From d3bebf8916488cac8e3a73e5ae66f80ba1b39701 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Wed, 17 Apr 2024 10:33:14 +0000 Subject: [PATCH] Bump jose from 1.28.2 to 5.2.4 Bumps [jose](https://github.com/panva/jose) from 1.28.2 to 5.2.4. - [Release notes](https://github.com/panva/jose/releases) - [Changelog](https://github.com/panva/jose/blob/main/CHANGELOG.md) - [Commits](https://github.com/panva/jose/compare/v1.28.2...v5.2.4) --- updated-dependencies: - dependency-name: jose dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] --- package-lock.json | 13 ++++--------- package.json | 2 +- 2 files changed, 5 insertions(+), 10 deletions(-) diff --git a/package-lock.json b/package-lock.json index 422ffa94842..704f0d6ca12 100644 --- a/package-lock.json +++ b/package-lock.json @@ -87,7 +87,7 @@ "i18next": "^23.3.0", "i18next-fs-backend": "^2.1.5", "ioredis": "^5.3.2", - "jose": "^1.28.1", + "jose": "^5.2.4", "jsdom": "^23.2.0", "jsonwebtoken": "^9.0.0", "jwks-rsa": "^2.0.5", @@ -14974,14 +14974,9 @@ } }, "node_modules/jose": { - "version": "1.28.2", - "license": "MIT", - "dependencies": { - "@panva/asn1.js": "^1.0.0" - }, - "engines": { - "node": ">=10.13.0" - }, + "version": "5.2.4", + "resolved": "https://registry.npmjs.org/jose/-/jose-5.2.4.tgz", + "integrity": "sha512-6ScbIk2WWCeXkmzF6bRPmEuaqy1m8SbsRFMa/FLrSCkGIhj8OLVG/IH+XHVmNMx/KUo8cVWEE6oKR4dJ+S0Rkg==", "funding": { "url": "https://github.com/sponsors/panva" } diff --git a/package.json b/package.json index 9f1b2360f07..1f179c0c099 100644 --- a/package.json +++ b/package.json @@ -194,7 +194,7 @@ "i18next": "^23.3.0", "i18next-fs-backend": "^2.1.5", "ioredis": "^5.3.2", - "jose": "^1.28.1", + "jose": "^5.2.4", "jsdom": "^23.2.0", "jsonwebtoken": "^9.0.0", "jwks-rsa": "^2.0.5",