From e7b5cef96b82bf6e35b7f2c706ae5a76e0d32073 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 29 May 2024 00:22:29 +0000 Subject: [PATCH] fix: package.json & package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-MYSQL2-6861580 --- package-lock.json | 9 +++++---- package.json | 2 +- 2 files changed, 6 insertions(+), 5 deletions(-) diff --git a/package-lock.json b/package-lock.json index dbf02c3..8365e1f 100644 --- a/package-lock.json +++ b/package-lock.json @@ -14,7 +14,7 @@ "aws-lambda": "1.0.6", "express": "4.18.2", "moment": "2.29.4", - "mysql2": "3.9.7", + "mysql2": "^3.9.8", "serverless-http": "2.6.0", "source-map-support": "0.5.19", "winston": "^3.7.2", @@ -12933,9 +12933,10 @@ "license": "ISC" }, "node_modules/mysql2": { - "version": "3.9.7", - "resolved": "https://registry.npmjs.org/mysql2/-/mysql2-3.9.7.tgz", - "integrity": "sha512-KnJT8vYRcNAZv73uf9zpXqNbvBG7DJrs+1nACsjZP1HMJ1TgXEy8wnNilXAn/5i57JizXKtrUtwDB7HxT9DDpw==", + "version": "3.9.8", + "resolved": "https://registry.npmjs.org/mysql2/-/mysql2-3.9.8.tgz", + "integrity": "sha512-+5JKNjPuks1FNMoy9TYpl77f+5frbTklz7eb3XDwbpsERRLEeXiW2PDEkakYF50UuKU2qwfGnyXpKYvukv8mGA==", + "license": "MIT", "dependencies": { "denque": "^2.1.0", "generate-function": "^2.3.1", diff --git a/package.json b/package.json index 2090e9a..bebaf2a 100644 --- a/package.json +++ b/package.json @@ -52,7 +52,7 @@ "aws-lambda": "1.0.6", "express": "4.18.2", "moment": "2.29.4", - "mysql2": "3.9.7", + "mysql2": "3.9.8", "serverless-http": "2.6.0", "source-map-support": "0.5.19", "winston": "^3.7.2",