From b2b54d476e2abaaba0ea7771375bcd6318fb442c Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 10 Jul 2020 05:19:35 +0000 Subject: [PATCH] fix: package.json & package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-LODASH-567746 --- package-lock.json | 6 +++--- package.json | 2 +- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/package-lock.json b/package-lock.json index 929ca1d..7458aef 100644 --- a/package-lock.json +++ b/package-lock.json @@ -659,9 +659,9 @@ } }, "lodash": { - "version": "4.17.10", - "resolved": "https://registry.npmjs.org/lodash/-/lodash-4.17.10.tgz", - "integrity": "sha512-UejweD1pDoXu+AD825lWwp4ZGtSwgnpZxb3JDViD7StjQz+Nb/6l093lx4OQ0foGWNRoc19mWy7BzL+UAK2iVg==" + "version": "4.17.16", + "resolved": "https://registry.npmjs.org/lodash/-/lodash-4.17.16.tgz", + "integrity": "sha512-mzxOTaU4AsJhnIujhngm+OnA6JX4fTI8D5H26wwGd+BJ57bW70oyRwTqo6EFJm1jTZ7hCo7yVzH1vB8TMFd2ww==" }, "lodash._baseget": { "version": "3.7.2", diff --git a/package.json b/package.json index 834839d..3df9bfa 100644 --- a/package.json +++ b/package.json @@ -60,7 +60,7 @@ "json-schema-ref-parser": "^3.1.2", "json-stringify-safe": "^5.0.1", "jsonpointer": "^4.0.1", - "lodash": "^4.17.4", + "lodash": "^4.17.16", "lodash._baseget": "^3.7.2", "lodash._topath": "^3.8.1", "lodash.get": "^4.4.2",