From a57bc0d1fbbcc71d714690aea5b84a4c790d8b8e Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Sun, 27 Oct 2024 00:04:25 +0000 Subject: [PATCH] chore: Bump helmet from 4.6.0 to 8.0.0 in /server Bumps [helmet](https://github.com/helmetjs/helmet) from 4.6.0 to 8.0.0. - [Changelog](https://github.com/helmetjs/helmet/blob/main/CHANGELOG.md) - [Commits](https://github.com/helmetjs/helmet/compare/v4.6.0...v8.0.0) --- updated-dependencies: - dependency-name: helmet dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] --- server/package.json | 2 +- server/yarn.lock | 11 +++++++++-- 2 files changed, 10 insertions(+), 3 deletions(-) diff --git a/server/package.json b/server/package.json index dd30b11c67..d02281a2a6 100644 --- a/server/package.json +++ b/server/package.json @@ -7,7 +7,7 @@ "express-hbs": "2.5.0", "fs-extra": "10.1.0", "handlebars": "4.7.7", - "helmet": "4.6.0", + "helmet": "8.0.0", "helmet-csp": "3.4.0", "http-proxy-middleware": "3.0.3", "logdown": "3.3.1", diff --git a/server/yarn.lock b/server/yarn.lock index 11187f9bfc..203cff26f7 100644 --- a/server/yarn.lock +++ b/server/yarn.lock @@ -3877,13 +3877,20 @@ __metadata: languageName: node linkType: hard -"helmet@npm:*, helmet@npm:4.6.0": +"helmet@npm:*": version: 4.6.0 resolution: "helmet@npm:4.6.0" checksum: 139ad678d1cab207b043c206f50f6744eff2ef1f463e4626d36718b45b337485c77d10260ef9d89d292fa678da5153d86b08172b3b365cc8e680241015ed3a49 languageName: node linkType: hard +"helmet@npm:8.0.0": + version: 8.0.0 + resolution: "helmet@npm:8.0.0" + checksum: 1a7ef94d35d8e4adae8697f65f9f85d75b3711e4c8b5db5bc7c0480de31e16cf28c92dabe8204eb98aac43db82c69951c771f685a9cd011b15415ffba6fe293b + languageName: node + linkType: hard + "html-entities@npm:^2.1.0": version: 2.3.2 resolution: "html-entities@npm:2.3.2" @@ -6456,7 +6463,7 @@ __metadata: fs-extra: 10.1.0 generate-changelog: 1.8.0 handlebars: 4.7.7 - helmet: 4.6.0 + helmet: 8.0.0 helmet-csp: 3.4.0 http-proxy-middleware: 3.0.3 jasmine: 5.4.0