Skip to content

Commit fe53081

Browse files
committed
fix(Dependencies): update mongodb version
- update mongodb version to 3.6.2 to fix "bl" security issue - update tar-stream to 2.1.4 fixes #349
1 parent c9061e3 commit fe53081

File tree

3 files changed

+36
-7
lines changed

3 files changed

+36
-7
lines changed

package.json

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -16,7 +16,7 @@
1616
"@semantic-release/release-notes-generator": "^9.0.1",
1717
"@types/jest": "26.0.13",
1818
"@types/mongodb": "3.5.27",
19-
"@types/node": "14.6.4",
19+
"@types/node": "14.10.0",
2020
"@typescript-eslint/eslint-plugin": "4.1.0",
2121
"@typescript-eslint/parser": "4.1.0",
2222
"commitlint": "^9.1.2",
@@ -29,7 +29,7 @@
2929
"jest": "26.4.2",
3030
"lerna": "^3.22.1",
3131
"lint-staged": "^10.3.0",
32-
"mongodb": "3.6.1",
32+
"mongodb": "3.6.2",
3333
"prettier": "2.1.1",
3434
"semantic-release": "^17.1.1",
3535
"ts-jest": "26.3.0",

packages/mongodb-memory-server-core/package.json

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -71,13 +71,13 @@
7171
"md5-file": "^5.0.0",
7272
"mkdirp": "^1.0.4",
7373
"semver": "^7.3.2",
74-
"tar-stream": "^2.1.3",
74+
"tar-stream": "^2.1.4",
7575
"tmp": "^0.2.1",
7676
"uuid": "8.3.0",
7777
"yauzl": "^2.10.0"
7878
},
7979
"optionalDependencies": {
80-
"mongodb": "3.6.1"
80+
"mongodb": "3.6.2"
8181
},
8282
"scripts": {
8383
"clean": "rimraf tmp lib coverage node_modules/.cache",

yarn.lock

Lines changed: 32 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -1899,11 +1899,16 @@
18991899
"@types/bson" "*"
19001900
"@types/node" "*"
19011901

1902-
"@types/node@*", "@types/node@14.6.4", "@types/node@>= 8":
1902+
"@types/node@*", "@types/node@>= 8":
19031903
version "14.6.4"
19041904
resolved "https://registry.yarnpkg.com/@types/node/-/node-14.6.4.tgz#a145cc0bb14ef9c4777361b7bbafa5cf8e3acb5a"
19051905
integrity sha512-Wk7nG1JSaMfMpoMJDKUsWYugliB2Vy55pdjLpmLixeyMi7HizW2I/9QoxsPCkXl3dO+ZOVqPumKaDUv5zJu2uQ==
19061906

1907+
1908+
version "14.10.0"
1909+
resolved "https://registry.yarnpkg.com/@types/node/-/node-14.10.0.tgz#15815dff82c8dc30827f6b1286f865902945095a"
1910+
integrity sha512-SOIyrdADB4cq6eY1F+9iU48iIomFAPltu11LCvA9PKcyEwHadjCFzNVPotAR+oEJA0bCP4Xvvgy+vwu1ZjVh8g==
1911+
19071912
"@types/normalize-package-data@^2.4.0":
19081913
version "2.4.0"
19091914
resolved "https://registry.yarnpkg.com/@types/normalize-package-data/-/normalize-package-data-2.4.0.tgz#e486d0d97396d79beedd0a6e33f4534ff6b4973e"
@@ -2499,15 +2504,15 @@ bin-links@^1.1.2, bin-links@^1.1.8:
24992504
npm-normalize-package-bin "^1.0.0"
25002505
write-file-atomic "^2.3.0"
25012506

2502-
bl@^2.2.0:
2507+
bl@^2.2.0, bl@^2.2.1:
25032508
version "2.2.1"
25042509
resolved "https://registry.yarnpkg.com/bl/-/bl-2.2.1.tgz#8c11a7b730655c5d56898cdc871224f40fd901d5"
25052510
integrity sha512-6Pesp1w0DEX1N550i/uGV/TqucVL4AM/pgThFSN/Qq9si1/DF9aIHs1BxD8V/QU0HoeHO6cQRTAuYnLPKq1e4g==
25062511
dependencies:
25072512
readable-stream "^2.3.5"
25082513
safe-buffer "^5.1.1"
25092514

2510-
bl@^4.0.1:
2515+
bl@^4.0.1, bl@^4.0.3:
25112516
version "4.0.3"
25122517
resolved "https://registry.yarnpkg.com/bl/-/bl-4.0.3.tgz#12d6287adc29080e22a705e5764b2a9522cdc489"
25132518
integrity sha512-fs4G6/Hu4/EE+F75J8DuN/0IpQqNjAdC7aEQv7Qt8MHGUH7Ckv2MwTEEeN9QehD0pfIDkMI1bkHYkKy7xHyKIg==
@@ -6980,6 +6985,19 @@ [email protected]:
69806985
optionalDependencies:
69816986
saslprep "^1.0.0"
69826987

6988+
6989+
version "3.6.2"
6990+
resolved "https://registry.yarnpkg.com/mongodb/-/mongodb-3.6.2.tgz#1154a4ac107bf1375112d83a29c5cf97704e96b6"
6991+
integrity sha512-sSZOb04w3HcnrrXC82NEh/YGCmBuRgR+C1hZgmmv4L6dBz4BkRse6Y8/q/neXer9i95fKUBbFi4KgeceXmbsOA==
6992+
dependencies:
6993+
bl "^2.2.1"
6994+
bson "^1.1.4"
6995+
denque "^1.4.1"
6996+
require_optional "^1.0.1"
6997+
safe-buffer "^5.1.2"
6998+
optionalDependencies:
6999+
saslprep "^1.0.0"
7000+
69837001
move-concurrently@^1.0.1:
69847002
version "1.0.1"
69857003
resolved "https://registry.yarnpkg.com/move-concurrently/-/move-concurrently-1.0.1.tgz#be2c005fda32e0b29af1f05d7c4b33214c701f92"
@@ -9474,6 +9492,17 @@ tar-stream@^2.1.3:
94749492
inherits "^2.0.3"
94759493
readable-stream "^3.1.1"
94769494

9495+
tar-stream@^2.1.4:
9496+
version "2.1.4"
9497+
resolved "https://registry.yarnpkg.com/tar-stream/-/tar-stream-2.1.4.tgz#c4fb1a11eb0da29b893a5b25476397ba2d053bfa"
9498+
integrity sha512-o3pS2zlG4gxr67GmFYBLlq+dM8gyRGUOvsrHclSkvtVtQbjV0s/+ZE8OpICbaj8clrX3tjeHngYGP7rweaBnuw==
9499+
dependencies:
9500+
bl "^4.0.3"
9501+
end-of-stream "^1.4.1"
9502+
fs-constants "^1.0.0"
9503+
inherits "^2.0.3"
9504+
readable-stream "^3.1.1"
9505+
94779506
tar@^4.4.10, tar@^4.4.12, tar@^4.4.13, tar@^4.4.8:
94789507
version "4.4.13"
94799508
resolved "https://registry.yarnpkg.com/tar/-/tar-4.4.13.tgz#43b364bc52888d555298637b10d60790254ab525"

0 commit comments

Comments
 (0)