From 08baf30ad444bf50b4203c21948296c79515c76b Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sat, 12 Sep 2020 07:36:24 +0000 Subject: [PATCH] fix: package.json & package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-NODEFETCH-674311 --- package-lock.json | 6 +++--- package.json | 2 +- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/package-lock.json b/package-lock.json index 15dc95d674..29fda97356 100644 --- a/package-lock.json +++ b/package-lock.json @@ -16894,9 +16894,9 @@ } }, "node-fetch": { - "version": "2.4.0", - "resolved": "https://registry.npmjs.org/node-fetch/-/node-fetch-2.4.0.tgz", - "integrity": "sha512-1mt8bw5JQWWTcwUM1FGjFJLFo5lB/jz6zbm+qwdEh2iqYobKS4aHWgz1d+mvho5cqCaShFDF+hnpgraIi/5tqA==", + "version": "2.6.1", + "resolved": "https://registry.npmjs.org/node-fetch/-/node-fetch-2.6.1.tgz", + "integrity": "sha512-V4aYg89jEoVRxRb2fJdAg8FHvI7cEyYdVAh94HH0UIK8oJxUfkjlDQN9RbMx+bEjP7+ggMiFRprSti032Oipxw==", "dev": true }, "node-gyp": { diff --git a/package.json b/package.json index 1fe2769e61..fc63c5b224 100644 --- a/package.json +++ b/package.json @@ -63,7 +63,7 @@ "globby": "^6.1.0", "klaw": "3.0.0", "minimist": "1.2.3", - "node-fetch": "2.4.0", + "node-fetch": "2.6.1", "npm-run-all": "4.1.5", "postcss": "7.0.14", "postcss-import": "^12.0.1",