Skip to content

Commit deed07a

Browse files
kkopanidissnyk-bot
andauthored
[Snyk] Security upgrade axios from 1.9.0 to 1.12.0 (#1385)
* fix: modules/forms/package.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-AXIOS-12613773 * chore: update axios to ^1.12.0 --------- Co-authored-by: snyk-bot <snyk-bot@snyk.io>
1 parent 47c42e7 commit deed07a

File tree

7 files changed

+45
-8
lines changed

7 files changed

+45
-8
lines changed

modules/authentication/package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -33,7 +33,7 @@
3333
"@conduitplatform/node-2fa": "^1.0.0",
3434
"@grpc/grpc-js": "^1.13.3",
3535
"@grpc/proto-loader": "^0.7.13",
36-
"axios": "^1.9.0",
36+
"axios": "^1.12.0",
3737
"bcrypt": "^6.0.0",
3838
"convict": "^6.2.4",
3939
"escape-string-regexp": "^4.0.0",

modules/authorization/package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -32,7 +32,7 @@
3232
"@conduitplatform/module-tools": "*",
3333
"@grpc/grpc-js": "^1.13.3",
3434
"@grpc/proto-loader": "^0.7.13",
35-
"axios": "^1.9.0",
35+
"axios": "^1.12.0",
3636
"bcrypt": "^6.0.0",
3737
"bullmq": "^5.21.2",
3838
"convict": "^6.2.4",

modules/email/package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -36,7 +36,7 @@
3636
"@sendgrid/client": "^8.1.4",
3737
"@types/nodemailer-sendgrid": "^1.0.3",
3838
"await-to-js": "^3.0.0",
39-
"axios": "^1.9.0",
39+
"axios": "^1.12.0",
4040
"bullmq": "^5.21.2",
4141
"convict": "^6.2.4",
4242
"escape-string-regexp": "^4.0.0",

modules/forms/package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -31,7 +31,7 @@
3131
"@conduitplatform/module-tools": "*",
3232
"@grpc/grpc-js": "^1.13.3",
3333
"@grpc/proto-loader": "^0.7.13",
34-
"axios": "^1.9.0",
34+
"axios": "^1.12.0",
3535
"convict": "^6.2.4",
3636
"escape-string-regexp": "^4.0.0",
3737
"lodash-es": "^4.17.21"

modules/functions/package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -32,7 +32,7 @@
3232
"@conduitplatform/module-tools": "*",
3333
"@grpc/grpc-js": "^1.13.3",
3434
"@grpc/proto-loader": "^0.7.13",
35-
"axios": "^1.9.0",
35+
"axios": "^1.12.0",
3636
"escape-string-regexp": "^4.0.0",
3737
"convict": "^6.2.4",
3838
"lodash-es": "^4.17.21",

modules/router/package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -24,7 +24,7 @@
2424
"@conduitplatform/module-tools": "*",
2525
"@grpc/grpc-js": "^1.13.3",
2626
"@grpc/proto-loader": "^0.7.13",
27-
"axios": "^1.9.0",
27+
"axios": "^1.12.0",
2828
"bcrypt": "^6.0.0",
2929
"cors": "^2.8.5",
3030
"deep-object-diff": "^1.1.9",

yarn.lock

Lines changed: 39 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -6060,7 +6060,16 @@ aws4@^1.8.0:
60606060
resolved "https://registry.yarnpkg.com/aws4/-/aws4-1.11.0.tgz#d61f46d83b2519250e2784daf5b09479a8b41c59"
60616061
integrity sha512-xh1Rl34h6Fi1DC2WWKfxUTVqRsNnr6LsKz2+hfwDxQJWmrx8+c7ylaqBMcHfl1U1r2dsifOvKX3LQuLNZ+XSvA==
60626062

6063-
axios@^1.3.3, axios@^1.6.0, axios@^1.7.4, axios@^1.9.0:
6063+
axios@^1.12.0:
6064+
version "1.12.2"
6065+
resolved "https://registry.yarnpkg.com/axios/-/axios-1.12.2.tgz#6c307390136cf7a2278d09cec63b136dfc6e6da7"
6066+
integrity sha512-vMJzPewAlRyOgxV2dU0Cuz2O8zzzx9VYtbJOaBgXFeLc4IV/Eg50n4LowmehOOR61S8ZMpc2K5Sa7g6A4jfkUw==
6067+
dependencies:
6068+
follow-redirects "^1.15.6"
6069+
form-data "^4.0.4"
6070+
proxy-from-env "^1.1.0"
6071+
6072+
axios@^1.3.3, axios@^1.6.0, axios@^1.7.4:
60646073
version "1.9.0"
60656074
resolved "https://registry.yarnpkg.com/axios/-/axios-1.9.0.tgz#25534e3b72b54540077d33046f77e3b8d7081901"
60666075
integrity sha512-re4CqKTJaURpzbLHtIi6XpDv20/CnpXOtjRY5/CU32L8gU8ek9UIivcfvSWvmKEngmVbrUtPpdDwWDWL7DNHvg==
@@ -8006,6 +8015,16 @@ es-object-atoms@^1.0.0, es-object-atoms@^1.1.1:
80068015
dependencies:
80078016
es-errors "^1.3.0"
80088017

