From 616ed8ee44e82609a4cb9726a1058bd5dee4d02b Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 2 Jun 2022 18:48:44 +0000 Subject: [PATCH] fix: upgrade express-session from 1.17.2 to 1.17.3 Snyk has created this PR to upgrade express-session from 1.17.2 to 1.17.3. See this package in npm: See this project in Snyk: https://app.snyk.io/org/minlaxz/project/e0e24bd6-2c38-4811-afd3-5ea706e30024?utm_source=github&utm_medium=referral&page=upgrade-pr --- package.json | 2 +- yarn.lock | 15 ++++++++++----- 2 files changed, 11 insertions(+), 6 deletions(-) diff --git a/package.json b/package.json index c9d41a0..8c9b408 100644 --- a/package.json +++ b/package.json @@ -26,7 +26,7 @@ "dotenv": "^10.0.0", "express": "^4.17.1", "express-rate-limit": "^5.4.1", - "express-session": "^1.17.2", + "express-session": "^1.17.3", "helmet": "^4.6.0", "joi": "^17.6.0", "jsonwebtoken": "^8.5.1", diff --git a/yarn.lock b/yarn.lock index 2dd7fe5..8079a31 100644 --- a/yarn.lock +++ b/yarn.lock @@ -450,6 +450,11 @@ cookie@0.4.1: resolved "https://registry.yarnpkg.com/cookie/-/cookie-0.4.1.tgz#afd713fe26ebd21ba95ceb61f9a8116e50a537d1" integrity sha512-ZwrFkGJxUR3EIoXtO+yVE69Eb7KlixbaeAWfBQB9vVsNn/o+Yw69gBWSSDK825hQNdN+wF8zELf3dFNl/kxkUA== +cookie@0.4.2: + version "0.4.2" + resolved "https://registry.yarnpkg.com/cookie/-/cookie-0.4.2.tgz#0e41f24de5ecf317947c82fc789e06a884824432" + integrity sha512-aSWTXFzaKWkvHO1Ny/s+ePFpvKsPnjc551iI41v3ny/ow6tBG5Vd+FuqGNhh1LxOmVzOlGUriIlOaokOvhaStA== + core-util-is@~1.0.0: version "1.0.2" resolved "https://registry.yarnpkg.com/core-util-is/-/core-util-is-1.0.2.tgz#b5fd54220aa2bc5ab57aab7140c940754503c1a7" @@ -638,12 +643,12 @@ express-rate-limit@^5.4.1: resolved "https://registry.yarnpkg.com/express-rate-limit/-/express-rate-limit-5.5.0.tgz#27dc48b5cc325448df47d02d5f4a2183b723781d" integrity sha512-/1mrKggjXMxd1/ghPub5N3d36u5VlK8KjbQFQLxYub09BWSSgSXMQbXgFiIW0BYxjM49YCj8bkihONZR2U4+mQ== -express-session@^1.17.2: - version "1.17.2" - resolved "https://registry.yarnpkg.com/express-session/-/express-session-1.17.2.tgz#397020374f9bf7997f891b85ea338767b30d0efd" - integrity sha512-mPcYcLA0lvh7D4Oqr5aNJFMtBMKPLl++OKKxkHzZ0U0oDq1rpKBnkR5f5vCHR26VeArlTOEF9td4x5IjICksRQ== +express-session@^1.17.3: + version "1.17.3" + resolved "https://registry.yarnpkg.com/express-session/-/express-session-1.17.3.tgz#14b997a15ed43e5949cb1d073725675dd2777f36" + integrity sha512-4+otWXlShYlG1Ma+2Jnn+xgKUZTMJ5QD3YvfilX3AcocOAbIkVylSWEklzALe/+Pu4qV6TYBj5GwOBFfdKqLBw== dependencies: - cookie "0.4.1" + cookie "0.4.2" cookie-signature "1.0.6" debug "2.6.9" depd "~2.0.0"