Skip to content

Commit a0ff6b1

Browse files
authored
chore: update lodash to 4.17.23 (calcom#27157)
Fixes prototype pollution in _.unset and _.omit
1 parent 1736c9d commit a0ff6b1

5 files changed

Lines changed: 17 additions & 15 deletions

File tree

apps/api/v2/package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -72,7 +72,7 @@
7272
"googleapis": "84.0.0",
7373
"helmet": "7.1.0",
7474
"ioredis": "5.3.2",
75-
"lodash": "4.17.21",
75+
"lodash": "4.17.23",
7676
"luxon": "3.4.4",
7777
"nest-winston": "1.9.4",
7878
"passport": "0.7.0",

apps/web/package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -102,7 +102,7 @@
102102
"jsdom": "22.0.0",
103103
"kbar": "0.1.0-beta.36",
104104
"libphonenumber-js": "^1.11.18",
105-
"lodash": "4.17.21",
105+
"lodash": "4.17.23",
106106
"markdown-it": "13.0.1",
107107
"md5": "2.3.0",
108108
"memory-cache": "0.2.0",

package.json

Lines changed: 3 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -153,7 +153,9 @@
153153
"serialize-javascript": "6.0.2",
154154
"@adobe/css-tools": "4.3.2",
155155
"jsondiffpatch": "0.7.2",
156-
"min-document": "2.19.1"
156+
"min-document": "2.19.1",
157+
"lodash": "4.17.23",
158+
"lodash-es": "4.17.23"
157159
},
158160
"packageExtensions": {
159161
"ink@3.2.0": {

packages/app-store/package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -31,7 +31,7 @@
3131
"@calcom/office365video": "workspace:*",
3232
"@calcom/ui": "workspace:*",
3333
"@calcom/zoomvideo": "workspace:*",
34-
"lodash": "4.17.21",
34+
"lodash": "4.17.23",
3535
"qs-stringify": "1.2.1",
3636
"react-i18next": "12.3.1"
3737
},

yarn.lock

Lines changed: 11 additions & 11 deletions
Original file line numberDiff line numberDiff line change
@@ -1991,7 +1991,7 @@ __metadata:
19911991
jest: "npm:29.7.0"
19921992
jest-date-mock: "npm:1.0.10"
19931993
jest-junit: "npm:^16.0.0"
1994-
lodash: "npm:4.17.21"
1994+
lodash: "npm:4.17.23"
19951995
luxon: "npm:3.4.4"
19961996
nest-winston: "npm:1.9.4"
19971997
node-mocks-http: "npm:1.16.2"
@@ -2080,7 +2080,7 @@ __metadata:
20802080
"@calcom/types": "workspace:*"
20812081
"@calcom/ui": "workspace:*"
20822082
"@calcom/zoomvideo": "workspace:*"
2083-
lodash: "npm:4.17.21"
2083+
lodash: "npm:4.17.23"
20842084
qs-stringify: "npm:1.2.1"
20852085
react-i18next: "npm:12.3.1"
20862086
peerDependencies:
@@ -3598,7 +3598,7 @@ __metadata:
35983598
jsdom: "npm:22.0.0"
35993599
kbar: "npm:0.1.0-beta.36"
36003600
libphonenumber-js: "npm:^1.11.18"
3601-
lodash: "npm:4.17.21"
3601+
lodash: "npm:4.17.23"
36023602
markdown-it: "npm:13.0.1"
36033603
md5: "npm:2.3.0"
36043604
memory-cache: "npm:0.2.0"
@@ -27809,10 +27809,10 @@ __metadata:
2780927809
languageName: node
2781027810
linkType: hard
2781127811

27812-
"lodash-es@npm:^4.17.21":
27813-
version: 4.17.21
27814-
resolution: "lodash-es@npm:4.17.21"
27815-
checksum: 10/03f39878ea1e42b3199bd3f478150ab723f93cc8730ad86fec1f2804f4a07c6e30deaac73cad53a88e9c3db33348bb8ceeb274552390e7a75d7849021c02df43
27812+
"lodash-es@npm:4.17.23":
27813+
version: 4.17.23
27814+
resolution: "lodash-es@npm:4.17.23"
27815+
checksum: 10/1feae200df22eb0bd93ca86d485e77784b8a9fb1d13e91b66e9baa7a7e5e04be088c12a7e20c2250fc0bd3db1bc0ef0affc7d9e3810b6af2455a3c6bf6dde59e
2781627816
languageName: node
2781727817
linkType: hard
2781827818

@@ -27949,10 +27949,10 @@ __metadata:
2794927949
languageName: node
2795027950
linkType: hard
2795127951

27952-
"lodash@npm:4.17.21, lodash@npm:^4.17.15, lodash@npm:^4.17.20, lodash@npm:^4.17.21, lodash@npm:~4.17.0, lodash@npm:~4.17.15":
27953-
version: 4.17.21
27954-
resolution: "lodash@npm:4.17.21"
27955-
checksum: 10/c08619c038846ea6ac754abd6dd29d2568aa705feb69339e836dfa8d8b09abbb2f859371e86863eda41848221f9af43714491467b5b0299122431e202bb0c532
27952+
"lodash@npm:4.17.23":
27953+
version: 4.17.23
27954+
resolution: "lodash@npm:4.17.23"
27955+
checksum: 10/82504c88250f58da7a5a4289f57a4f759c44946c005dd232821c7688b5fcfbf4a6268f6a6cdde4b792c91edd2f3b5398c1d2a0998274432cff76def48735e233
2795627956
languageName: node
2795727957
linkType: hard
2795827958

0 commit comments

Comments
 (0)