From ee161214420481fe65da7712f1c269d27ee77e8c Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 5 Dec 2022 07:14:37 +0000 Subject: [PATCH] fix: package.json & yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-QS-3153490 --- package.json | 2 +- yarn.lock | 8 ++++---- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/package.json b/package.json index d6f09abd3..633298001 100644 --- a/package.json +++ b/package.json @@ -64,7 +64,7 @@ "multihashes": "^3.0.1", "node-fetch": "^2.6.1", "numeral": "^2.0.6", - "qs": "^6.9.4", + "qs": "^6.10.3", "react": "^17.0.1", "react-countup": "^4.3.3", "react-datepicker": "^4.2.1", diff --git a/yarn.lock b/yarn.lock index cd8d4c368..3c29a6bd4 100644 --- a/yarn.lock +++ b/yarn.lock @@ -17514,10 +17514,10 @@ qs@6.7.0: resolved "https://registry.yarnpkg.com/qs/-/qs-6.7.0.tgz#41dc1a015e3d581f1621776be31afb2876a9b1bc" integrity sha512-VCdBRNFTX1fyE7Nb6FYoURo/SPe62QCaAyzJvUjwRaIsc+NePBEniHlvxFmmX56+HZphIGtV0XeCirBtpDrTyQ== -qs@^6.9.4: - version "6.10.1" - resolved "https://registry.yarnpkg.com/qs/-/qs-6.10.1.tgz#4931482fa8d647a5aab799c5271d2133b981fb6a" - integrity sha512-M528Hph6wsSVOBiYUnGf+K/7w0hNshs/duGsNXPUCLH5XAqjEtiPGwNONLV0tBH8NoGb0mvD5JubnUTrujKDTg== +qs@^6.10.3: + version "6.11.0" + resolved "https://registry.yarnpkg.com/qs/-/qs-6.11.0.tgz#fd0d963446f7a65e1367e01abd85429453f0c37a" + integrity sha512-MvjoMCJwEarSbUYk5O+nmoSzSutSsTwF85zcHPQ9OrlFoZOYIjaqBAJIqIXjptyD5vThxGq52Xu/MaJzRkIk4Q== dependencies: side-channel "^1.0.4"