Skip to content
This repository has been archived by the owner on Sep 4, 2024. It is now read-only.

Commit

Permalink
Merge pull request #9 from tweag/dependabot/npm_and_yarn/part2/Vulner…
Browse files Browse the repository at this point in the history
…ableAppTwo/lodash-4.17.21

Bump lodash from 4.17.10 to 4.17.21 in /part2/VulnerableAppTwo
  • Loading branch information
BillReyor authored Jul 13, 2024
2 parents 1eb3cef + 158531b commit c7e82d3
Showing 1 changed file with 1 addition and 1 deletion.
2 changes: 1 addition & 1 deletion part2/VulnerableAppTwo/package.json
Original file line number Diff line number Diff line change
Expand Up @@ -8,7 +8,7 @@
},
"dependencies": {
"express": "4.16.0", // Known to have vulnerabilities in this version
"lodash": "4.17.10", // Vulnerable version
"lodash": "4.17.21", // Vulnerable version
"marked": "0.3.6", // Vulnerable version
"mongoose": "5.0.16", // Known vulnerabilities in this version
"request": "2.81.0" // Deprecated and has known vulnerabilities
Expand Down

0 comments on commit c7e82d3

Please sign in to comment.