Skip to content

Commit

Permalink
Slack-bolt 3.17.1 er ein patch-release som rettar sårbarheita i axios (
Browse files Browse the repository at this point in the history
  • Loading branch information
madsop-nav authored Mar 15, 2024
1 parent 0e68d79 commit 13df337
Show file tree
Hide file tree
Showing 2 changed files with 37 additions and 23 deletions.
2 changes: 1 addition & 1 deletion apps/ey-slackbot/package.json
Original file line number Diff line number Diff line change
Expand Up @@ -6,7 +6,7 @@
"start": "node src/app.js"
},
"dependencies": {
"@slack/bolt": "^3.17.0",
"@slack/bolt": "^3.17.1",
"cron": "^3.1.4"
},
"engines": {
Expand Down
58 changes: 36 additions & 22 deletions apps/ey-slackbot/yarn.lock
Original file line number Diff line number Diff line change
Expand Up @@ -2,16 +2,16 @@
# yarn lockfile v1


"@slack/bolt@^3.17.0":
version "3.17.0"
resolved "https://registry.yarnpkg.com/@slack/bolt/-/bolt-3.17.0.tgz#717b1aa30243ba08332a3ab17c31361444e06a97"
integrity sha512-gxZygJj/wnrrSPCAlXO4D5FIYre2McPC+Vwrkq6CS74S4MI+0/gRvdUUXMHoF+oSGfsGs3ul6Fk+Bc/EE7Waig==
"@slack/bolt@^3.17.1":
version "3.17.1"
resolved "https://registry.yarnpkg.com/@slack/bolt/-/bolt-3.17.1.tgz#97afcd3f79869591f82bb77ee4e8383607f4be79"
integrity sha512-N+4WxpkM59RXi7BL3IXUtENnn9cF7TOBn7ttaHpgvlnjUaro+yQyY60arXTlP4ytVDFJ1w0mSdfftcM17h+i2w==
dependencies:
"@slack/logger" "^4.0.0"
"@slack/oauth" "^2.6.1"
"@slack/socket-mode" "^1.3.2"
"@slack/oauth" "^2.6.2"
"@slack/socket-mode" "^1.3.3"
"@slack/types" "^2.11.0"
"@slack/web-api" "^6.11.0"
"@slack/web-api" "^6.11.2"
"@types/express" "^4.16.1"
"@types/promise.allsettled" "^1.0.3"
"@types/tsscmp" "^1.0.0"
Expand All @@ -37,25 +37,25 @@
dependencies:
"@types/node" ">=18.0.0"

"@slack/oauth@^2.6.1":
version "2.6.1"
resolved "https://registry.yarnpkg.com/@slack/oauth/-/oauth-2.6.1.tgz#96327397455d5cf8797c891c9f10a4c5050638ce"
integrity sha512-Qm8LI+W9gtC5YQz/3yq7b6Qza7SSIJ9jVIgbkrY3AGwT4E0P6mUFV5gKHadvDEfTGG3ZiWuKMyC06ZpexZsQgg==
"@slack/oauth@^2.6.2":
version "2.6.2"
resolved "https://registry.yarnpkg.com/@slack/oauth/-/oauth-2.6.2.tgz#02fc569ecd0be459c92ac17d4629b7fdc89ff3a9"
integrity sha512-2R3MyB/R63hTRXzk5J6wcui59TBxXzhk+Uh2/Xu3Wp3O4pXg/BNucQhP/DQbL/ScVhLvFtMXirLrKi0Yo5gIVw==
dependencies:
"@slack/logger" "^3.0.0"
"@slack/web-api" "^6.3.0"
"@slack/web-api" "^6.11.2"
"@types/jsonwebtoken" "^8.3.7"
"@types/node" ">=12"
jsonwebtoken "^9.0.0"
lodash.isstring "^4.0.1"

