From baabfe72f31dd809fd7b37d6882f863f4af38bd0 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 31 Jul 2024 16:34:31 +0000 Subject: [PATCH] fix: SCA/JS/package.json & SCA/JS/package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-EXIFTOOLVENDOREDPL-1279041 --- SCA/JS/package-lock.json | 21 +++++++++++---------- SCA/JS/package.json | 2 +- 2 files changed, 12 insertions(+), 11 deletions(-) diff --git a/SCA/JS/package-lock.json b/SCA/JS/package-lock.json index 3c47527104..8a75595a0b 100644 --- a/SCA/JS/package-lock.json +++ b/SCA/JS/package-lock.json @@ -9,7 +9,7 @@ "version": "1.0.1", "license": "Apache-2.0", "dependencies": { - "adm-zip": "^0.4.11", + "adm-zip": "0.4.11", "body-parser": "1.9.0", "cfenv": "^1.0.4", "consolidate": "0.14.5", @@ -19,7 +19,7 @@ "ejs": "1.0.0", "ejs-locals": "1.0.2", "errorhandler": "1.2.0", - "exiftool-vendored.pl": "12.19.0", + "exiftool-vendored.pl": "^12.25.0", "express": "4.12.4", "express-fileupload": "0.0.5", "file-type": "^8.1.0", @@ -28,11 +28,11 @@ "karma": "1.7.1", "lodash": "4.17.4", "marked": "0.3.18", - "method-override": "^3.0.0", + "method-override": "latest", "moment": "2.15.1", "mongodb": "^3.5.9", "mongoose": "4.2.4", - "morgan": "^1.10.0", + "morgan": "latest", "ms": "^0.7.1", "mysql": "^2.18.1", "npmconf": "0.0.24", @@ -3006,9 +3006,10 @@ } }, "node_modules/exiftool-vendored.pl": { - "version": "12.19.0", - "resolved": "https://registry.npmjs.org/exiftool-vendored.pl/-/exiftool-vendored.pl-12.19.0.tgz", - "integrity": "sha512-RYJ1cSzmBF1gEWS2HO0+nXW+QknVi9IUpciCRpnfzcGnRHiqLErmLLtxA6qCeL3MtlKy3ELduCWu0Phm9l6zGA==", + "version": "12.25.0", + "resolved": "https://registry.npmjs.org/exiftool-vendored.pl/-/exiftool-vendored.pl-12.25.0.tgz", + "integrity": "sha512-AqNy26adsMiNiMYxq+E4RhLNoOXo9Bc3Add/tBl8I2zkjOO/6/zGP5EiMvXFooZfb406mJ3b6sokBPxfRBA+jQ==", + "license": "MIT", "os": [ "!win32" ] @@ -17298,9 +17299,9 @@ } }, "exiftool-vendored.pl": { - "version": "12.19.0", - "resolved": "https://registry.npmjs.org/exiftool-vendored.pl/-/exiftool-vendored.pl-12.19.0.tgz", - "integrity": "sha512-RYJ1cSzmBF1gEWS2HO0+nXW+QknVi9IUpciCRpnfzcGnRHiqLErmLLtxA6qCeL3MtlKy3ELduCWu0Phm9l6zGA==" + "version": "12.25.0", + "resolved": "https://registry.npmjs.org/exiftool-vendored.pl/-/exiftool-vendored.pl-12.25.0.tgz", + "integrity": "sha512-AqNy26adsMiNiMYxq+E4RhLNoOXo9Bc3Add/tBl8I2zkjOO/6/zGP5EiMvXFooZfb406mJ3b6sokBPxfRBA+jQ==" }, "expand-braces": { "version": "0.1.2", diff --git a/SCA/JS/package.json b/SCA/JS/package.json index 175d517909..72aed9daaf 100644 --- a/SCA/JS/package.json +++ b/SCA/JS/package.json @@ -24,7 +24,7 @@ "ejs": "1.0.0", "ejs-locals": "1.0.2", "errorhandler": "1.2.0", - "exiftool-vendored.pl": "12.19.0", + "exiftool-vendored.pl": "12.25.0", "express": "4.12.4", "express-fileupload": "0.0.5", "file-type": "^8.1.0",