From f485595653f319659a70c9a5b6dfafe3b577fa5a Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 15 Mar 2024 14:02:46 -0400 Subject: [PATCH 1/2] fix: internal/local/testdata/dependencies/dir/functions/package.json & internal/local/testdata/dependencies/dir/functions/yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-FOLLOWREDIRECTS-6444610 --- internal/local/testdata/dependencies/dir/functions/package.json | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/internal/local/testdata/dependencies/dir/functions/package.json b/internal/local/testdata/dependencies/dir/functions/package.json index 2f0c4aa5..1f0c41f9 100644 --- a/internal/local/testdata/dependencies/dir/functions/package.json +++ b/internal/local/testdata/dependencies/dir/functions/package.json @@ -2,7 +2,7 @@ "dependencies": { "axios": "^0.21.1", "debug": "^4.3.1", - "follow-redirects": "^1.13.2", + "follow-redirects": "^1.15.6", "is-buffer": "^2.0.5" } } From e989b63bf722e31d63b5f3bd994e3bcb49c2c8a5 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 15 Mar 2024 14:02:47 -0400 Subject: [PATCH 2/2] fix: internal/local/testdata/dependencies/dir/functions/package.json & internal/local/testdata/dependencies/dir/functions/yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-FOLLOWREDIRECTS-6444610 --- .../local/testdata/dependencies/dir/functions/yarn.lock | 7 ++++++- 1 file changed, 6 insertions(+), 1 deletion(-) diff --git a/internal/local/testdata/dependencies/dir/functions/yarn.lock b/internal/local/testdata/dependencies/dir/functions/yarn.lock index 5aab7c7d..6f71a3f8 100644 --- a/internal/local/testdata/dependencies/dir/functions/yarn.lock +++ b/internal/local/testdata/dependencies/dir/functions/yarn.lock @@ -16,11 +16,16 @@ debug@^4.3.1: dependencies: ms "2.1.2" -follow-redirects@^1.13.2, follow-redirects@^1.14.0: +follow-redirects@^1.14.0: version "1.14.4" resolved "https://registry.yarnpkg.com/follow-redirects/-/follow-redirects-1.14.4.tgz#838fdf48a8bbdd79e52ee51fb1c94e3ed98b9379" integrity sha512-zwGkiSXC1MUJG/qmeIFH2HBJx9u0V46QGUe3YR1fXG8bXQxq7fLj0RjLZQ5nubr9qNJUZrH+xUcwXEoXNpfS+g== +follow-redirects@^1.15.6: + version "1.15.6" + resolved "https://registry.yarnpkg.com/follow-redirects/-/follow-redirects-1.15.6.tgz#7f815c0cda4249c74ff09e95ef97c23b5fd0399b" + integrity sha512-wWN62YITEaOpSK584EZXJafH1AGpO8RVgElfkuXbTOrPX4fIfOyEpW/CsiNd8JdYrAoOvafRTOEnvsO++qCqFA== + is-buffer@^2.0.5: version "2.0.5" resolved "https://registry.yarnpkg.com/is-buffer/-/is-buffer-2.0.5.tgz#ebc252e400d22ff8d77fa09888821a24a658c191"