From cd06e89dce7dba0487c5bd84231400eabc8e1344 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 5 Apr 2022 18:09:01 +0000 Subject: [PATCH] fix: package.json & yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-MOMENT-2440688 --- package.json | 2 +- yarn.lock | 8 ++++---- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/package.json b/package.json index fb6e7b2..cbf603a 100644 --- a/package.json +++ b/package.json @@ -81,7 +81,7 @@ "immutable": "^3.8.2", "lodash": "^4.17.14", "memoize-one": "^5.0.0", - "moment": "^2.23.0", + "moment": "^2.29.2", "prop-types": "^15.6.2", "queueing-subject": "^0.3.0", "react": "^16.6.2", diff --git a/yarn.lock b/yarn.lock index 40ec8ab..457286f 100644 --- a/yarn.lock +++ b/yarn.lock @@ -5668,10 +5668,10 @@ modify-values@^1.0.0: version "1.0.1" resolved "https://registry.yarnpkg.com/modify-values/-/modify-values-1.0.1.tgz#b3939fa605546474e3e3e3c63d64bd43b4ee6022" -moment@^2.23.0: - version "2.23.0" - resolved "https://registry.yarnpkg.com/moment/-/moment-2.23.0.tgz#759ea491ac97d54bac5ad776996e2a58cc1bc225" - integrity sha512-3IE39bHVqFbWWaPOMHZF98Q9c3LDKGTmypMiTM2QygGXXElkFWIH7GxfmlwmY2vwa+wmNsoYZmG2iusf1ZjJoA== +moment@^2.29.2: + version "2.29.2" + resolved "https://registry.yarnpkg.com/moment/-/moment-2.29.2.tgz#00910c60b20843bcba52d37d58c628b47b1f20e4" + integrity sha512-UgzG4rvxYpN15jgCmVJwac49h9ly9NurikMWGPdVxm8GZD6XjkKPxDTjQQ43gtGgnV3X0cAyWDdP2Wexoquifg== moo@^0.4.3: version "0.4.3"