a/package.json +++ b/package.json @@ -16,7 +16,7 @@ }, "dependencies": { "adm-zip": "0.4.7", - "body-parser": "1.9.0", + "body-parser": "1.20.3", "cfenv": "^1.0.4", "consolidate": "0.14.5", "dustjs-helpers": "1.5.0", @@ -24,7 +24,7 @@ "ejs": "1.0.0", "ejs-locals": "1.0.2", "errorhandler": "1.2.0", - "express": "4.12.4", + "express": "4.20.0", "express-fileupload": "0.0.5", "express-session": "^1.17.2", "file-type": "^8.1.0",