From 285ba300ba48f2ffbcdde7c398d275c44008f753 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 17 Jul 2023 20:54:28 +0000 Subject: [PATCH] fix: package.json & package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-MONGOOSE-5777721 --- package-lock.json | 8 ++++---- package.json | 2 +- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/package-lock.json b/package-lock.json index fd83c50..7fb7326 100644 --- a/package-lock.json +++ b/package-lock.json @@ -22,7 +22,7 @@ "express": "^4.18.2", "genius-lyrics": "^4.4.0", "libsodium-wrappers": "^0.7.10", - "mongoose": "^6.7.0" + "mongoose": "^6.11.3" }, "devDependencies": { "@types/express": "^4.17.14", @@ -2981,9 +2981,9 @@ } }, "node_modules/mongoose": { - "version": "6.11.1", - "resolved": "https://registry.npmjs.org/mongoose/-/mongoose-6.11.1.tgz", - "integrity": "sha512-AvQ8C5ZGF6GcsQhoRg/i7pbNZpb96qLGU5ICBllckp7qMOxcfUF1nA6JstZw841BqRcE6myZ/mx9CluEESaw5Q==", + "version": "6.11.3", + "resolved": "https://registry.npmjs.org/mongoose/-/mongoose-6.11.3.tgz", + "integrity": "sha512-M1Y5PjttgV51YDa30u7GVMVypQSlNZF/jUhlzTBAmaz5C9FvOr8eih/VLhhO7xtTSlcVTFQS1dqlQNMbtfUowQ==", "dependencies": { "bson": "^4.7.2", "kareem": "2.5.1", diff --git a/package.json b/package.json index b83b5d5..17ee622 100644 --- a/package.json +++ b/package.json @@ -32,7 +32,7 @@ "express": "^4.18.2", "genius-lyrics": "^4.4.0", "libsodium-wrappers": "^0.7.10", - "mongoose": "^6.7.0" + "mongoose": "^6.11.3" }, "devDependencies": { "@types/express": "^4.17.14",