mirror of
https://github.com/verdaccio/verdaccio.git
synced 2025-01-06 22:40:26 -05:00
fix: security vulnerability at readme in dompurify dep (#1532)
Fix Cross-site Scripting (XSS) in @verdaccio/readme
This commit is contained in:
parent
44c79ad708
commit
2ac7770459
2 changed files with 7 additions and 7 deletions
14
package.json
14
package.json
|
@ -16,10 +16,10 @@
|
||||||
"verdaccio": "./bin/verdaccio"
|
"verdaccio": "./bin/verdaccio"
|
||||||
},
|
},
|
||||||
"dependencies": {
|
"dependencies": {
|
||||||
"@verdaccio/commons-api": "8.1.2",
|
"@verdaccio/commons-api": "8.2.0",
|
||||||
"@verdaccio/local-storage": "8.1.2",
|
"@verdaccio/local-storage": "8.2.0",
|
||||||
"@verdaccio/readme": "8.1.2",
|
"@verdaccio/readme": "8.2.0",
|
||||||
"@verdaccio/streams": "8.1.2",
|
"@verdaccio/streams": "8.2.0",
|
||||||
"@verdaccio/ui-theme": "0.3.2",
|
"@verdaccio/ui-theme": "0.3.2",
|
||||||
"JSONStream": "1.3.5",
|
"JSONStream": "1.3.5",
|
||||||
"async": "3.1.0",
|
"async": "3.1.0",
|
||||||
|
@ -49,7 +49,7 @@
|
||||||
"request": "2.87.0",
|
"request": "2.87.0",
|
||||||
"semver": "6.3.0",
|
"semver": "6.3.0",
|
||||||
"verdaccio-audit": "8.1.4",
|
"verdaccio-audit": "8.1.4",
|
||||||
"verdaccio-htpasswd": "8.1.2"
|
"verdaccio-htpasswd": "8.2.0"
|
||||||
},
|
},
|
||||||
"devDependencies": {
|
"devDependencies": {
|
||||||
"@commitlint/cli": "8.2.0",
|
"@commitlint/cli": "8.2.0",
|
||||||
|
@ -88,8 +88,8 @@
|
||||||
"standard-version": "7.0.0",
|
"standard-version": "7.0.0",
|
||||||
"supertest": "4.0.2",
|
"supertest": "4.0.2",
|
||||||
"typescript": "3.6.3",
|
"typescript": "3.6.3",
|
||||||
"verdaccio-auth-memory": "8.1.2",
|
"verdaccio-auth-memory": "8.2.0",
|
||||||
"verdaccio-memory": "8.1.2"
|
"verdaccio-memory": "8.2.0"
|
||||||
},
|
},
|
||||||
"keywords": [
|
"keywords": [
|
||||||
"private",
|
"private",
|
||||||
|
|
BIN
yarn.lock
BIN
yarn.lock
Binary file not shown.
Loading…
Reference in a new issue