Skip to content

Commit f9a444e

Browse files
committed
upgrade express to latest to resolve dependency vulnerability in transitive dependency body-parser
1 parent df69b6d commit f9a444e

File tree

2 files changed

+70
-63
lines changed

2 files changed

+70
-63
lines changed

bootstrapping-lambda/package.json

+1-1
Original file line numberDiff line numberDiff line change
@@ -28,7 +28,7 @@
2828
"@codegenie/serverless-express": "^4.16.0",
2929
"@guardian/pan-domain-node": "^0.4.2",
3030
"cors": "^2.8.5",
31-
"express": "4.18.2",
31+
"express": "4.21.1",
3232
"jose": "^4.3.7"
3333
}
3434
}

yarn.lock

+69-62
Original file line numberDiff line numberDiff line change
@@ -7888,23 +7888,23 @@ __metadata:
78887888
languageName: node
78897889
linkType: hard
78907890

7891-
"body-parser@npm:1.20.1":
7892-
version: 1.20.1
7893-
resolution: "body-parser@npm:1.20.1"
7891+
"body-parser@npm:1.20.3":
7892+
version: 1.20.3
7893+
resolution: "body-parser@npm:1.20.3"
78947894
dependencies:
78957895
bytes: "npm:3.1.2"
7896-
content-type: "npm:~1.0.4"
7896+
content-type: "npm:~1.0.5"
78977897
debug: "npm:2.6.9"
78987898
depd: "npm:2.0.0"
78997899
destroy: "npm:1.2.0"
79007900
http-errors: "npm:2.0.0"
79017901
iconv-lite: "npm:0.4.24"
79027902
on-finished: "npm:2.4.1"
7903-
qs: "npm:6.11.0"
7904-
raw-body: "npm:2.5.1"
7903+
qs: "npm:6.13.0"
7904+
raw-body: "npm:2.5.2"
79057905
type-is: "npm:~1.6.18"
79067906
unpipe: "npm:1.0.0"
7907-
checksum: 10c0/a202d493e2c10a33fb7413dac7d2f713be579c4b88343cd814b6df7a38e5af1901fc31044e04de176db56b16d9772aa25a7723f64478c20f4d91b1ac223bf3b8
7907+
checksum: 10c0/0a9a93b7518f222885498dcecaad528cf010dd109b071bf471c93def4bfe30958b83e03496eb9c1ad4896db543d999bb62be1a3087294162a88cfa1b42c16310
79087908
languageName: node
79097909
linkType: hard
79107910

@@ -7943,7 +7943,7 @@ __metadata:
79437943
"@types/express": "npm:4.17.17"
79447944
"@types/jest": "npm:^29.2.3"
79457945
cors: "npm:^2.8.5"
7946-
express: "npm:4.18.2"
7946+
express: "npm:4.21.1"
79477947
jest: "npm:^29.3.1"
79487948
jose: "npm:^4.3.7"
79497949
ts-jest: "npm:^29.0.3"
@@ -8845,10 +8845,10 @@ __metadata:
88458845
languageName: node
88468846
linkType: hard
88478847

8848-
"content-type@npm:~1.0.4":
8849-
version: 1.0.4
8850-
resolution: "content-type@npm:1.0.4"
8851-
checksum: 10c0/19e08f406f9ae3f80fb4607c75fbde1f22546647877e8047c9fa0b1c61e38f3ede853f51e915c95fd499c2e1c7478cb23c35cfb804d0e8e0495e8db88cfaed75
8848+
"content-type@npm:~1.0.4, content-type@npm:~1.0.5":
8849+
version: 1.0.5
8850+
resolution: "content-type@npm:1.0.5"
8851+
checksum: 10c0/b76ebed15c000aee4678c3707e0860cb6abd4e680a598c0a26e17f0bfae723ec9cc2802f0ff1bc6e4d80603719010431d2231018373d4dde10f9ccff9dadf5af
88528852
languageName: node
88538853
linkType: hard
88548854

@@ -8873,10 +8873,10 @@ __metadata:
88738873
languageName: node
88748874
linkType: hard
88758875

