From d830e46fc843ecbd8e3a6fbe2de8136e8b9e6cab Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 9 Dec 2024 16:14:31 +0000 Subject: [PATCH] fix: package.json & yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/npm:debug:20170905 --- package.json | 2 +- yarn.lock | 9 ++++++++- 2 files changed, 9 insertions(+), 2 deletions(-) diff --git a/package.json b/package.json index a4bca81..0cef494 100644 --- a/package.json +++ b/package.json @@ -10,7 +10,7 @@ "@heroku/no-kafka": "^2.4.1", "co": "4.6.0", "co-wait": "0.0.0", - "debug": "2.6.8", + "debug": "2.6.9", "heroku-cli-addons": "1.2.19", "heroku-cli-util": "^8.0.12", "humanize-plus": "^1.8.2", diff --git a/yarn.lock b/yarn.lock index d39d073..f631ba1 100644 --- a/yarn.lock +++ b/yarn.lock @@ -670,7 +670,14 @@ debug@2.6.0: dependencies: ms "0.7.2" -debug@2.6.8, debug@^2.2.0, debug@^2.6.3, debug@^2.6.8: +debug@2.6.9: + version "2.6.9" + resolved "https://registry.yarnpkg.com/debug/-/debug-2.6.9.tgz#5d128515df134ff327e90a4c93f4e077a536341f" + integrity sha512-bC7ElrdJaJnPbAP+1EotYvqZsb3ecl5wi6Bfi6BJTUcNowp6cvspg0jXznRTKDjm/E7AdgFBVeAPVMNcKGsHMA== + dependencies: + ms "2.0.0" + +debug@^2.2.0, debug@^2.6.3, debug@^2.6.8: version "2.6.8" resolved "https://registry.yarnpkg.com/debug/-/debug-2.6.8.tgz#e731531ca2ede27d188222427da17821d68ff4fc" dependencies: