From 2202b4503bdd2176b197871f3f9d6315baee1c9b Mon Sep 17 00:00:00 2001 From: Snyk bot Date: Sat, 22 Jun 2019 07:23:34 +0300 Subject: [PATCH] fix: package.json & package-lock.json to reduce vulnerabilities (#151) The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-SEQUELIZE-450221 --- package-lock.json | 29 +++++++++++++---------------- package.json | 2 +- 2 files changed, 14 insertions(+), 17 deletions(-) diff --git a/package-lock.json b/package-lock.json index 0125ff554..9844295a6 100644 --- a/package-lock.json +++ b/package-lock.json @@ -8556,9 +8556,9 @@ "integrity": "sha1-1WgS4cAXpuTnw+Ojeh2m143TyT4=" }, "sequelize": { - "version": "5.8.7", - "resolved": "https://registry.npmjs.org/sequelize/-/sequelize-5.8.7.tgz", - "integrity": "sha512-1rubZM8fAyCt5ipyS+3HJ3Jbmb8WesLdPJ3jIbTD+78EbuPZILFEA5fK0mliVRBx7oM7oPULeVX0lxSRXBV1jw==", + "version": "5.8.11", + "resolved": "https://registry.npmjs.org/sequelize/-/sequelize-5.8.11.tgz", + "integrity": "sha512-liaJWsXBxB1GUqUMNudX0eh8N7Rb5oTQcKdE6UZnW6efumkEU96BzGQvk3SXonaJs4KlfG7Zm8kozLjv3nXTiQ==", "requires": { "bluebird": "^3.5.0", "cls-bluebird": "^2.1.0", @@ -8570,7 +8570,7 @@ "moment-timezone": "^0.5.21", "retry-as-promised": "^3.1.0", "semver": "^5.6.0", - "sequelize-pool": "^1.0.2", + "sequelize-pool": "^2.1.0", "toposort-class": "^1.0.1", "uuid": "^3.2.1", "validator": "^10.11.0", @@ -8586,9 +8586,9 @@ } }, "ms": { - "version": "2.1.1", - "resolved": "https://registry.npmjs.org/ms/-/ms-2.1.1.tgz", - "integrity": "sha512-tgp+dl5cGk28utYktBsrFqA7HKgrhgPsg6Z/EfhWI4gl1Hwq8B/GmY/0oXZ6nF8hDVesS/FpnYaD/kOWhYQvyg==" + "version": "2.1.2", + "resolved": "https://registry.npmjs.org/ms/-/ms-2.1.2.tgz", + "integrity": "sha512-sGkPx+VjMtmA6MX27oA4FBFELFCZZ4S4XqeGOXCv68tT+jb3vk/RyaKWP0PTKyWtmLSM0b+adUTEvbs1PEaH2w==" }, "semver": { "version": "5.7.0", @@ -8598,12 +8598,9 @@ } }, "sequelize-pool": { - "version": "1.0.2", - "resolved": "https://registry.npmjs.org/sequelize-pool/-/sequelize-pool-1.0.2.tgz", - "integrity": "sha512-VMKl/gCCdIvB1gFZ7p+oqLFEyZEz3oMMYjkKvfEC7GoO9bBcxmfOOU9RdkoltfXGgBZFigSChihRly2gKtsh2w==", - "requires": { - "bluebird": "^3.5.3" - } + "version": "2.1.0", + "resolved": "https://registry.npmjs.org/sequelize-pool/-/sequelize-pool-2.1.0.tgz", + "integrity": "sha512-NDy4qJPxm6+i7FEQqAsJPKVmKLOgorQJ5fYxrTNmvhb3QAbC5nAUxftiIOKQCyYXhWSgPBlDw7eJQozavmq45g==" }, "serve-static": { "version": "1.14.1", @@ -9929,9 +9926,9 @@ } }, "wkx": { - "version": "0.4.6", - "resolved": "https://registry.npmjs.org/wkx/-/wkx-0.4.6.tgz", - "integrity": "sha512-LHxXlzRCYQXA9ZHgs8r7Gafh0gVOE8o3QmudM1PIkOdkXXjW7Thcl+gb2P2dRuKgW8cqkitCRZkkjtmWzpHi7A==", + "version": "0.4.7", + "resolved": "https://registry.npmjs.org/wkx/-/wkx-0.4.7.tgz", + "integrity": "sha512-pHf546L96TK8RradLt1cWaIffstgv/zXZ14CGz5KnBs1AxBX0wm+IDphjJw0qrEqRv8P9W9CdTt8Z1unMRZ19A==", "requires": { "@types/node": "*" } diff --git a/package.json b/package.json index cc1c4d70a..50d01f34f 100644 --- a/package.json +++ b/package.json @@ -63,7 +63,7 @@ "replace-in-file": "^3.4.4", "request": "^2.88.0", "request-promise-native": "^1.0.7", - "sequelize": "^5.8.7", + "sequelize": "^5.8.11", "sqlite3": "^4.0.8", "tedious": "^4.2.0", "umzug": "^2.2.0",