From fd7173a668ec21cac4fd6c4495f7e3795f68d711 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 12 Sep 2024 10:25:42 +0000 Subject: [PATCH] fix: server/package.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-BODYPARSER-7926860 - https://snyk.io/vuln/SNYK-JS-EXPRESS-7926867 - https://snyk.io/vuln/SNYK-JS-SEND-7926862 - https://snyk.io/vuln/SNYK-JS-SERVESTATIC-7926865 --- server/package.json | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/server/package.json b/server/package.json index 8560e5ab7..99d003098 100644 --- a/server/package.json +++ b/server/package.json @@ -65,11 +65,11 @@ "typescript-transform-paths": "^2.2.4" }, "dependencies": { - "apollo-server": "^2.25.2", + "apollo-server": "^3.13.0", "apollo-server-core": "^2.25.2", - "apollo-server-express": "^2.25.2", + "apollo-server-express": "^3.13.0", "bcryptjs": "^2.4.3", - "body-parser": "^1.19.0", + "body-parser": "^1.20.3", "bufferutil": "^4.0.3", "chalk": "^4.1.1", "compression": "^1.7.4", @@ -78,7 +78,7 @@ "cors": "^2.8.5", "csurf": "^1.11.0", "dotenv": "^8.6.0", - "express": "^4.17.1", + "express": "^4.21.0", "express-session": "^1.17.2", "graphql": "^15.5.1", "graphql-compose": "^7.25.1",