From 7b04fd08a46bf51cbc6781020e8c920f7edc6ac2 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 20 Feb 2023 15:37:58 +0000 Subject: [PATCH 1/2] fix: examples/package.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-EJS-1049328 - https://snyk.io/vuln/SNYK-JS-EJS-2803307 - https://snyk.io/vuln/SNYK-JS-QS-3153490 - https://snyk.io/vuln/npm:debug:20170905 - https://snyk.io/vuln/npm:ejs:20161128 - https://snyk.io/vuln/npm:ejs:20161130 - https://snyk.io/vuln/npm:ejs:20161130-1 - https://snyk.io/vuln/npm:fresh:20170908 - https://snyk.io/vuln/npm:mime:20170907 - https://snyk.io/vuln/npm:ms:20151024 - https://snyk.io/vuln/npm:ms:20170412 - https://snyk.io/vuln/npm:negotiator:20160616 - https://snyk.io/vuln/npm:qs:20170213 - https://snyk.io/vuln/npm:send:20151103 --- examples/package.json | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/examples/package.json b/examples/package.json index 3107bcd..f0f265b 100644 --- a/examples/package.json +++ b/examples/package.json @@ -11,8 +11,8 @@ "node": ">=0.6.2" }, "dependencies": { - "ejs": "2.0.8", - "express": "4.10.7" + "ejs": "3.1.7", + "express": "4.17.3" }, "scripts": { "start": "node app.js" From 83c77f44f807661a143a20305ca2c5ab477fe091 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 20 Feb 2023 15:39:18 +0000 Subject: [PATCH 2/2] fix: package.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-EJS-1049328 - https://snyk.io/vuln/SNYK-JS-EJS-2803307 - https://snyk.io/vuln/SNYK-JS-QS-3153490 - https://snyk.io/vuln/npm:debug:20170905 - https://snyk.io/vuln/npm:ejs:20161128 - https://snyk.io/vuln/npm:ejs:20161130 - https://snyk.io/vuln/npm:ejs:20161130-1 - https://snyk.io/vuln/npm:fresh:20170908 - https://snyk.io/vuln/npm:mime:20170907 - https://snyk.io/vuln/npm:ms:20151024 - https://snyk.io/vuln/npm:ms:20170412 - https://snyk.io/vuln/npm:negotiator:20160616 - https://snyk.io/vuln/npm:qs:20170213 - https://snyk.io/vuln/npm:send:20151103 --- package.json | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/package.json b/package.json index d6309f2..4f4b8dc 100644 --- a/package.json +++ b/package.json @@ -13,9 +13,9 @@ "node": ">=0.6.2" }, "dependencies": { - "ejs": "2.0.8", + "ejs": "3.1.7", "exif": "git://github.com/cianclarke/node-exif.git", - "express": "4.10.7", + "express": "4.17.3", "gm": "^1.17.0", "imagemagick-stream": "^1.1.0", "memory-cache": "^0.1.1",