From 9fdb6eb7e5c10c61a04e931de68daaef2547cf1e Mon Sep 17 00:00:00 2001 From: JellyBrick Date: Sat, 2 Dec 2023 07:06:39 +0900 Subject: [PATCH] fix(security): fix vulnerability detected by snyk --- package.json | 1 + pnpm-lock.yaml | 8 +++++--- 2 files changed, 6 insertions(+), 3 deletions(-) diff --git a/package.json b/package.json index 719b6915..bf569b10 100644 --- a/package.json +++ b/package.json @@ -118,6 +118,7 @@ }, "pnpm": { "overrides": { + "usocket": "1.0.1", "rollup": "4.6.1", "node-gyp": "10.0.1", "xml2js": "0.6.2", diff --git a/pnpm-lock.yaml b/pnpm-lock.yaml index 7ede902b..6a7da355 100644 --- a/pnpm-lock.yaml +++ b/pnpm-lock.yaml @@ -5,6 +5,7 @@ settings: excludeLinksFromLockfile: false overrides: + usocket: 1.0.1 rollup: 4.6.1 node-gyp: 10.0.1 xml2js: 0.6.2 @@ -2352,7 +2353,7 @@ packages: safe-buffer: 5.2.1 xml2js: 0.6.2 optionalDependencies: - usocket: 0.3.0 + usocket: 1.0.1 transitivePeerDependencies: - supports-color dev: false @@ -6002,11 +6003,12 @@ packages: dependencies: punycode: 2.3.0 - /usocket@0.3.0: - resolution: {integrity: sha512-V/H02RNiaOCJZuPoKont/y12VJaImC6C5xW7OzPFjYu9qnig0yv9hyp9E7Wqjm6d8yZuZouH3NAfDATVMgh2SQ==} + /usocket@1.0.1: + resolution: {integrity: sha512-ojgcMbCG6Nym8qi9EPkw1rPWe9kjhLdTfNQGWrEjJRvS6ZbIK/9XLjQTgIejFIAYoqun2vZ8CgINaqYMaxMxMA==} requiresBuild: true dependencies: bindings: 1.5.0 + debug: 4.3.4 nan: 2.18.0 node-gyp: 10.0.1 transitivePeerDependencies: