From 93ff0890476d355721b634c771661248bbec9279 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 10 Feb 2022 07:41:02 +0000 Subject: [PATCH] fix: viz-lib/package.json & viz-lib/package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-FOLLOWREDIRECTS-2396346 --- viz-lib/package-lock.json | 32 ++++++++++---------------------- viz-lib/package.json | 2 +- 2 files changed, 11 insertions(+), 23 deletions(-) diff --git a/viz-lib/package-lock.json b/viz-lib/package-lock.json index bfdf453a93..1a18563b19 100644 --- a/viz-lib/package-lock.json +++ b/viz-lib/package-lock.json @@ -1,6 +1,6 @@ { "name": "@redash/viz", - "version": "0.1.1", + "version": "1.0.0", "lockfileVersion": 1, "requires": true, "dependencies": { @@ -3327,11 +3327,11 @@ "dev": true }, "axios": { - "version": "0.19.2", - "resolved": "https://registry.npmjs.org/axios/-/axios-0.19.2.tgz", - "integrity": "sha512-fjgm5MvRHLhx+osE2xoekY70AhARk3a6hkN+3Io1jc00jtquGvxYlKlsFUhmUET0V5te6CcZI7lcv2Ym61mjHA==", + "version": "0.20.0", + "resolved": "https://registry.npmjs.org/axios/-/axios-0.20.0.tgz", + "integrity": "sha512-ANA4rr2BDcmmAQLOKft2fufrtuvlqR+cXNNinUmvfeSNCOF98PZL+7M/v1zIdGo7OLjEA9J2gXJL+j4zGsl0bA==", "requires": { - "follow-redirects": "1.5.10" + "follow-redirects": "^1.10.0" } }, "babel-core": { @@ -6479,22 +6479,9 @@ } }, "follow-redirects": { - "version": "1.5.10", - "resolved": "https://registry.npmjs.org/follow-redirects/-/follow-redirects-1.5.10.tgz", - "integrity": "sha512-0V5l4Cizzvqt5D44aTXbFZz+FtyXV1vrDN6qrelxtfYQKW0KO0W2T/hkE8xvGa/540LkZlkaUjO4ailYTFtHVQ==", - "requires": { - "debug": "=3.1.0" - }, - "dependencies": { - "debug": { - "version": "3.1.0", - "resolved": "https://registry.npmjs.org/debug/-/debug-3.1.0.tgz", - "integrity": "sha512-OX8XqP7/1a9cqkxYw2yXss15f26NKWBpDXQd0/uK/KPqdQhxbPa994hnzjcE2VqQpDslf55723cKPUOGSmMY3g==", - "requires": { - "ms": "2.0.0" - } - } - } + "version": "1.14.8", + "resolved": "https://registry.npmjs.org/follow-redirects/-/follow-redirects-1.14.8.tgz", + "integrity": "sha512-1x0S9UVJHsQprFcEC/qnNzBLcIxsjAV905f/UkQxbclCsoTWlacCNOpQa/anodLl2uaEKFhfWOvM2Qg77+15zA==" }, "font-atlas": { "version": "2.1.0", @@ -10231,7 +10218,8 @@ "ms": { "version": "2.0.0", "resolved": "https://registry.npmjs.org/ms/-/ms-2.0.0.tgz", - "integrity": "sha1-VgiurfwAvmwpAd9fmGF4jeDVl8g=" + "integrity": "sha1-VgiurfwAvmwpAd9fmGF4jeDVl8g=", + "dev": true }, "multimatch": { "version": "4.0.0", diff --git a/viz-lib/package.json b/viz-lib/package.json index 4031dd455b..8f5c19ca57 100644 --- a/viz-lib/package.json +++ b/viz-lib/package.json @@ -77,7 +77,7 @@ "lib" ], "dependencies": { - "axios": "^0.19.2", + "axios": "^0.20.0", "beautifymarker": "^1.0.7", "chroma-js": "^1.3.6", "classnames": "^2.2.6",