From c8bd95716c6359383f51f248ea858723a1f073e5 Mon Sep 17 00:00:00 2001 From: Aleksandar Hitrov Date: Thu, 13 Jan 2022 11:39:52 +0200 Subject: [PATCH] update node-forge to fix Veracode SCA vulnerabilities Veracode SCA reports: https://sca.analysiscenter.veracode.com/vulnerability-database/security/sca/vulnerability/sid-33572/summary https://sca.analysiscenter.veracode.com/vulnerability-database/security/sca/vulnerability/sid-33569/summary https://nvd.nist.gov/vuln/detail/CVE-2022-0122 for node-forge upto v0.10.0 including --- package.json | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/package.json b/package.json index a78976b..ab05498 100644 --- a/package.json +++ b/package.json @@ -21,7 +21,7 @@ "author": "Mike Reinstein", "license": "MIT", "dependencies": { - "node-forge": "^0.10.0", + "node-forge": "^1.2.1", "validator": "^9.0.0" }, "devDependencies": {