From 170baa459b49f1eb5e4ede4e90d44750867d7080 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 5 Jan 2024 15:28:34 +0000 Subject: [PATCH] fix: package.json & package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-NODEMAILER-1038834 - https://snyk.io/vuln/SNYK-JS-NODEMAILER-1296415 --- package-lock.json | 8 ++++---- package.json | 2 +- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/package-lock.json b/package-lock.json index 22672fd..7fe2572 100644 --- a/package-lock.json +++ b/package-lock.json @@ -16,7 +16,7 @@ "lodash": "^4.17.13", "middy": "^0.36.0", "node-fetch": "^2.6.1", - "nodemailer": "^4.6.8", + "nodemailer": "^6.6.1", "serverless": "^3.32.2", "serverless-http": "^3.2.0", "uuid": "^3.3.2" @@ -14548,9 +14548,9 @@ } }, "node_modules/nodemailer": { - "version": "4.7.0", - "resolved": "https://registry.npmjs.org/nodemailer/-/nodemailer-4.7.0.tgz", - "integrity": "sha512-IludxDypFpYw4xpzKdMAozBSkzKHmNBvGanUREjJItgJ2NYcK/s8+PggVhj7c2yGFQykKsnnmv1+Aqo0ZfjHmw==", + "version": "6.6.1", + "resolved": "https://registry.npmjs.org/nodemailer/-/nodemailer-6.6.1.tgz", + "integrity": "sha512-1xzFN3gqv+/qJ6YRyxBxfTYstLNt0FCtZaFRvf4Sg9wxNGWbwFmGXVpfSi6ThGK6aRxAo+KjHtYSW8NvCsNSAg==", "engines": { "node": ">=6.0.0" } diff --git a/package.json b/package.json index 4070f8d..d622a1a 100644 --- a/package.json +++ b/package.json @@ -37,7 +37,7 @@ "lodash": "^4.17.13", "middy": "^0.36.0", "node-fetch": "^2.6.1", - "nodemailer": "^4.6.8", + "nodemailer": "^6.6.1", "serverless": "^3.32.2", "serverless-http": "^3.2.0", "uuid": "^3.3.2"