From 252389f3276adde09a3dc599d9420585f4b297fc Mon Sep 17 00:00:00 2001 From: Charles Tang Date: Tue, 29 Aug 2023 15:22:46 -0700 Subject: [PATCH] upgrade node version (#2492) # What does this PR do? Security vulnerability in `semver` seen due to node. This PR upgrades the node version to bump up semver from 7.5.1 to 7.5.2 # Tests Action Run: https://github.com/mosaicml/composer/actions/runs/6017539089 Correct version of semver seen after upgrade: ``` #14 [pytorch_stage 7/24] RUN npm list -g semver --depth=1 #14 2.223 /usr/lib #14 2.223 `-- npm@9.8.0 #14 2.223 `-- semver@7.5.2 #14 2.223 #14 DONE 2.4s ``` --- docker/Dockerfile | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/docker/Dockerfile b/docker/Dockerfile index 428e9ffa3f..bf128a5025 100644 --- a/docker/Dockerfile +++ b/docker/Dockerfile @@ -163,7 +163,7 @@ RUN add-apt-repository ppa:git-core/ppa && \ # Install NodeJS (for Pyright) ############################## RUN \ - curl -fsSL https://deb.nodesource.com/setup_18.x | bash - && \ + curl -fsSL https://deb.nodesource.com/setup_20.x | bash - && \ apt-get install -y --no-install-recommends nodejs && \ apt-get autoclean && \ apt-get clean && \