From 619c82c1d7104ea8deaa7ed7f27fb3a37b576bbb Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 7 Jul 2022 14:59:56 -0700 Subject: [PATCH 1/2] fix: package.json & package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-MOMENT-2944238 --- package.json | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/package.json b/package.json index 2e28a5b..357eb70 100644 --- a/package.json +++ b/package.json @@ -38,7 +38,7 @@ "dotenv-safe": "^8.2.0", "express": "^4.17.1", "lowdb": "^1.0.0", - "moment": "^2.24.0", + "moment": "^2.29.4", "morgan": "^1.9.1", "pug": "^2.0.4", "serve-favicon": "^2.5.0", From cff263ec0653885c4e0dae9d70e60492415450c1 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 7 Jul 2022 14:59:57 -0700 Subject: [PATCH 2/2] fix: package.json & package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-MOMENT-2944238 --- package-lock.json | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/package-lock.json b/package-lock.json index 56e2467..e62f194 100644 --- a/package-lock.json +++ b/package-lock.json @@ -2610,9 +2610,9 @@ } }, "moment": { - "version": "2.24.0", - "resolved": "https://registry.npmjs.org/moment/-/moment-2.24.0.tgz", - "integrity": "sha512-bV7f+6l2QigeBBZSM/6yTNq4P2fNpSWj/0e7jQcy87A8e7o2nAfP/34/2ky5Vw4B9S446EtIhodAzkFCcR4dQg==" + "version": "2.29.4", + "resolved": "https://registry.npmjs.org/moment/-/moment-2.29.4.tgz", + "integrity": "sha512-5LC9SOxjSc2HF6vO2CyuTDNivEdoz2IvyJJGj6X8DJ0eFyfszE0QiEd+iXmBvUP3WHxSjFH/vIsA0EN00cgr8w==" }, "morgan": { "version": "1.9.1",