From d957bd687aa26108762422ee88f159db7d6eb462 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 9 Dec 2025 10:37:46 +0000 Subject: [PATCH] fix: backend/package.json & backend/package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-NODEMAILER-14157156 --- backend/package-lock.json | 15 ++++++++------- backend/package.json | 2 +- 2 files changed, 9 insertions(+), 8 deletions(-) diff --git a/backend/package-lock.json b/backend/package-lock.json index f960ba1..78fd49e 100644 --- a/backend/package-lock.json +++ b/backend/package-lock.json @@ -22,7 +22,7 @@ "mongoose": "^5.13.9", "morgan": "^1.10.0", "multer": "^1.4.2", - "nodemailer": "^6.6.1", + "nodemailer": "^7.0.11", "nodemon": "^2.0.15", "otp-generator": "^2.0.1", "stripe": "^8.156.0", @@ -2175,9 +2175,10 @@ } }, "node_modules/nodemailer": { - "version": "6.7.2", - "resolved": "https://registry.npmjs.org/nodemailer/-/nodemailer-6.7.2.tgz", - "integrity": "sha512-Dz7zVwlef4k5R71fdmxwR8Q39fiboGbu3xgswkzGwczUfjp873rVxt1O46+Fh0j1ORnAC6L9+heI8uUpO6DT7Q==", + "version": "7.0.11", + "resolved": "https://registry.npmjs.org/nodemailer/-/nodemailer-7.0.11.tgz", + "integrity": "sha512-gnXhNRE0FNhD7wPSCGhdNh46Hs6nm+uTyg+Kq0cZukNQiYdnCsoQjodNP9BQVG9XrcK/v6/MgpAPBUFyzh9pvw==", + "license": "MIT-0", "engines": { "node": ">=6.0.0" } @@ -4754,9 +4755,9 @@ "integrity": "sha512-PPmu8eEeG9saEUvI97fm4OYxXVB6bFvyNTyiUOBichBpFG8A1Ljw3bY62+5oOjDEMHRnd0Y7HQ+x7uzxOzC6JA==" }, "nodemailer": { - "version": "6.7.2", - "resolved": "https://registry.npmjs.org/nodemailer/-/nodemailer-6.7.2.tgz", - "integrity": "sha512-Dz7zVwlef4k5R71fdmxwR8Q39fiboGbu3xgswkzGwczUfjp873rVxt1O46+Fh0j1ORnAC6L9+heI8uUpO6DT7Q==" + "version": "7.0.11", + "resolved": "https://registry.npmjs.org/nodemailer/-/nodemailer-7.0.11.tgz", + "integrity": "sha512-gnXhNRE0FNhD7wPSCGhdNh46Hs6nm+uTyg+Kq0cZukNQiYdnCsoQjodNP9BQVG9XrcK/v6/MgpAPBUFyzh9pvw==" }, "nodemon": { "version": "2.0.15", diff --git a/backend/package.json b/backend/package.json index 94c083e..b87300a 100644 --- a/backend/package.json +++ b/backend/package.json @@ -30,7 +30,7 @@ "mongoose": "^5.13.9", "morgan": "^1.10.0", "multer": "^1.4.2", - "nodemailer": "^6.6.1", + "nodemailer": "^7.0.11", "nodemon": "^2.0.15", "otp-generator": "^2.0.1", "stripe": "^8.156.0",