From 5df4120aeadb5dc1d8750c4d863eee3bd6e1aab6 Mon Sep 17 00:00:00 2001 From: Eric Cornelissen Date: Sun, 1 Sep 2024 16:48:31 +0200 Subject: [PATCH] Bump micromatch from 4.0.4 to 4.0.8 This addresses CVE-2024-4067 / GHSA-952p-6rrq-rcjv as identified by `npm audit`. --- package-lock.json | 8 +++++--- 1 file changed, 5 insertions(+), 3 deletions(-) diff --git a/package-lock.json b/package-lock.json index c77f4f0..277fee5 100644 --- a/package-lock.json +++ b/package-lock.json @@ -1659,12 +1659,14 @@ } }, "node_modules/micromatch": { - "version": "4.0.4", + "version": "4.0.8", + "resolved": "https://registry.npmjs.org/micromatch/-/micromatch-4.0.8.tgz", + "integrity": "sha512-PXwfBhYu0hBCPw8Dn0E+WDYb7af3dSLVWKi3HGv84IdF4TyFoC0ysxFd0Goxw7nSv4T/PzEJQxsYsEiFCKo2BA==", "dev": true, "license": "MIT", "dependencies": { - "braces": "^3.0.1", - "picomatch": "^2.2.3" + "braces": "^3.0.3", + "picomatch": "^2.3.1" }, "engines": { "node": ">=8.6"