From 1f09472acbb55df15b86e365c9029aa8c8f9edcf Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Mon, 1 May 2023 13:00:46 +0000 Subject: [PATCH] Bump helmet from 4.6.0 to 6.1.5 Bumps [helmet](https://github.com/helmetjs/helmet) from 4.6.0 to 6.1.5. - [Release notes](https://github.com/helmetjs/helmet/releases) - [Changelog](https://github.com/helmetjs/helmet/blob/main/CHANGELOG.md) - [Commits](https://github.com/helmetjs/helmet/compare/v4.6.0...v6.1.5) --- updated-dependencies: - dependency-name: helmet dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] --- package.json | 2 +- yarn.lock | 6 +++--- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/package.json b/package.json index 32ee173..cf2acca 100644 --- a/package.json +++ b/package.json @@ -31,7 +31,7 @@ "express-rate-limit": "^5.5.1", "fluent-ffmpeg": "^2.1.2", "gm": "^1.23.1", - "helmet": "^4.6.0", + "helmet": "^6.1.5", "http": "0.0.0", "https": "^1.0.0", "javascript-obfuscator": "^1.11.0", diff --git a/yarn.lock b/yarn.lock index ca1a83e..3e930c0 100644 --- a/yarn.lock +++ b/yarn.lock @@ -1338,9 +1338,9 @@ has@^1.0.3: dependencies: function-bind "^1.1.1" -helmet@^4.6.0: - version "4.6.0" - resolved "https://registry.yarnpkg.com/helmet/-/helmet-4.6.0.tgz#579971196ba93c5978eb019e4e8ec0e50076b4df" +helmet@^6.1.5: + version "6.1.5" + resolved "https://registry.yarnpkg.com/helmet/-/helmet-6.1.5.tgz#2153387f6d73cce6efdfd85d3a65417cfb7db80c" http-cache-semantics@^4.1.0: version "4.1.0"