From dc8f59c7fa45783b7f0c1b83a7afc821c2af3c0e Mon Sep 17 00:00:00 2001 From: "opensearch-trigger-bot[bot]" <98922864+opensearch-trigger-bot[bot]@users.noreply.github.com> Date: Mon, 17 Apr 2023 16:14:25 -0700 Subject: [PATCH] [CVE-2022-25851][1.x] Bump jpeg-js from 0.4.1 to 0.4.4 (#3741) (#3860) Issue Resolve https://github.com/opensearch-project/OpenSearch-Dashboards/issues/1725 Backport PR https://github.com/opensearch-project/OpenSearch-Dashboards/pull/1753 Signed-off-by: Anan Zhuang Co-authored-by: Josh Romero (cherry picked from commit 637d54576b67c57918e55aafbc605d3fff174bb1) Signed-off-by: github-actions[bot] # Conflicts: # CHANGELOG.md Co-authored-by: github-actions[bot] --- yarn.lock | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/yarn.lock b/yarn.lock index d5a68ef22aad..079998314604 100644 --- a/yarn.lock +++ b/yarn.lock @@ -13279,9 +13279,9 @@ joi@13.x.x, joi@^13.5.2: topo "3.x.x" jpeg-js@^0.4.0: - version "0.4.1" - resolved "https://registry.yarnpkg.com/jpeg-js/-/jpeg-js-0.4.1.tgz#937a3ae911eb6427f151760f8123f04c8bfe6ef7" - integrity sha512-jA55yJiB5tCXEddos8JBbvW+IMrqY0y1tjjx9KNVtA+QPmu7ND5j0zkKopClpUTsaETL135uOM2XfcYG4XRjmw== + version "0.4.4" + resolved "https://registry.yarnpkg.com/jpeg-js/-/jpeg-js-0.4.4.tgz#a9f1c6f1f9f0fa80cdb3484ed9635054d28936aa" + integrity sha512-WZzeDOEtTOBK4Mdsar0IqEU5sMr3vSV2RqkAIzUEV2BHnUfKGyswWFPFwK5EeDo93K3FohSHbLAjj0s1Wzd+dg== jquery@^3.5.0: version "3.5.0"