fix(core): update axios to address CVE-2023-45857 (#20493)

This commit is contained in:
Phillip Barta 2024-01-31 14:22:01 +01:00 committed by GitHub
parent 7ed534f92b
commit f0d93d0e43
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194
6 changed files with 27 additions and 10 deletions

View File

@ -327,7 +327,7 @@
"@yarnpkg/lockfile": "^1.1.0", "@yarnpkg/lockfile": "^1.1.0",
"@yarnpkg/parsers": "3.0.0-rc.46", "@yarnpkg/parsers": "3.0.0-rc.46",
"@zkochan/js-yaml": "0.0.6", "@zkochan/js-yaml": "0.0.6",
"axios": "^1.5.1", "axios": "^1.6.0",
"classnames": "^2.3.1", "classnames": "^2.3.1",
"cliui": "^8.0.1", "cliui": "^8.0.1",
"core-js": "^3.6.5", "core-js": "^3.6.5",

View File

@ -36,7 +36,7 @@
"tmp": "~0.2.1", "tmp": "~0.2.1",
"tslib": "^2.3.0", "tslib": "^2.3.0",
"yargs": "^17.6.2", "yargs": "^17.6.2",
"axios": "^1.5.1" "axios": "^1.6.0"
}, },
"publishConfig": { "publishConfig": {
"access": "public" "access": "public"

View File

@ -34,6 +34,15 @@
"alwaysAddToPackageJson": false "alwaysAddToPackageJson": false
} }
} }
},
"17.3.1": {
"version": "17.3.1-beta.0",
"packages": {
"axios": {
"version": "^1.6.0",
"alwaysAddToPackageJson": false
}
}
} }
} }
} }

View File

@ -15,4 +15,4 @@ export const fastifyAutoloadVersion = '~5.7.1';
export const fastifySensibleVersion = '~5.2.0'; export const fastifySensibleVersion = '~5.2.0';
export const fastifyPluginVersion = '~4.5.0'; export const fastifyPluginVersion = '~4.5.0';
export const axiosVersion = '^1.0.0'; export const axiosVersion = '^1.6.0';

View File

@ -36,7 +36,7 @@
"@yarnpkg/lockfile": "^1.1.0", "@yarnpkg/lockfile": "^1.1.0",
"@yarnpkg/parsers": "3.0.0-rc.46", "@yarnpkg/parsers": "3.0.0-rc.46",
"@zkochan/js-yaml": "0.0.6", "@zkochan/js-yaml": "0.0.6",
"axios": "^1.5.1", "axios": "^1.6.0",
"chalk": "^4.1.0", "chalk": "^4.1.0",
"cli-cursor": "3.1.0", "cli-cursor": "3.1.0",
"cli-spinners": "2.6.1", "cli-spinners": "2.6.1",

20
pnpm-lock.yaml generated
View File

@ -54,8 +54,8 @@ dependencies:
specifier: 0.0.6 specifier: 0.0.6
version: 0.0.6 version: 0.0.6
axios: axios:
specifier: ^1.5.1 specifier: ^1.6.0
version: 1.5.1 version: 1.6.2
classnames: classnames:
specifier: ^2.3.1 specifier: ^2.3.1
version: 2.3.2 version: 2.3.2
@ -13503,8 +13503,16 @@ packages:
engines: {node: '>=4'} engines: {node: '>=4'}
dev: true dev: true
/axios@1.5.1: /axios@0.21.4(debug@4.3.2):
resolution: {integrity: sha512-Q28iYCWzNHjAm+yEAot5QaAMxhMghWLFVf7rRdwhUI+c2jix2DUXjAHXVi+s1ibs3mjPO/cCgbA++3BjD0vP/A==} resolution: {integrity: sha512-ut5vewkiu8jjGBdqpM44XxjuCjq9LAKeHVmoVfHVzy8eHgxxq8SbAVQNovDA8mVi05kP0Ea/n/UzcSHcTJQfNg==}
dependencies:
follow-redirects: 1.15.2(debug@4.3.2)
transitivePeerDependencies:
- debug
dev: true
/axios@1.6.2:
resolution: {integrity: sha512-7i24Ri4pmDRfJTR7LDBhsOTtcm+9kjX5WiY1X3wIisx6G9So3pfMkEiU7emUBe46oceVImccTEM3k6C5dbVW8A==}
dependencies: dependencies:
follow-redirects: 1.15.2 follow-redirects: 1.15.2
form-data: 4.0.0 form-data: 4.0.0
@ -23274,7 +23282,7 @@ packages:
'@yarnpkg/lockfile': 1.1.0 '@yarnpkg/lockfile': 1.1.0
'@yarnpkg/parsers': 3.0.0-rc.46 '@yarnpkg/parsers': 3.0.0-rc.46
'@zkochan/js-yaml': 0.0.6 '@zkochan/js-yaml': 0.0.6
axios: 1.5.1 axios: 1.6.2
chalk: 4.1.2 chalk: 4.1.2
cli-cursor: 3.1.0 cli-cursor: 3.1.0
cli-spinners: 2.6.1 cli-spinners: 2.6.1
@ -23339,7 +23347,7 @@ packages:
'@yarnpkg/lockfile': 1.1.0 '@yarnpkg/lockfile': 1.1.0
'@yarnpkg/parsers': 3.0.0-rc.46 '@yarnpkg/parsers': 3.0.0-rc.46
'@zkochan/js-yaml': 0.0.6 '@zkochan/js-yaml': 0.0.6
axios: 1.5.1 axios: 1.6.2
chalk: 4.1.2 chalk: 4.1.2
cli-cursor: 3.1.0 cli-cursor: 3.1.0
cli-spinners: 2.6.1 cli-spinners: 2.6.1