From 6f3ba5eeb60ebc55b0346d2d28c551c95d006a2c Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sat, 27 Jul 2024 04:08:05 +0000 Subject: [PATCH] fix: package.json & yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-BOOTSTRAP-7444593 - https://snyk.io/vuln/SNYK-JS-BOOTSTRAP-7444617 --- package.json | 2 +- yarn.lock | 9 ++++----- 2 files changed, 5 insertions(+), 6 deletions(-) diff --git a/package.json b/package.json index 38938a011895f..36e755d7d9995 100644 --- a/package.json +++ b/package.json @@ -71,7 +71,7 @@ "angulartics": "^1.6.0", "babel-plugin-angularjs-annotate": "^0.10.0", "bootbox": "^5.4.0", - "bootstrap": "^3.4.0", + "bootstrap": "^4.0.0", "chart.js": "~2.6.0", "codemirror": "~5.30.0", "fast-json-patch": "^3.0.0-1", diff --git a/yarn.lock b/yarn.lock index f47449ba48196..98695e6675975 100644 --- a/yarn.lock +++ b/yarn.lock @@ -1352,7 +1352,6 @@ angular-moment-picker@^0.10.2: dependencies: angular-mocks "1.6.1" angular-sanitize "1.6.1" - lodash-es "^4.17.15" angular-resource@1.8.0: version "1.8.0" @@ -1992,10 +1991,10 @@ bootbox@^5.4.0: jquery "^3.4.1" popper.js "^1.16.0" -bootstrap@^3.4.0: - version "3.4.1" - resolved "https://registry.yarnpkg.com/bootstrap/-/bootstrap-3.4.1.tgz#c3a347d419e289ad11f4033e3c4132b87c081d72" - integrity sha512-yN5oZVmRCwe5aKwzRj6736nSmKDX7pLYwsXiCj/EYmo16hODaBiT4En5btW/jhBF/seV+XMx3aYwukYC3A49DA== +bootstrap@^4.0.0: + version "4.6.2" + resolved "https://registry.yarnpkg.com/bootstrap/-/bootstrap-4.6.2.tgz#8e0cd61611728a5bf65a3a2b8d6ff6c77d5d7479" + integrity sha512-51Bbp/Uxr9aTuy6ca/8FbFloBUJZLHwnhTcnjIeRn2suQWsWzcuJhGjKDB5eppVte/8oCdOL3VuwxvZDUggwGQ== bootstrap@^4.4.0: version "4.5.0"