From 68038105a3218eef93cb2d130e66367cf9f6acab Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 15 Jan 2025 07:18:11 +0000 Subject: [PATCH] fix: package.json & package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-AXIOS-6671926 --- package-lock.json | 19 ++++++++++--------- package.json | 2 +- 2 files changed, 11 insertions(+), 10 deletions(-) diff --git a/package-lock.json b/package-lock.json index 0117705ec..d645f4823 100644 --- a/package-lock.json +++ b/package-lock.json @@ -15,7 +15,7 @@ "@easyops-cn/docusaurus-search-local": "0.45.0", "@lottiefiles/react-lottie-player": "3.5.4", "@openfga/frontend-utils": "^0.2.0-beta.11", - "@openfga/sdk": "^0.7.0", + "@openfga/sdk": "^0.8.0", "@openfga/syntax-transformer": "^0.2.0-beta.22", "assert-never": "1.3.0", "clsx": "2.1.1", @@ -4661,16 +4661,17 @@ } }, "node_modules/@openfga/sdk": { - "version": "0.7.0", - "resolved": "https://registry.npmjs.org/@openfga/sdk/-/sdk-0.7.0.tgz", - "integrity": "sha512-sPsRk3SIrSuKscAccadu7BasQvCLQjNR2FW4QlgnDypoGPMWcviuHGf2SfnB34En0lM4ObiEymypkt4z/OxMkA==", + "version": "0.8.0", + "resolved": "https://registry.npmjs.org/@openfga/sdk/-/sdk-0.8.0.tgz", + "integrity": "sha512-tFd5oQ6a3ps8Qbj9V8VhETyKnl7QtQa0o9G9464yI6KAih0FhMg/5e1/T701j6hkeGqGGJCmv1csD/OXyGCpFQ==", + "license": "Apache-2.0", "dependencies": { "@opentelemetry/api": "^1.9.0", - "axios": "^1.7.5", + "axios": "^1.7.9", "tiny-async-pool": "^2.1.0" }, "engines": { - "node": ">=14.17.0" + "node": ">=16.15.0" } }, "node_modules/@openfga/syntax-transformer": { @@ -6908,9 +6909,9 @@ } }, "node_modules/axios": { - "version": "1.7.5", - "resolved": "https://registry.npmjs.org/axios/-/axios-1.7.5.tgz", - "integrity": "sha512-fZu86yCo+svH3uqJ/yTdQ0QHpQu5oL+/QE+QPSv6BZSkDAoky9vytxp7u5qk83OJFS3kEBcesWni9WTZAv3tSw==", + "version": "1.7.9", + "resolved": "https://registry.npmjs.org/axios/-/axios-1.7.9.tgz", + "integrity": "sha512-LhLcE7Hbiryz8oMDdDptSrWowmB4Bl6RCt6sIJKpRB4XtVf0iEgewX3au/pJqm+Py1kCASkb/FFKjxQaLtxJvw==", "license": "MIT", "dependencies": { "follow-redirects": "^1.15.6", diff --git a/package.json b/package.json index 3e49bf579..e610f5007 100644 --- a/package.json +++ b/package.json @@ -29,7 +29,7 @@ "@easyops-cn/docusaurus-search-local": "0.45.0", "@lottiefiles/react-lottie-player": "3.5.4", "@openfga/frontend-utils": "^0.2.0-beta.11", - "@openfga/sdk": "^0.7.0", + "@openfga/sdk": "^0.8.0", "@openfga/syntax-transformer": "^0.2.0-beta.22", "assert-never": "1.3.0", "clsx": "2.1.1",