8876-
"cookie@npm:0.5.0":
8877-
version: 0.5.0
8878-
resolution: "cookie@npm:0.5.0"
8879-
checksum: 10c0/c01ca3ef8d7b8187bae434434582288681273b5a9ed27521d4d7f9f7928fe0c920df0decd9f9d3bbd2d14ac432b8c8cf42b98b3bdd5bfe0e6edddeebebe8b61d
8876+
"cookie@npm:0.7.1":
8877+
version: 0.7.1
8878+
resolution: "cookie@npm:0.7.1"
8879+
checksum: 10c0/5de60c67a410e7c8dc8a46a4b72eb0fe925871d057c9a5d2c0e8145c4270a4f81076de83410c4d397179744b478e33cd80ccbcc457abf40a9409ad27dcd21dde
88808880
languageName: node
88818881
linkType: hard
88828882

@@ -9746,6 +9746,13 @@ __metadata:
97469746
languageName: node
97479747
linkType: hard
97489748

9749+
"encodeurl@npm:~2.0.0":
9750+
version: 2.0.0
9751+
resolution: "encodeurl@npm:2.0.0"
9752+
checksum: 10c0/5d317306acb13e6590e28e27924c754163946a2480de11865c991a3a7eed4315cd3fba378b543ca145829569eefe9b899f3d84bb09870f675ae60bc924b01ceb
9753+
languageName: node
9754+
linkType: hard
9755+
97499756
"encoding@npm:^0.1.13":
97509757
version: 0.1.13
97519758
resolution: "encoding@npm:0.1.13"
@@ -10550,42 +10557,42 @@ __metadata:
1055010557
languageName: node
1055110558
linkType: hard
1055210559

10553-
"express@npm:4.18.2, express@npm:^4.17.1":
10554-
version: 4.18.2
10555-
resolution: "express@npm:4.18.2"
10560+
"express@npm:4.21.1, express@npm:^4.17.1":
10561+
version: 4.21.1
10562+
resolution: "express@npm:4.21.1"
1055610563
dependencies:
1055710564
accepts: "npm:~1.3.8"
1055810565
array-flatten: "npm:1.1.1"
10559-
body-parser: "npm:1.20.1"
10566+
body-parser: "npm:1.20.3"
1056010567
content-disposition: "npm:0.5.4"
1056110568
content-type: "npm:~1.0.4"
10562-
cookie: "npm:0.5.0"
10569+
cookie: "npm:0.7.1"
1056310570
cookie-signature: "npm:1.0.6"
1056410571
debug: "npm:2.6.9"
1056510572
depd: "npm:2.0.0"
10566-
encodeurl: "npm:~1.0.2"
10573+
encodeurl: "npm:~2.0.0"
1056710574
escape-html: "npm:~1.0.3"
1056810575
etag: "npm:~1.8.1"
10569-
finalhandler: "npm:1.2.0"
10576+
finalhandler: "npm:1.3.1"
1057010577
fresh: "npm:0.5.2"
1057110578
http-errors: "npm:2.0.0"
10572-
merge-descriptors: "npm:1.0.1"
10579+
merge-descriptors: "npm:1.0.3"
1057310580
methods: "npm:~1.1.2"
1057410581
on-finished: "npm:2.4.1"
1057510582
parseurl: "npm:~1.3.3"
10576-
path-to-regexp: "npm:0.1.7"
10583+
path-to-regexp: "npm:0.1.10"
1057710584
proxy-addr: "npm:~2.0.7"
10578-
qs: "npm:6.11.0"
10585+
qs: "npm:6.13.0"
1057910586
range-parser: "npm:~1.2.1"
1058010587
safe-buffer: "npm:5.2.1"
10581-
send: "npm:0.18.0"
10582-
serve-static: "npm:1.15.0"
10588+
send: "npm:0.19.0"
10589+
serve-static: "npm:1.16.2"
1058310590
setprototypeof: "npm:1.2.0"
1058410591
statuses: "npm:2.0.1"
1058510592
type-is: "npm:~1.6.18"
1058610593
utils-merge: "npm:1.0.1"
1058710594
vary: "npm:~1.1.2"
10588-
checksum: 10c0/75af556306b9241bc1d7bdd40c9744b516c38ce50ae3210658efcbf96e3aed4ab83b3432f06215eae5610c123bc4136957dc06e50dfc50b7d4d775af56c4c59c
10595+
checksum: 10c0/0c287867e5f6129d3def1edd9b63103a53c40d4dc8628839d4b6827e35eb8f0de5a4656f9d85f4457eba584f9871ebb2ad26c750b36bd75d9bbb8bcebdc4892c
1058910596
languageName: node
1059010597
linkType: hard
1059110598

@@ -10844,18 +10851,18 @@ __metadata:
1084410851
languageName: node
1084510852
linkType: hard
1084610853

