From 60b0b742758020f94a006316eef5ecc423839e3b Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 14 Apr 2020 02:16:58 +0000 Subject: [PATCH] fix: javascript/package.json & javascript/yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-JQUERY-565129 --- javascript/package.json | 2 +- javascript/yarn.lock | 7 ++++--- 2 files changed, 5 insertions(+), 4 deletions(-) diff --git a/javascript/package.json b/javascript/package.json index 469f4e2..f5fabbc 100644 --- a/javascript/package.json +++ b/javascript/package.json @@ -23,7 +23,7 @@ "@types/react-transition-group": "^2.0.11", "bootstrap": "3.4.1", "es-symbol": "^1.1.2", - "jquery": "^3.3.1", + "jquery": "^3.5.0", "lodash": "^4.17.10", "moment": "^2.22.1", "query-string": "^6.1.0", diff --git a/javascript/yarn.lock b/javascript/yarn.lock index 693d4ba..32b9e69 100644 --- a/javascript/yarn.lock +++ b/javascript/yarn.lock @@ -3798,9 +3798,10 @@ isurl@^1.0.0-alpha5: has-to-string-tag-x "^1.2.0" is-object "^1.0.1" -jquery@^3.3.1: - version "3.3.1" - resolved "https://registry.yarnpkg.com/jquery/-/jquery-3.3.1.tgz#958ce29e81c9790f31be7792df5d4d95fc57fbca" +jquery@^3.5.0: + version "3.5.0" + resolved "https://registry.yarnpkg.com/jquery/-/jquery-3.5.0.tgz#9980b97d9e4194611c36530e7dc46a58d7340fc9" + integrity sha512-Xb7SVYMvygPxbFMpTFQiHh1J7HClEaThguL15N/Gg37Lri/qKyhRGZYzHRyLH8Stq3Aow0LsHO2O2ci86fCrNQ== js-base64@^2.1.8, js-base64@^2.1.9: version "2.4.5"