From e7db5ff9db85e8e056556610822741cefc539073 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 10 Jan 2024 14:36:48 +0000 Subject: [PATCH] fix: package.json & yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-SERIALIZEJAVASCRIPT-6147607 --- package.json | 2 +- yarn.lock | 8 ++++---- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/package.json b/package.json index e9408e3..fdfd25b 100644 --- a/package.json +++ b/package.json @@ -33,7 +33,7 @@ "braces": "^3.0.2", "core-js": "^3.7.0", "js-yaml-loader": "^1.2.2", - "serialize-javascript": "^5.0.1", + "serialize-javascript": "^6.0.2", "vue": "^2.6.12", "vue-router": "^3.4.9" }, diff --git a/yarn.lock b/yarn.lock index f22cda5..cd5262f 100644 --- a/yarn.lock +++ b/yarn.lock @@ -10906,10 +10906,10 @@ serialize-javascript@^2.1.1, serialize-javascript@^2.1.2, serialize-javascript@^ resolved "https://registry.yarnpkg.com/serialize-javascript/-/serialize-javascript-2.1.2.tgz#ecec53b0e0317bdc95ef76ab7074b7384785fa61" integrity sha512-rs9OggEUF0V4jUSecXazOYsLfu7OGK2qIn3c7IPBiffz32XniEp/TX9Xmc9LQfK2nQ2QKHvZ2oygKUGU0lG4jQ== -serialize-javascript@^5.0.1: - version "5.0.1" - resolved "https://registry.yarnpkg.com/serialize-javascript/-/serialize-javascript-5.0.1.tgz#7886ec848049a462467a97d3d918ebb2aaf934f4" - integrity sha512-SaaNal9imEO737H2c05Og0/8LUXG7EnsZyMa8MzkmuHoELfT6txuj0cMqRj6zfPKnmQ1yasR4PCJc8x+M4JSPA== +serialize-javascript@^6.0.2: + version "6.0.2" + resolved "https://registry.yarnpkg.com/serialize-javascript/-/serialize-javascript-6.0.2.tgz#defa1e055c83bf6d59ea805d8da862254eb6a6c2" + integrity sha512-Saa1xPByTTq2gdeFZYLLo+RFE35NHZkAbqZeWNd3BpzppeVisAqpDjcp8dyf6uIvEqJRd46jemmyA4iFIeVk8g== dependencies: randombytes "^2.1.0"