From bac694745e509f0dcd78f19ea2b609aee8ad2cbe Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 15 Nov 2023 09:16:56 +0000 Subject: [PATCH] fix: package.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-BSON-6056525 - https://snyk.io/vuln/SNYK-JS-SERIALIZEJAVASCRIPT-6056521 --- package.json | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/package.json b/package.json index c25217b95f1f48..ad7e9043a75e9d 100644 --- a/package.json +++ b/package.json @@ -48,7 +48,7 @@ "express": "~4.10.4", "express-flash": "~0.0.2", "express-session": "~1.9.2", - "express-state": "^1.2.0", + "express-state": "^2.0.0", "express-validator": "~2.8.0", "fetchr": "^0.5.12", "font-awesome": "~4.3.0", @@ -79,11 +79,11 @@ "loopback": "^2.22.0", "loopback-boot": "^2.13.0", "loopback-component-passport": "https://github.com/FreeCodeCamp/loopback-component-passport.git#feature/flashfailure", - "loopback-connector-mongodb": "^1.10.0", + "loopback-connector-mongodb": "^3.4.0", "lusca": "~1.0.2", "method-override": "~2.3.0", "moment": "~2.10.2", - "mongodb": "^2.0.33", + "mongodb": "^3.1.3", "morgan": "~1.5.0", "node-libs-browser": "^0.5.2", "node-slack": "0.0.7",