From d279553095e34a1c6f85299c450d1581af47da6c Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 17 Jan 2022 14:29:59 +0000 Subject: [PATCH] fix: package.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-BSON-561052 - https://snyk.io/vuln/SNYK-JS-ENGINEIO-1056749 - https://snyk.io/vuln/SNYK-JS-EXPRESSVALIDATOR-174763 - https://snyk.io/vuln/SNYK-JS-MONGODB-473855 - https://snyk.io/vuln/SNYK-JS-MONGOOSE-1086688 - https://snyk.io/vuln/SNYK-JS-MORGAN-72579 - https://snyk.io/vuln/SNYK-JS-MPATH-1577289 - https://snyk.io/vuln/SNYK-JS-MQUERY-1050858 - https://snyk.io/vuln/SNYK-JS-MQUERY-1089718 - https://snyk.io/vuln/SNYK-JS-PUG-1071616 - https://snyk.io/vuln/SNYK-JS-UGLIFYJS-1727251 - https://snyk.io/vuln/SNYK-JS-VALIDATOR-1090599 - https://snyk.io/vuln/SNYK-JS-VALIDATOR-1090600 - https://snyk.io/vuln/SNYK-JS-VALIDATOR-1090601 - https://snyk.io/vuln/SNYK-JS-VALIDATOR-1090602 - https://snyk.io/vuln/SNYK-JS-WS-1296835 - https://snyk.io/vuln/npm:extend:20180424 - https://snyk.io/vuln/npm:mime:20170907 - https://snyk.io/vuln/npm:qs:20170213 - https://snyk.io/vuln/npm:superagent:20170807 - https://snyk.io/vuln/npm:superagent:20181108 --- package.json | 18 +++++++++--------- 1 file changed, 9 insertions(+), 9 deletions(-) diff --git a/package.json b/package.json index 4d51959..edcfa32 100644 --- a/package.json +++ b/package.json @@ -16,21 +16,21 @@ "compression": "^1.6.2", "debug": "~2.6.0", "dotenv": "^4.0.0", - "express": "~4.15.2", + "express": "~4.16.0", "express-rate-limit": "^2.11.0", - "express-validator": "^4.2.1", + "express-validator": "^6.5.0", "helmet": "^3.5.0", "jayson": "^2.0.3", - "mongodb": "^2.2.31", - "mongoose": "^4.11.13", - "morgan": "~1.7.0", + "mongodb": "^3.1.13", + "mongoose": "^5.13.9", + "morgan": "~1.9.1", "morgan-body": "^0.9.5", "node-cache": "^4.1.1", - "pug": "^2.0.0-beta11", + "pug": "^3.0.1", "rsmq-promise": "^1.0.0", - "socket.io": "^2.0.4", + "socket.io": "^3.0.0", "socket.io-client": "^2.0.3", - "telegram-bot-client": "^1.4.0", - "ws": "^3.2.0" + "telegram-bot-client": "^2.0.0", + "ws": "^5.2.3" } }