From d4c32452b96bb704a3e95cdb4da9d8acdf7e07d0 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 29 Sep 2022 21:14:07 +0000 Subject: [PATCH] fix: package.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-ASYNC-2441827 - https://snyk.io/vuln/SNYK-JS-BSON-561052 - https://snyk.io/vuln/SNYK-JS-EJS-1049328 - https://snyk.io/vuln/SNYK-JS-EJS-2803307 - https://snyk.io/vuln/SNYK-JS-ENGINEIO-1056749 - https://snyk.io/vuln/SNYK-JS-MONGODB-473855 - https://snyk.io/vuln/SNYK-JS-MONGOOSE-1086688 - https://snyk.io/vuln/SNYK-JS-MONGOOSE-2961688 - https://snyk.io/vuln/SNYK-JS-MPATH-1577289 - https://snyk.io/vuln/SNYK-JS-MQUERY-1050858 - https://snyk.io/vuln/SNYK-JS-MQUERY-1089718 --- package.json | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/package.json b/package.json index 8562f2c..dd51603 100644 --- a/package.json +++ b/package.json @@ -10,16 +10,16 @@ "client-sessions": "^0.8.0", "cookie-parser": "~1.4.3", "debug": "~2.6.3", - "ejs": "~2.5.6", + "ejs": "~3.1.7", "express": "~4.16.0", "floatthead": "^2.0.3", "helmet": "^3.9.0", "machinepack-hackerrank": "^0.1.2", - "mongodb": "^2.2.31", - "mongoose": "^4.11.10", + "mongodb": "^3.1.13", + "mongoose": "^5.13.15", "morgan": "~1.9.0", "nprogress": "^0.2.0", "serve-favicon": "~2.4.2", - "socket.io": "^2.0.3" + "socket.io": "^3.0.0" } }