From aa8037f016eb86fc5a7b198aeeac859242ba26c0 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 10 Jan 2023 05:00:03 +0000 Subject: [PATCH] fix: package.json & yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-DEBUG-3227433 --- package.json | 2 +- yarn.lock | 9 ++++++++- 2 files changed, 9 insertions(+), 2 deletions(-) diff --git a/package.json b/package.json index ea7822e..bb260cb 100644 --- a/package.json +++ b/package.json @@ -32,7 +32,7 @@ }, "homepage": "https://github.com/boatmeme/rachio#readme", "dependencies": { - "debug": "2.6.9", + "debug": "3.1.0", "lodash.filter": "4.6.0", "lodash.find": "4.6.0", "lodash.get": "4.4.2", diff --git a/yarn.lock b/yarn.lock index 3363960..36859b2 100644 --- a/yarn.lock +++ b/yarn.lock @@ -359,7 +359,14 @@ debug@2.6.0: dependencies: ms "0.7.2" -debug@2.6.9, debug@^2.2.0, debug@^2.6.8: +debug@3.1.0: + version "3.1.0" + resolved "https://registry.yarnpkg.com/debug/-/debug-3.1.0.tgz#5bb5a0672628b64149566ba16819e61518c67261" + integrity sha512-OX8XqP7/1a9cqkxYw2yXss15f26NKWBpDXQd0/uK/KPqdQhxbPa994hnzjcE2VqQpDslf55723cKPUOGSmMY3g== + dependencies: + ms "2.0.0" + +debug@^2.2.0, debug@^2.6.8: version "2.6.9" resolved "https://registry.yarnpkg.com/debug/-/debug-2.6.9.tgz#5d128515df134ff327e90a4c93f4e077a536341f" dependencies: