Skip to content

Commit 1a4ed2a

Browse files
Merge pull request #238 from devoxa/renovate/npm-express-vulnerability
Update dependency express from 4.21.2 to 4.22.0 [SECURITY]
2 parents e4aa8ee + ef4aacf commit 1a4ed2a

File tree

2 files changed

+61
-77
lines changed

2 files changed

+61
-77
lines changed

package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -19,7 +19,7 @@
1919
"prettier": "@devoxa/prettier-config",
2020
"dependencies": {
2121
"body-parser": "1.20.4",
22-
"express": "4.21.2",
22+
"express": "4.22.0",
2323
"zod": "3.25.76"
2424
},
2525
"devDependencies": {

yarn.lock

Lines changed: 60 additions & 76 deletions
Original file line numberDiff line numberDiff line change
@@ -652,25 +652,7 @@ binary-extensions@^2.0.0:
652652
resolved "https://registry.yarnpkg.com/binary-extensions/-/binary-extensions-2.2.0.tgz#75f502eeaf9ffde42fc98829645be4ea76bd9e2d"
653653
integrity sha512-jDctJ/IVQbZoJykoeHbhXpOlNBqGNcwXJKJog42E5HDPUwQTSdjCHdihjj0DlnheQ7blbT6dHOafNAiS8ooQKA==
654654

655-
body-parser@1.20.3:
656-
version "1.20.3"
657-
resolved "https://registry.yarnpkg.com/body-parser/-/body-parser-1.20.3.tgz#1953431221c6fb5cd63c4b36d53fab0928e548c6"
658-
integrity sha512-7rAxByjUMqQ3/bHJy7D6OGXvx/MMc4IqBn/X0fcM1QUcAItpZrBEYhWGem+tzXH90c+G01ypMcYJBO9Y30203g==
659-
dependencies:
660-
bytes "3.1.2"
661-
content-type "~1.0.5"
662-
debug "2.6.9"
663-
depd "2.0.0"
664-
destroy "1.2.0"
665-
http-errors "2.0.0"
666-
iconv-lite "0.4.24"
667-
on-finished "2.4.1"
668-
qs "6.13.0"
669-
raw-body "2.5.2"
670-
type-is "~1.6.18"
671-
unpipe "1.0.0"
672-
673-
body-parser@1.20.4:
655+
body-parser@1.20.4, body-parser@~1.20.3:
674656
version "1.20.4"
675657
resolved "https://registry.yarnpkg.com/body-parser/-/body-parser-1.20.4.tgz#f8e20f4d06ca8a50a71ed329c15dccad1cdc547f"
676658
integrity sha512-ZTgYYLMOXY9qKU/57FAo8F+HA2dGX7bqGc71txDRC1rS4frdFI5R7NhluHxH6M0YItAP0sHB4uqAOcYKxO6uGA==
@@ -715,7 +697,7 @@ buffer-from@^1.0.0:
715697
resolved "https://registry.yarnpkg.com/buffer-from/-/buffer-from-1.1.2.tgz#2b146a6fd72e80b4f55d255f35ed59a3a9a41bd5"
716698
integrity sha512-E+XQCRwSbaaiChtv6k6Dwgc+bx+Bs6vuKJHHl5kox/BaKbhiXzqQOwK4cO22yElGp2OCmjwVhT3HmxgyPGnJfQ==
717699

718-
bytes@3.1.2, bytes@~3.1.2:
700+
bytes@~3.1.2:
719701
version "3.1.2"
720702
resolved "https://registry.yarnpkg.com/bytes/-/bytes-3.1.2.tgz#8b0beeb98605adf1b128fa4386403c009e0221a5"
721703
integrity sha512-/Nf7TyzTx6S3yRJObOAV7956r8cr2+Oj8AC5dt8wSP3BQAoeX58NoHyCU8P8zGkNXStjTSi6fzO6F0pBdcYbEg==
@@ -800,7 +782,7 @@ concat-map@0.0.1:
800782
resolved "https://registry.yarnpkg.com/concat-map/-/concat-map-0.0.1.tgz#d8a96bd77fd68df7793a73036a3ba0d5405d477b"
801783
integrity sha512-/Srv4dswyQNBfohGpz9o6Yb3Gz3SrUDqBH5rTuhGR7ahtlbYKnVxw2bCFMRljaA7EXHaXZ8wsHdodFvbkhKmqg==
802784

803-
content-disposition@0.5.4:
785+
content-disposition@~0.5.4:
804786
version "0.5.4"
805787
resolved "https://registry.yarnpkg.com/content-disposition/-/content-disposition-0.5.4.tgz#8b82b4efac82512a02bb0b1dcec9d2c5e8eb5bfe"
806788
integrity sha512-FveZTNuGw04cxlAiWbzi6zTAL/lhehaWbTtgluJh4/E95DqMwTmha3KZN1aAWA8cFIhHzMZUvLevkw5Rqk+tSQ==
@@ -812,15 +794,15 @@ content-type@~1.0.4, content-type@~1.0.5:
812794
resolved "https://registry.yarnpkg.com/content-type/-/content-type-1.0.5.tgz#8b773162656d1d1086784c8f23a54ce6d73d7918"
813795
integrity sha512-nTjqfcBFEipKdXCv4YDQWCfmcLZKm81ldF0pAopTvyrFGVbcR6P/VAAd5G7N+0tTr8QqiU0tFadD6FK4NtJwOA==
814796

815-
cookie-signature@1.0.6:
816-
version "1.0.6"
817-
resolved "https://registry.yarnpkg.com/cookie-signature/-/cookie-signature-1.0.6.tgz#e303a882b342cc3ee8ca513a79999734dab3ae2c"
818-
integrity sha512-QADzlaHc8icV8I7vbaJXJwod9HWYp8uCqf1xa4OfNu1T7JVxQIrUgOWtHdNDtPiywmFbiS12VjotIXLrKM3orQ==
797+
cookie-signature@~1.0.6:
798+
version "1.0.7"
799+
resolved "https://registry.yarnpkg.com/cookie-signature/-/cookie-signature-1.0.7.tgz#ab5dd7ab757c54e60f37ef6550f481c426d10454"
800+
integrity sha512-NXdYc3dLr47pBkpUCHtKSwIOQXLVn8dZEuywboCOJY/osA0wFSLlSawr3KN8qXJEyX66FcONTH8EIlVuK0yyFA==
819801

820-
cookie@0.7.1:
821-
version "0.7.1"
822-
resolved "https://registry.yarnpkg.com/cookie/-/cookie-0.7.1.tgz#2f73c42142d5d5cf71310a74fc4ae61670e5dbc9"
823-
integrity sha512-6DnInpx7SJ2AK3+CTUE/ZM0vWTUboZCegxhC2xiIydHR9jNuTAASBrfEpHhiGOZw/nX51bHt6YQl8jsGo4y/0w==
802+
cookie@~0.7.1:
803+
version "0.7.2"
804+
resolved "https://registry.yarnpkg.com/cookie/-/cookie-0.7.2.tgz#556369c472a2ba910f2979891b526b3436237ed7"
805+
integrity sha512-yki5XnKuf750l50uGTllt6kKILY4nQ1eNIQatoXEByZ5dWgnKqbnqmTrBE5B4N7lrMJKQ2ytWMiTO2o0v6Ew/w==
824806

825807
create-require@^1.1.0:
826808
version "1.1.1"
@@ -1300,39 +1282,39 @@ etag@~1.8.1:
13001282
resolved "https://registry.yarnpkg.com/etag/-/etag-1.8.1.tgz#41ae2eeb65efa62268aebfea83ac7d79299b0887"
13011283
integrity sha512-aIL5Fx7mawVa300al2BnEE4iNvo1qETxLrPI/o05L7z6go7fCw1J6EQmbK4FmJ2AS7kgVF/KEZWufBfdClMcPg==
13021284

1303-
express@4.21.2:
1304-
version "4.21.2"
1305-
resolved "https://registry.yarnpkg.com/express/-/express-4.21.2.tgz#cf250e48362174ead6cea4a566abef0162c1ec32"
1306-
integrity sha512-28HqgMZAmih1Czt9ny7qr6ek2qddF4FclbMzwhCREB6OFfH+rXAnuNCwo1/wFvrtbgsQDb4kSbX9de9lFbrXnA==
1285+
express@4.22.0:
1286+
version "4.22.0"
1287+
resolved "https://registry.yarnpkg.com/express/-/express-4.22.0.tgz#a9d7abdce6d774ed1b4479019387763d1798bd03"
1288+
integrity sha512-c2iPh3xp5vvCLgaHK03+mWLFPhox7j1LwyxcZwFVApEv5i0X+IjPpbT50SJJwwLpdBVfp45AkK/v+AFgv/XlfQ==
13071289
dependencies:
13081290
accepts "~1.3.8"
13091291
array-flatten "1.1.1"
1310-
body-parser "1.20.3"
1311-
content-disposition "0.5.4"
1292+
body-parser "~1.20.3"
1293+
content-disposition "~0.5.4"
13121294
content-type "~1.0.4"
1313-
cookie "0.7.1"
1314-
cookie-signature "1.0.6"
1295+
cookie "~0.7.1"
1296+
cookie-signature "~1.0.6"
13151297
debug "2.6.9"
13161298
depd "2.0.0"
13171299
encodeurl "~2.0.0"
13181300
escape-html "~1.0.3"
13191301
etag "~1.8.1"
1320-
finalhandler "1.3.1"
1321-
fresh "0.5.2"
1322-
http-errors "2.0.0"
1302+
finalhandler "~1.3.1"
1303+
fresh "~0.5.2"
1304+
http-errors "~2.0.0"
13231305
merge-descriptors "1.0.3"
13241306
methods "~1.1.2"
1325-
on-finished "2.4.1"
1307+
on-finished "~2.4.1"
13261308
parseurl "~1.3.3"
1327-
path-to-regexp "0.1.12"
1309+
path-to-regexp "~0.1.12"
13281310
proxy-addr "~2.0.7"
1329-
qs "6.13.0"
1311+
qs "~6.14.0"
13301312
range-parser "~1.2.1"
13311313
safe-buffer "5.2.1"
1332-
send "0.19.0"
1333-
serve-static "1.16.2"
1314+
send "~0.19.0"
1315+
serve-static "~1.16.2"
13341316
setprototypeof "1.2.0"
1335-
statuses "2.0.1"
1317+
statuses "~2.0.1"
13361318
type-is "~1.6.18"
13371319
utils-merge "1.0.1"
13381320
vary "~1.1.2"
@@ -1384,17 +1366,17 @@ fill-range@^7.0.1:
13841366
dependencies:
13851367
to-regex-range "^5.0.1"
13861368

1387-
finalhandler@1.3.1:
1388-
version "1.3.1"
1389-
resolved "https://registry.yarnpkg.com/finalhandler/-/finalhandler-1.3.1.tgz#0c575f1d1d324ddd1da35ad7ece3df7d19088019"
1390-
integrity sha512-6BN9trH7bp3qvnrRyzsBz+g3lZxTNZTbVO2EV1CS0WIcDbawYVdYvGflME/9QP0h0pYlCDBCTjYa9nZzMDpyxQ==
1369+
finalhandler@~1.3.1:
1370+
version "1.3.2"
1371+
resolved "https://registry.yarnpkg.com/finalhandler/-/finalhandler-1.3.2.tgz#1ebc2228fc7673aac4a472c310cc05b77d852b88"
1372+
integrity sha512-aA4RyPcd3badbdABGDuTXCMTtOneUCAYH/gxoYRTZlIJdF0YPWuGqiAsIrhNnnqdXGswYk6dGujem4w80UJFhg==
13911373
dependencies:
13921374
debug "2.6.9"
13931375
encodeurl "~2.0.0"
13941376
escape-html "~1.0.3"
1395-
on-finished "2.4.1"
1377+
on-finished "~2.4.1"
13961378
parseurl "~1.3.3"
1397-
statuses "2.0.1"
1379+
statuses "~2.0.2"
13981380
unpipe "~1.0.0"
13991381

14001382
find-up@^5.0.0:
@@ -1430,7 +1412,7 @@ forwarded@0.2.0:
14301412
resolved "https://registry.yarnpkg.com/forwarded/-/forwarded-0.2.0.tgz#2269936428aad4c15c7ebe9779a84bf0b2a81811"
14311413
integrity sha512-buRG0fpBtRHSTCOASe6hD258tEubFoRLb4ZNA6NxMVHNw2gOcwHo9wyablzMzOA5z9xA9L1KNjk/Nt6MT9aYow==
14321414

1433-
fresh@0.5.2:
1415+
fresh@0.5.2, fresh@~0.5.2:
14341416
version "0.5.2"
14351417
resolved "https://registry.yarnpkg.com/fresh/-/fresh-0.5.2.tgz#3d8cadd90d976569fa835ab1f8e4b23a105605a7"
14361418
integrity sha512-zJ2mQYM18rEFOudeV4GShTGIQ7RbzA7ozbU9I/XBpm7kqgMywgmylMwXHxZJmkVoYkna9d2pVXVXPdYTP9ej8Q==
@@ -1690,7 +1672,7 @@ http-errors@2.0.0:
16901672
statuses "2.0.1"
16911673
toidentifier "1.0.1"
16921674

1693-
http-errors@~2.0.1:
1675+
http-errors@~2.0.0, http-errors@~2.0.1:
16941676
version "2.0.1"
16951677
resolved "https://registry.yarnpkg.com/http-errors/-/http-errors-2.0.1.tgz#36d2f65bc909c8790018dd36fb4d93da6caae06b"
16961678
integrity sha512-4FbRdAX+bSdmo4AUFuS0WNiPz8NgFt+r8ThgNWmlrjQjt1Q7ZR9+zTlce2859x4KSXrwIsaeTqDoKQmtP8pLmQ==
@@ -1701,7 +1683,7 @@ http-errors@~2.0.1:
17011683
statuses "~2.0.2"
17021684
toidentifier "~1.0.1"
17031685

1704-
iconv-lite@0.4.24, iconv-lite@~0.4.24:
1686+
iconv-lite@~0.4.24:
17051687
version "0.4.24"
17061688
resolved "https://registry.yarnpkg.com/iconv-lite/-/iconv-lite-0.4.24.tgz#2022b4b25fbddc21d2f524974a474aafe733908b"
17071689
integrity sha512-v3MXnZAcvnywkTUEZomIActle7RXXeedOR31wwl7VlyoXO4Qi9arvSenNQWne1TcRwhCL1HwLI21bEqdpj8/rA==
@@ -2327,7 +2309,7 @@ path-parse@^1.0.7:
23272309
resolved "https://registry.yarnpkg.com/path-parse/-/path-parse-1.0.7.tgz#fbc114b60ca42b30d9daf5858e4bd68bbedb6735"
23282310
integrity sha512-LDJzPVEEEPR+y48z93A0Ed0yXb8pAByGWo/k5YYdYgpY2/2EsOsksJrq7lOHxryrVOn1ejG6oAp8ahvOIQD8sw==
23292311

2330-
path-to-regexp@0.1.12:
2312+
path-to-regexp@~0.1.12:
23312313
version "0.1.12"
23322314
resolved "https://registry.yarnpkg.com/path-to-regexp/-/path-to-regexp-0.1.12.tgz#d5e1a12e478a976d432ef3c58d534b9923164bb7"
23332315
integrity sha512-RA1GjUVMnvYFxuqovrEqZoxxW5NUZqbwKtYz/Tt7nXerk0LbLblQmrsgdeOxV5SFHf0UDggjS/bSeOZwt1pmEQ==
@@ -2384,13 +2366,6 @@ punycode@^2.1.0:
23842366
resolved "https://registry.yarnpkg.com/punycode/-/punycode-2.3.0.tgz#f67fa67c94da8f4d0cfff981aee4118064199b8f"
23852367
integrity sha512-rRV+zQD8tVFys26lAGR9WUuS4iUAngJScM+ZRSKtvl5tKeZ2t5bvdNFdNHBW9FWR4guGHlgmsZ1G7BSm2wTbuA==
23862368

2387-
qs@6.13.0:
2388-
version "6.13.0"
2389-
resolved "https://registry.yarnpkg.com/qs/-/qs-6.13.0.tgz#6ca3bd58439f7e245655798997787b0d88a51906"
2390-
integrity sha512-+38qI9SOr8tfZ4QmJNplMUxqjbe7LKvvZgWdExBOmd+egZTtjLB67Gu0HRX3u/XOq7UU2Nx6nsjvS16Z9uwfpg==
2391-
dependencies:
2392-
side-channel "^1.0.6"
2393-
23942369
qs@~6.14.0:
23952370
version "6.14.0"
23962371
resolved "https://registry.yarnpkg.com/qs/-/qs-6.14.0.tgz#c63fa40680d2c5c941412a0e899c89af60c0a930"
@@ -2408,16 +2383,6 @@ range-parser@~1.2.1:
24082383
resolved "https://registry.yarnpkg.com/range-parser/-/range-parser-1.2.1.tgz#3cf37023d199e1c24d1a55b84800c2f3e6468031"
24092384
integrity sha512-Hrgsx+orqoygnmhFbKaHE6c296J+HTAQXoxEF6gNupROmmGJRoyzfG3ccAveqCBrwr/2yxQ5BVd/GTl5agOwSg==
24102385

2411-
raw-body@2.5.2:
2412-
version "2.5.2"
2413-
resolved "https://registry.yarnpkg.com/raw-body/-/raw-body-2.5.2.tgz#99febd83b90e08975087e8f1f9419a149366b68a"
2414-
integrity sha512-8zGqypfENjCIqGhgXToC8aB2r7YrBX+AQAfIPs/Mlk+BtPTztOvTS01NRW/3Eh60J+a48lt8qsCzirQ6loCVfA==
2415-
dependencies:
2416-
bytes "3.1.2"
2417-
http-errors "2.0.0"
2418-
iconv-lite "0.4.24"
2419-
unpipe "1.0.0"
2420-
24212386
raw-body@~2.5.3:
24222387
version "2.5.3"
24232388
resolved "https://registry.yarnpkg.com/raw-body/-/raw-body-2.5.3.tgz#11c6650ee770a7de1b494f197927de0c923822e2"
@@ -2591,7 +2556,26 @@ send@0.19.0:
25912556
range-parser "~1.2.1"
25922557
statuses "2.0.1"
25932558

2594-
serve-static@1.16.2:
2559+
send@~0.19.0:
2560+
version "0.19.1"
2561+
resolved "https://registry.yarnpkg.com/send/-/send-0.19.1.tgz#1c2563b2ee4fe510b806b21ec46f355005a369f9"
2562+
integrity sha512-p4rRk4f23ynFEfcD9LA0xRYngj+IyGiEYyqqOak8kaN0TvNmuxC2dcVeBn62GpCeR2CpWqyHCNScTP91QbAVFg==
2563+
dependencies:
2564+
debug "2.6.9"
2565+
depd "2.0.0"
2566+
destroy "1.2.0"
2567+
encodeurl "~2.0.0"
2568+
escape-html "~1.0.3"
2569+
etag "~1.8.1"
2570+
fresh "0.5.2"
2571+
http-errors "2.0.0"
2572+
mime "1.6.0"
2573+
ms "2.1.3"
2574+
on-finished "2.4.1"
2575+
range-parser "~1.2.1"
2576+
statuses "2.0.1"
2577+
2578+
serve-static@~1.16.2:
25952579
version "1.16.2"
25962580
resolved "https://registry.yarnpkg.com/serve-static/-/serve-static-1.16.2.tgz#b6a5343da47f6bdd2673848bf45754941e803296"
25972581
integrity sha512-VqpjJZKadQB/PEbEwvFdO43Ax5dFBZ2UECszz8bQ7pi7wt//PWe1P6MN7eCnjsatYtBT6EuiClbjSWP2WrIoTw==
@@ -2717,7 +2701,7 @@ statuses@2.0.1:
27172701
resolved "https://registry.yarnpkg.com/statuses/-/statuses-2.0.1.tgz#55cb000ccf1d48728bd23c685a063998cf1a1b63"
27182702
integrity sha512-RwNA9Z/7PrK06rYLIzFMlaF+l73iwpzsqRIFgbMLbTcLD6cOao82TaWefPXQvB2fOC4AjuYSEndS7N/mTCbkdQ==
27192703

2720-
statuses@~2.0.2:
2704+
statuses@~2.0.1, statuses@~2.0.2:
27212705
version "2.0.2"
27222706
resolved "https://registry.yarnpkg.com/statuses/-/statuses-2.0.2.tgz#8f75eecef765b5e1cfcdc080da59409ed424e382"
27232707
integrity sha512-DvEy55V3DB7uknRo+4iOGT5fP1slR8wQohVdknigZPMpMstaKJQWhwiYBACJE3Ul2pTnATihhBYnRhZQHGBiRw==
@@ -3025,7 +3009,7 @@ undici-types@~5.26.4:
30253009
resolved "https://registry.yarnpkg.com/undici-types/-/undici-types-5.26.5.tgz#bcd539893d00b56e964fd2657a4866b221a65617"
30263010
integrity sha512-JlCMO+ehdEIKqlFxk6IfVoAUVmgz7cU7zD/h9XZ0qzeosSHmUJVOzSQvvYSYWXkFXC+IfLKSIffhv0sVZup6pA==
30273011

3028-
unpipe@1.0.0, unpipe@~1.0.0:
3012+
unpipe@~1.0.0:
30293013
version "1.0.0"
30303014
resolved "https://registry.yarnpkg.com/unpipe/-/unpipe-1.0.0.tgz#b2bf4ee8514aae6165b4817829d21b2ef49904ec"
30313015
integrity sha512-pjy2bYhSsufwWlKwPc+l3cN7+wuJlK6uz0YdJEOlQDbl6jo/YlPi4mb8agUkVC8BF7V8NuzeyPNqRksA3hztKQ==

0 commit comments

Comments
 (0)