diff --git a/CHANGES_NEXT_RELEASE b/CHANGES_NEXT_RELEASE index 8b1378917..e927e4737 100644 --- a/CHANGES_NEXT_RELEASE +++ b/CHANGES_NEXT_RELEASE @@ -1 +1 @@ - +- Upgrade uuid dep from 8.3.2 to 14.0.0 due to CWE-787 CWE-1285 diff --git a/package.json b/package.json index fb7162e81..1d057bef4 100644 --- a/package.json +++ b/package.json @@ -56,7 +56,7 @@ "query-string": "7.1.1", "revalidator": "~0.3.1", "underscore": "~1.13.4", - "uuid": "~8.3.2" + "uuid": "~14.0.0" }, "devDependencies": { "async-mqtt": "~2.6.3",