10847-
"finalhandler@npm:1.2.0":
10848-
version: 1.2.0
10849-
resolution: "finalhandler@npm:1.2.0"
10854+
"finalhandler@npm:1.3.1":
10855+
version: 1.3.1
10856+
resolution: "finalhandler@npm:1.3.1"
1085010857
dependencies:
1085110858
debug: "npm:2.6.9"
10852-
encodeurl: "npm:~1.0.2"
10859+
encodeurl: "npm:~2.0.0"
1085310860
escape-html: "npm:~1.0.3"
1085410861
on-finished: "npm:2.4.1"
1085510862
parseurl: "npm:~1.3.3"
1085610863
statuses: "npm:2.0.1"
1085710864
unpipe: "npm:~1.0.0"
10858-
checksum: 10c0/64b7e5ff2ad1fcb14931cd012651631b721ce657da24aedb5650ddde9378bf8e95daa451da43398123f5de161a81e79ff5affe4f9f2a6d2df4a813d6d3e254b7
10865+
checksum: 10c0/d38035831865a49b5610206a3a9a9aae4e8523cbbcd01175d0480ffbf1278c47f11d89be3ca7f617ae6d94f29cf797546a4619cd84dd109009ef33f12f69019f
1085910866
languageName: node
1086010867
linkType: hard
1086110868

@@ -14381,10 +14388,10 @@ __metadata:
1438114388
languageName: node
1438214389
linkType: hard
1438314390

14384-
"merge-descriptors@npm:1.0.1":
14385-
version: 1.0.1
14386-
resolution: "merge-descriptors@npm:1.0.1"
14387-
checksum: 10c0/b67d07bd44cfc45cebdec349bb6e1f7b077ee2fd5beb15d1f7af073849208cb6f144fe403e29a36571baf3f4e86469ac39acf13c318381e958e186b2766f54ec
14391+
"merge-descriptors@npm:1.0.3":
14392+
version: 1.0.3
14393+
resolution: "merge-descriptors@npm:1.0.3"
14394+
checksum: 10c0/866b7094afd9293b5ea5dcd82d71f80e51514bed33b4c4e9f516795dc366612a4cbb4dc94356e943a8a6914889a914530badff27f397191b9b75cda20b6bae93
1438814395
languageName: node
1438914396
linkType: hard
1439014397

@@ -15482,10 +15489,10 @@ __metadata:
1548215489
languageName: node
1548315490
linkType: hard
1548415491

15485-
"path-to-regexp@npm:0.1.7":
15486-
version: 0.1.7
15487-
resolution: "path-to-regexp@npm:0.1.7"
15488-
checksum: 10c0/50a1ddb1af41a9e68bd67ca8e331a705899d16fb720a1ea3a41e310480948387daf603abb14d7b0826c58f10146d49050a1291ba6a82b78a382d1c02c0b8f905
15492+
"path-to-regexp@npm:0.1.10":
15493+
version: 0.1.10
15494+
resolution: "path-to-regexp@npm:0.1.10"
15495+
checksum: 10c0/34196775b9113ca6df88e94c8d83ba82c0e1a2063dd33bfe2803a980da8d49b91db8104f49d5191b44ea780d46b8670ce2b7f4a5e349b0c48c6779b653f1afe4
1548915496
languageName: node
1549015497
linkType: hard
1549115498

@@ -15848,12 +15855,12 @@ __metadata:
1584815855
languageName: node
1584915856
linkType: hard
1585015857

15851-
"qs@npm:6.11.0, qs@npm:^6.7.0":
15852-
version: 6.11.0
15853-
resolution: "qs@npm:6.11.0"
15858+
"qs@npm:6.13.0, qs@npm:^6.7.0":
15859+
version: 6.13.0
15860+
resolution: "qs@npm:6.13.0"
1585415861
dependencies:
15855-
side-channel: "npm:^1.0.4"
15856-
checksum: 10c0/4e4875e4d7c7c31c233d07a448e7e4650f456178b9dd3766b7cfa13158fdb24ecb8c4f059fa91e820dc6ab9f2d243721d071c9c0378892dcdad86e9e9a27c68f
15862+
side-channel: "npm:^1.0.6"
15863+
checksum: 10c0/62372cdeec24dc83a9fb240b7533c0fdcf0c5f7e0b83343edd7310f0ab4c8205a5e7c56406531f2e47e1b4878a3821d652be4192c841de5b032ca83619d8f860
1585715864
languageName: node
1585815865
linkType: hard
1585915866

