From 2e077d13fee24b7908371f475c67f4e83d860f94 Mon Sep 17 00:00:00 2001 From: Chase Date: Tue, 6 Mar 2018 09:37:31 +0100 Subject: [PATCH] Upgrade moment for CVE-2017-18214 For more info, see: https://nvd.nist.gov/vuln/detail/CVE-2017-18214 This is currently triggering github security alerts on all projects using keystone 4.x --- package.json | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/package.json b/package.json index 07e05114e2..6f7e04e0ab 100644 --- a/package.json +++ b/package.json @@ -59,7 +59,7 @@ "marked": "0.3.9", "method-override": "2.3.10", "mime-types": "2.1.15", - "moment": "2.18.1", + "moment": "2.19.3", "mongoose": "4.9.2", "morgan": "1.9.0", "multer": "0.1.8",