From dff36a36bde6a33920e3761f4d0360110d16fee6 Mon Sep 17 00:00:00 2001 From: Norbert Renner Date: Thu, 2 May 2019 18:51:40 +0200 Subject: [PATCH] Fix GitHub security alert for jquery < 3.4.0 https://nvd.nist.gov/vuln/detail/CVE-2019-11358 --- package.json | 2 +- yarn.lock | 7 ++++++- 2 files changed, 7 insertions(+), 2 deletions(-) diff --git a/package.json b/package.json index c9f0cf8..43aaf89 100644 --- a/package.json +++ b/package.json @@ -30,7 +30,7 @@ "i18next": "^15.0.4", "i18next-browser-languagedetector": "^3.0.1", "i18next-xhr-backend": "^2.0.1", - "jquery": "3.3.1", + "jquery": "3.4.1", "jquery-i18next": "^1.2.1", "jstree": "^3.3.7", "leaflet": "~1.4.0", diff --git a/yarn.lock b/yarn.lock index 0a5455d..f118b99 100644 --- a/yarn.lock +++ b/yarn.lock @@ -3347,11 +3347,16 @@ jquery-i18next@^1.2.1: resolved "https://registry.yarnpkg.com/jquery-i18next/-/jquery-i18next-1.2.1.tgz#3e4ac5e46632fac21640529f1aa7b68e54f227e8" integrity sha512-UNcw3rgxoKjGEg4w23FEn2h3OlPJU7rPzsgDuXDBZktIzeiVbJohs9Cv9hj8oP8KNfBRKOoErL/OVxg2FaAR4g== -"jquery@1.9.1 - 3", jquery@3.3.1, jquery@>=1.7, jquery@>=1.8, jquery@>=1.9.1: +"jquery@1.9.1 - 3", jquery@>=1.7, jquery@>=1.8, jquery@>=1.9.1: version "3.3.1" resolved "https://registry.yarnpkg.com/jquery/-/jquery-3.3.1.tgz#958ce29e81c9790f31be7792df5d4d95fc57fbca" integrity sha512-Ubldcmxp5np52/ENotGxlLe6aGMvmF4R8S6tZjsP6Knsaxd/xp3Zrh50cG93lR6nPXyUFwzN3ZSOQI0wRJNdGg== +jquery@3.4.1: + version "3.4.1" + resolved "https://registry.yarnpkg.com/jquery/-/jquery-3.4.1.tgz#714f1f8d9dde4bdfa55764ba37ef214630d80ef2" + integrity sha512-36+AdBzCL+y6qjw5Tx7HgzeGCzC81MDDgaUP8ld2zhx58HdqXGoBd+tHdrBMiyjGQs0Hxs/MLZTu/eHNJJuWPw== + js-yaml@^3.4.3: version "3.12.1" resolved "https://registry.yarnpkg.com/js-yaml/-/js-yaml-3.12.1.tgz#295c8632a18a23e054cf5c9d3cecafe678167600"