8018+
es-set-tostringtag@^2.1.0:
8019+
version "2.1.0"
8020+
resolved "https://registry.yarnpkg.com/es-set-tostringtag/-/es-set-tostringtag-2.1.0.tgz#f31dbbe0c183b00a6d26eb6325c810c0fd18bd4d"
8021+
integrity sha512-j6vWzfrGVfyXxge+O0x5sh6cvxAog0a/4Rdd2K36zCMV5eJ+/+tOAngRO8cODMNWbVRdVlmGZQL2YS3yR8bIUA==
8022+
dependencies:
8023+
es-errors "^1.3.0"
8024+
get-intrinsic "^1.2.6"
8025+
has-tostringtag "^1.0.2"
8026+
hasown "^2.0.2"
8027+
80098028
es6-promise@^4.0.3, es6-promise@^4.2.4:
80108029
version "4.2.8"
80118030
resolved "https://registry.yarnpkg.com/es6-promise/-/es6-promise-4.2.8.tgz#4eb21594c972bc40553d276e510539143db53e0a"
@@ -8741,6 +8760,17 @@ form-data@^4.0.0:
87418760
combined-stream "^1.0.8"
87428761
mime-types "^2.1.12"
87438762

8763+
form-data@^4.0.4:
8764+
version "4.0.4"
8765+
resolved "https://registry.yarnpkg.com/form-data/-/form-data-4.0.4.tgz#784cdcce0669a9d68e94d11ac4eea98088edd2c4"
8766+
integrity sha512-KrGhL9Q4zjj0kiUt5OO4Mr/A/jlI2jDYs5eHBpYHPcBEVSiipAvn2Ko2HnPe20rmcuuvMHNdZFp+4IlGTMF0Ow==
8767+
dependencies:
8768+
asynckit "^0.4.0"
8769+
combined-stream "^1.0.8"
8770+
es-set-tostringtag "^2.1.0"
8771+
hasown "^2.0.2"
8772+
mime-types "^2.1.12"
8773+
87448774
form-data@~2.3.2:
87458775
version "2.3.3"
87468776
resolved "https://registry.yarnpkg.com/form-data/-/form-data-2.3.3.tgz#dcce52c05f644f298c6a7ab936bd724ceffbf3a6"
@@ -8938,7 +8968,7 @@ get-intrinsic@^1.1.3, get-intrinsic@^1.2.4:
89388968
has-symbols "^1.0.3"
89398969
hasown "^2.0.0"
89408970

8941-
get-intrinsic@^1.2.5, get-intrinsic@^1.3.0:
8971+
get-intrinsic@^1.2.5, get-intrinsic@^1.2.6, get-intrinsic@^1.3.0:
89428972
version "1.3.0"
89438973
resolved "https://registry.yarnpkg.com/get-intrinsic/-/get-intrinsic-1.3.0.tgz#743f0e3b6964a93a5491ed1bffaae054d7f98d01"
89448974
integrity sha512-9fSjSaos/fRIVIp+xSJlE6lfwhES7LNtKaCBIamHsjr2na1BiABJPo0mOjjz8GJDURarmCPGqaiVg5mfjb98CQ==
@@ -9393,6 +9423,13 @@ has-symbols@^1.1.0:
93939423
resolved "https://registry.yarnpkg.com/has-symbols/-/has-symbols-1.1.0.tgz#fc9c6a783a084951d0b971fe1018de813707a338"
93949424
integrity sha512-1cDNdwJ2Jaohmb3sg4OmKaMBwuC48sYni5HUw2DvsC8LjGTLK9h+eb1X6RyuOHe4hT0ULCW68iomhjUoKUqlPQ==
93959425

9426+
has-tostringtag@^1.0.2:
9427+
version "1.0.2"
9428+
resolved "https://registry.yarnpkg.com/has-tostringtag/-/has-tostringtag-1.0.2.tgz#2cdc42d40bef2e5b4eeab7c01a73c54ce7ab5abc"
9429+
integrity sha512-NqADB8VjPFLM2V0VvHUewwwsw0ZWBaIdgo+ieHtK3hasLz4qeCRjYcqfB6AQrBggRKppKF8L52/VqdVsO47Dlw==
9430+
dependencies:
9431+
has-symbols "^1.0.3"
9432+
93969433
has-unicode@2.0.1, has-unicode@^2.0.1:
93979434
version "2.0.1"
93989435
resolved "https://registry.yarnpkg.com/has-unicode/-/has-unicode-2.0.1.tgz#e0e6fe6a28cf51138855e086d1691e771de2a8b9"

0 commit comments

Comments
 (0)