Skip to content

Commit 26ac73b

Browse files
Security vulns (#119)
* Security vulns * Bump semver package * Lock node to 16.20.2
1 parent a3f9f6c commit 26ac73b

File tree

5 files changed

+10
-19
lines changed

5 files changed

+10
-19
lines changed

.nvmrc

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1 +1 @@
1-
v16.18.1
1+
v16.20.2

Dockerfile

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,4 +1,4 @@
1-
FROM node:16.20-bullseye-slim
1+
FROM node:16.20.2-bullseye-slim
22

33
WORKDIR /root/cf-runtime
44

package.json

Lines changed: 3 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -7,7 +7,8 @@
77
],
88
"resolutions": {
99
"minimist": "^0.2.1",
10-
"redis": "^3.1.1"
10+
"redis": "^3.1.1",
11+
"semver": "^7.5.2"
1112
},
1213
"dependencies": {
1314
"@codefresh-io/task-logger": "^1.10.1",
@@ -42,7 +43,7 @@
4243
"sinon-chai": "^3.7.0"
4344
},
4445
"engines": {
45-
"node": "16.20"
46+
"node": "16.20.2"
4647
},
4748
"scripts": {
4849
"lint": "eslint '*/**/*.js'",

service.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1 +1 @@
1-
version: 1.10.2
1+
version: 1.10.3

yarn.lock

Lines changed: 4 additions & 14 deletions
Original file line numberDiff line numberDiff line change
@@ -3183,20 +3183,10 @@ saslprep@^1.0.0:
31833183
dependencies:
31843184
sparse-bitfield "^3.0.3"
31853185

3186-
semver@^5.6.0:
3187-
version "5.7.1"
3188-
resolved "https://registry.yarnpkg.com/semver/-/semver-5.7.1.tgz#a954f931aeba508d307bbf069eff0c01c96116f7"
3189-
integrity sha512-sauaDf/PZdVgrLTNYHRtpXa1iRiKcaebiKQ1BJdpQlWH2lCvexQdX55snPFyK7QzpudqbCI0qXFfOasHdyNDGQ==
3190-
3191-
semver@^6.1.0, semver@^6.3.0:
3192-
version "6.3.0"
3193-
resolved "https://registry.yarnpkg.com/semver/-/semver-6.3.0.tgz#ee0a64c8af5e8ceea67687b133761e1becbd1d3d"
3194-
integrity sha512-b39TBaTSfV6yBrapU89p5fKekE2m/NwnDocOVruQFS1/veMgdzuPcnOM34M6CwxW8jH/lxEa5rBoDeUwu5HHTw==
3195-
3196-
semver@^7.2.1:
3197-
version "7.3.5"
3198-
resolved "https://registry.yarnpkg.com/semver/-/semver-7.3.5.tgz#0b621c879348d8998e4b0e4be94b3f12e6018ef7"
3199-
integrity sha512-PoeGJYh8HK4BTO/a9Tf6ZG3veo/A7ZVsYrSA6J8ny9nb3B1VrpkuN+z9OE5wfE5p6H4LchYZsegiQgbJD94ZFQ==
3186+
semver@^5.6.0, semver@^6.1.0, semver@^6.3.0, semver@^7.2.1, semver@^7.5.2:
3187+
version "7.5.4"
3188+
resolved "https://registry.yarnpkg.com/semver/-/semver-7.5.4.tgz#483986ec4ed38e1c6c48c34894a9182dbff68a6e"
3189+
integrity sha512-1bCSESV6Pv+i21Hvpxp3Dx+pSD8lIPt8uVjRrxAUt/nbswYc+tK6Y2btiULjd4+fnq15PX+nqQDC7Oft7WkwcA==
32003190
dependencies:
32013191
lru-cache "^6.0.0"
32023192

0 commit comments

Comments
 (0)