From d7886ed5258432eaba0594f2f0e27ac74b17b509 Mon Sep 17 00:00:00 2001 From: Lucas Di Pentima Date: Tue, 24 Sep 2024 18:38:02 -0300 Subject: [PATCH] 22133: Upgrades path-to-regexp where possible. There's one package (express) that keeps asking for a vulnerable version of path-to-regexp. Arvados-DCO-1.1-Signed-off-by: Lucas Di Pentima --- services/workbench2/yarn.lock | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/services/workbench2/yarn.lock b/services/workbench2/yarn.lock index 9868f0116d..aa64b72c9f 100644 --- a/services/workbench2/yarn.lock +++ b/services/workbench2/yarn.lock @@ -13607,11 +13607,11 @@ __metadata: linkType: hard "path-to-regexp@npm:^1.7.0": - version: 1.8.0 - resolution: "path-to-regexp@npm:1.8.0" + version: 1.9.0 + resolution: "path-to-regexp@npm:1.9.0" dependencies: isarray: 0.0.1 - checksum: 709f6f083c0552514ef4780cb2e7e4cf49b0cc89a97439f2b7cc69a608982b7690fb5d1720a7473a59806508fc2dae0be751ba49f495ecf89fd8fbc62abccbcd + checksum: 5b2ac9cab2a9f82effd30a35164b20998b18d99d96608281dd2cab6e66c0e4536187970369b185ab21d3815da1ecb7dcb2d5f97a4bf0ee6e31a9612299fca147 languageName: node linkType: hard -- 2.30.2