From 422c79b48a1a02232d9a4b71a76cdc6b6c9c4b3a Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 26 Mar 2025 07:48:33 +0000 Subject: [PATCH] fix: package.json & yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-AXIOS-9403194 --- package.json | 2 +- yarn.lock | 8 ++++---- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/package.json b/package.json index 8ce762d..86ba98e 100644 --- a/package.json +++ b/package.json @@ -45,7 +45,7 @@ "typescript": "^5.3.3" }, "dependencies": { - "axios": "^1.7.4", + "axios": "^1.8.3", "chalk": "^4.1.2", "commander": "^12.0.0", "fs-directory": "^1.0.0", diff --git a/yarn.lock b/yarn.lock index 20dc24c..2f46615 100644 --- a/yarn.lock +++ b/yarn.lock @@ -314,10 +314,10 @@ available-typed-arrays@^1.0.7: dependencies: possible-typed-array-names "^1.0.0" -axios@^1.7.4: - version "1.7.7" - resolved "https://registry.yarnpkg.com/axios/-/axios-1.7.7.tgz#2f554296f9892a72ac8d8e4c5b79c14a91d0a47f" - integrity sha512-S4kL7XrjgBmvdGut0sN3yJxqYzrDOnivkBiN0OFs6hLiUam3UPvswUo0kqGyhqUZGEOytHyumEdXsAkgCOUf3Q== +axios@^1.8.3: + version "1.8.4" + resolved "https://registry.yarnpkg.com/axios/-/axios-1.8.4.tgz#78990bb4bc63d2cae072952d374835950a82f447" + integrity sha512-eBSYY4Y68NNlHbHBMdeDmKNtDgXWhQsJcGqzO3iLUM0GraQFSS9cVgPX5I9b3lbdFKyYoAEGAZF1DwhTaljNAw== dependencies: follow-redirects "^1.15.6" form-data "^4.0.0"