From 69fdaf2ccf9f33a76893017e4cbd2a1dea861ba1 Mon Sep 17 00:00:00 2001 From: nikolas Date: Wed, 24 Jan 2024 11:45:19 -0500 Subject: [PATCH] Update simple-get to 4.0.1 Previous versions of simple-get are vulnerable to CVE-2022-0355. https://nvd.nist.gov/vuln/detail/CVE-2022-0355 --- CHANGELOG.md | 1 + package.json | 2 +- 2 files changed, 2 insertions(+), 1 deletion(-) diff --git a/CHANGELOG.md b/CHANGELOG.md index 73ad0b00b..c85dda09a 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -8,6 +8,7 @@ project adheres to [Semantic Versioning](http://semver.org/). (Unreleased) ================== ### Changed +* Updated simple-get to 4.0.1. ### Added ### Fixed diff --git a/package.json b/package.json index c4e340972..d980863c5 100644 --- a/package.json +++ b/package.json @@ -47,7 +47,7 @@ "dependencies": { "node-addon-api": "^7.0.0", "prebuild-install": "^7.1.1", - "simple-get": "^3.0.3" + "simple-get": "^4.0.1" }, "devDependencies": { "@types/node": "^10.12.18",