"@slack/socket-mode@^1.3.2":
version "1.3.2"
resolved "https://registry.yarnpkg.com/@slack/socket-mode/-/socket-mode-1.3.2.tgz#b3c4db146779cb63ec240a10de722deadd907305"
integrity sha512-6LiwYE6k4DNbnctZZSLfERiOzWngAvXogxQEYzUkxeZgh2GC6EdmRq6OEbZXOBe71/K66YVx05VfR7B4b1ScTQ==
"@slack/socket-mode@^1.3.3":
version "1.3.3"
resolved "https://registry.yarnpkg.com/@slack/socket-mode/-/socket-mode-1.3.3.tgz#8eb669653d5fd4ab3014e966cc5c83134fbd8835"
integrity sha512-vN3zG4woRtf2Ut6rZgRW6G/Oe56uLMlnz39I08Q7DOvVfB+1MmDbNv0PNOiFgujdKXJR+bXF41/F/VvryXcqlw==
dependencies:
"@slack/logger" "^3.0.0"
"@slack/web-api" "^6.2.3"
"@slack/web-api" "^6.11.2"
"@types/node" ">=12.0.0"
"@types/p-queue" "^2.3.2"
"@types/ws" "^7.4.7"
Expand All @@ -70,16 +70,16 @@
resolved "https://registry.yarnpkg.com/@slack/types/-/types-2.11.0.tgz#948c556081c3db977dfa8433490cc2ff41f47203"
integrity sha512-UlIrDWvuLaDly3QZhCPnwUSI/KYmV1N9LyhuH6EDKCRS1HWZhyTG3Ja46T3D0rYfqdltKYFXbJSSRPwZpwO0cQ==

"@slack/web-api@^6.11.0", "@slack/web-api@^6.2.3", "@slack/web-api@^6.3.0":
version "6.11.0"
resolved "https://registry.yarnpkg.com/@slack/web-api/-/web-api-6.11.0.tgz#cb28d833df4452144f6d9942c36971db8c434028"
integrity sha512-DLShYUc2dE8QrhmrJZ7YuhAuh/VW88Dt3LL7s2KrkEOyxbdfjAtF9bzPOBMlXuWmO6nWLGVevPuhShcYyjwTEw==
"@slack/web-api@^6.11.2":
version "6.12.0"
resolved "https://registry.yarnpkg.com/@slack/web-api/-/web-api-6.12.0.tgz#d0487d90e3db2f7bfabe3430fa5da0cc03d2d9cb"
integrity sha512-RPw6F8rWfGveGkZEJ4+4jUin5iazxRK2q3FpQDz/FvdgzC3nZmPyLx8WRzc6nh0w3MBjEbphNnp2VZksfhpBIQ==
dependencies:
"@slack/logger" "^3.0.0"
"@slack/types" "^2.11.0"
"@types/is-stream" "^1.1.0"
"@types/node" ">=12.0.0"
axios "^1.6.0"
axios "^1.6.5"
eventemitter3 "^3.1.0"
form-data "^2.5.0"
is-electron "2.2.2"
Expand Down Expand Up @@ -238,6 +238,15 @@ axios@^1.6.0:
form-data "^4.0.0"
proxy-from-env "^1.1.0"

axios@^1.6.5:
version "1.6.7"
resolved "https://registry.yarnpkg.com/axios/-/axios-1.6.7.tgz#7b48c2e27c96f9c68a2f8f31e2ab19f59b06b0a7"
integrity sha512-/hDJGff6/c7u0hDkvkGxR/oy6CbCs8ziCsC7SqmhjfozqiJGc8Z11wrv9z9lYfY4K8l+H9TpjcMDX0xOZmx+RA==
dependencies:
follow-redirects "^1.15.4"
form-data "^4.0.0"
proxy-from-env "^1.1.0"

[email protected]:
version "1.20.1"
resolved "https://registry.yarnpkg.com/body-parser/-/body-parser-1.20.1.tgz#b1812a8912c195cd371a3ee5e66faa2338a5c668"
Expand Down Expand Up @@ -496,6 +505,11 @@ follow-redirects@^1.15.0:
resolved "https://registry.yarnpkg.com/follow-redirects/-/follow-redirects-1.15.4.tgz#cdc7d308bf6493126b17ea2191ea0ccf3e535adf"
integrity sha512-Cr4D/5wlrb0z9dgERpUL3LrmPKVDsETIJhaCMeDfuFYcqa5bldGV6wBsAN6X/vxlXQtFBMrXdXxdL8CbDTGniw==

follow-redirects@^1.15.4:
version "1.15.6"
resolved "https://registry.yarnpkg.com/follow-redirects/-/follow-redirects-1.15.6.tgz#7f815c0cda4249c74ff09e95ef97c23b5fd0399b"
integrity sha512-wWN62YITEaOpSK584EZXJafH1AGpO8RVgElfkuXbTOrPX4fIfOyEpW/CsiNd8JdYrAoOvafRTOEnvsO++qCqFA==

form-data@^2.5.0:
version "2.5.1"
resolved "https://registry.yarnpkg.com/form-data/-/form-data-2.5.1.tgz#f2cbec57b5e59e23716e128fe44d4e5dd23895f4"
Expand Down

0 comments on commit 13df337

Please sign in to comment.