@@ -15894,15 +15901,15 @@ __metadata:
1589415901
languageName: node
1589515902
linkType: hard
1589615903

15897-
"raw-body@npm:2.5.1":
15898-
version: 2.5.1
15899-
resolution: "raw-body@npm:2.5.1"
15904+
"raw-body@npm:2.5.2":
15905+
version: 2.5.2
15906+
resolution: "raw-body@npm:2.5.2"
1590015907
dependencies:
1590115908
bytes: "npm:3.1.2"
1590215909
http-errors: "npm:2.0.0"
1590315910
iconv-lite: "npm:0.4.24"
1590415911
unpipe: "npm:1.0.0"
15905-
checksum: 10c0/5dad5a3a64a023b894ad7ab4e5c7c1ce34d3497fc7138d02f8c88a3781e68d8a55aa7d4fd3a458616fa8647cc228be314a1c03fb430a07521de78b32c4dd09d2
15912+
checksum: 10c0/b201c4b66049369a60e766318caff5cb3cc5a900efd89bdac431463822d976ad0670912c931fdbdcf5543207daf6f6833bca57aa116e1661d2ea91e12ca692c4
1590615913
languageName: node
1590715914
linkType: hard
1590815915

@@ -16741,9 +16748,9 @@ __metadata:
1674116748
languageName: node
1674216749
linkType: hard
1674316750

16744-
"send@npm:0.18.0":
16745-
version: 0.18.0
16746-
resolution: "send@npm:0.18.0"
16751+
"send@npm:0.19.0":
16752+
version: 0.19.0
16753+
resolution: "send@npm:0.19.0"
1674716754
dependencies:
1674816755
debug: "npm:2.6.9"
1674916756
depd: "npm:2.0.0"
@@ -16758,7 +16765,7 @@ __metadata:
1675816765
on-finished: "npm:2.4.1"
1675916766
range-parser: "npm:~1.2.1"
1676016767
statuses: "npm:2.0.1"
16761-
checksum: 10c0/0eb134d6a51fc13bbcb976a1f4214ea1e33f242fae046efc311e80aff66c7a43603e26a79d9d06670283a13000e51be6e0a2cb80ff0942eaf9f1cd30b7ae736a
16768+
checksum: 10c0/ea3f8a67a8f0be3d6bf9080f0baed6d2c51d11d4f7b4470de96a5029c598a7011c497511ccc28968b70ef05508675cebff27da9151dd2ceadd60be4e6cf845e3
1676216769
languageName: node
1676316770
linkType: hard
1676416771

@@ -16797,15 +16804,15 @@ __metadata:
1679716804
languageName: node
1679816805
linkType: hard
1679916806

16800-
"serve-static@npm:1.15.0":
16801-
version: 1.15.0
16802-
resolution: "serve-static@npm:1.15.0"
16807+
"serve-static@npm:1.16.2":
16808+
version: 1.16.2
16809+
resolution: "serve-static@npm:1.16.2"
1680316810
dependencies:
16804-
encodeurl: "npm:~1.0.2"
16811+
encodeurl: "npm:~2.0.0"
1680516812
escape-html: "npm:~1.0.3"
1680616813
parseurl: "npm:~1.3.3"
16807-
send: "npm:0.18.0"
16808-
checksum: 10c0/fa9f0e21a540a28f301258dfe1e57bb4f81cd460d28f0e973860477dd4acef946a1f41748b5bd41c73b621bea2029569c935faa38578fd34cd42a9b4947088ba
16814+
send: "npm:0.19.0"
16815+
checksum: 10c0/528fff6f5e12d0c5a391229ad893910709bc51b5705962b09404a1d813857578149b8815f35d3ee5752f44cd378d0f31669d4b1d7e2d11f41e08283d5134bd1f
1680916816
languageName: node
1681016817
linkType: hard
1681116818

@@ -16955,7 +16962,7 @@ __metadata:
1695516962
languageName: node
1695616963
linkType: hard
1695716964

16958-
"side-channel@npm:^1.0.3, side-channel@npm:^1.0.4":
16965+
"side-channel@npm:^1.0.3, side-channel@npm:^1.0.4, side-channel@npm:^1.0.6":
1695916966
version: 1.0.6
1696016967
resolution: "side-channel@npm:1.0.6"
1696116968
dependencies:

0 commit comments

Comments
 (0)