From 2af1e0b9dd03f3a57e60989038ea0519d880df30 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 1 Apr 2022 09:55:41 +0000 Subject: [PATCH] feat: upgrade express-rate-limit from 5.3.0 to 6.3.0 Snyk has created this PR to upgrade express-rate-limit from 5.3.0 to 6.3.0. See this package in npm: See this project in Snyk: https://app.snyk.io/org/killshot13/project/e31ae27e-b887-4740-a7d4-133e0261876c?utm_source=github&utm_medium=referral&page=upgrade-pr --- package.json | 2 +- yarn.lock | 10 ++++------ 2 files changed, 5 insertions(+), 7 deletions(-) diff --git a/package.json b/package.json index b1f9799..33f65ff 100644 --- a/package.json +++ b/package.json @@ -8,7 +8,7 @@ }, "dependencies": { "express": "4.17.1", - "express-rate-limit": "5.3.0", + "express-rate-limit": "6.3.0", "helmet": "^4.6.0", "network-error-logging": "^1.2.1", "report-to": "^1.1.0" diff --git a/yarn.lock b/yarn.lock index 4acb28d..9ec6157 100644 --- a/yarn.lock +++ b/yarn.lock @@ -366,8 +366,6 @@ define-property@^0.2.5: version "0.2.5" resolved "https://registry.yarnpkg.com/define-property/-/define-property-0.2.5.tgz#c35b1ef918ec3c990f9a5bc57be04aacec5c8116" integrity sha1-w1se+RjsPJkPmlvFe+BKrOxcgRY= - dependencies: - is-descriptor "^0.1.0" define-property@^1.0.0: version "1.0.0" @@ -457,10 +455,10 @@ expand-brackets@^2.1.4: snapdragon "^0.8.1" to-regex "^3.0.1" -express-rate-limit@5.3.0: - version "5.3.0" - resolved "https://registry.yarnpkg.com/express-rate-limit/-/express-rate-limit-5.3.0.tgz#e7b9d3c2e09ece6e0406a869b2ce00d03fe48aea" - integrity sha512-qJhfEgCnmteSeZAeuOKQ2WEIFTX5ajrzE0xS6gCOBCoRQcU+xEzQmgYQQTpzCcqUAAzTEtu4YEih4pnLfvNtew== +express-rate-limit@6.3.0: + version "6.3.0" + resolved "https://registry.yarnpkg.com/express-rate-limit/-/express-rate-limit-6.3.0.tgz#253387ce4d36c9c2cc77c7c676068deb36cc0821" + integrity sha512-932Io1VGKjM3ppi7xW9sb1J5nVkEJSUiOtHw2oE+JyHks1e+AXuOBSXbJKM0mcXwEnW1TibJibQ455Ow1YFjfg== express@4.17.1: version "4.17.1"