Skip to content

Commit b99d050

Browse files
authored
[1.3][CVE-2024-33883] Bump ejs from 3.1.7 to 3.1.10 (#7740)
Issue Resolve: CVE-2024-33883 Signed-off-by: Anan Zhuang <ananzh@amazon.com>
1 parent aea78e3 commit b99d050

File tree

3 files changed

+11
-6
lines changed

3 files changed

+11
-6
lines changed

package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -92,7 +92,7 @@
9292
"!chromedriver/**/axios": "^0.21.4",
9393
"chromedriver/**/axios": "^0.27.2",
9494
"chromedriver/**/debug": "^4.3.1",
95-
"**/ejs": "^3.1.6",
95+
"**/ejs": "^3.1.10",
9696
"**/express": "^4.19.2",
9797
"**/flat": "^5.0.2",
9898
"**/follow-redirects": "^1.15.6",

packages/osd-plugin-generator/package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -11,7 +11,7 @@
1111
"dependencies": {
1212
"@osd/cross-platform": "1.0.0",
1313
"@osd/dev-utils": "1.0.0",
14-
"ejs": "^3.1.7",
14+
"ejs": "^3.1.10",
1515
"execa": "^4.0.2",
1616
"inquirer": "^7.3.3",
1717
"normalize-path": "^3.0.0",

yarn.lock

Lines changed: 9 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -8185,10 +8185,10 @@ ee-first@1.1.1:
81858185
resolved "https://registry.yarnpkg.com/ee-first/-/ee-first-1.1.1.tgz#590c61156b0ae2f4f0255732a158b266bc56b21d"
81868186
integrity sha1-WQxhFWsK4vTwJVcyoViyZrxWsh0=
81878187

8188-
ejs@^2.6.1, ejs@^3.1.5, ejs@^3.1.6, ejs@^3.1.7:
8189-
version "3.1.7"
8190-
resolved "https://registry.yarnpkg.com/ejs/-/ejs-3.1.7.tgz#c544d9c7f715783dd92f0bddcf73a59e6962d006"
8191-
integrity sha512-BIar7R6abbUxDA3bfXrO4DSgwo8I+fB5/1zgujl3HLLjwd6+9iOnrT+t3grn2qbk9vOgBubXOFwX2m9axoFaGw==
8188+
ejs@^2.6.1, ejs@^3.1.10, ejs@^3.1.5:
8189+
version "3.1.10"
8190+
resolved "https://registry.yarnpkg.com/ejs/-/ejs-3.1.10.tgz#69ab8358b14e896f80cc39e62087b88500c3ac3b"
8191+
integrity sha512-UeJmFfOrAQS8OJWPZ4qtgHyWExa088/MtK5UEyoJGFH67cDEXkZSviOiKRCZ4Xij0zxI3JECgYs3oKx+AizQBA==
81928192
dependencies:
81938193
jake "^10.8.5"
81948194

@@ -15049,6 +15049,11 @@ minipass@^3.0.0, minipass@^3.1.1:
1504915049
dependencies:
1505015050
yallist "^4.0.0"
1505115051

15052+
minipass@^5.0.0:
15053+
version "5.0.0"
15054+
resolved "https://registry.yarnpkg.com/minipass/-/minipass-5.0.0.tgz#3e9788ffb90b694a5d0ec94479a45b5d8738133d"
15055+
integrity sha512-3FnjYuehv9k6ovOEbyOswadCDPX1piCfhV8ncmYtHOjuPwylVWsghTLo7rabjC3Rx5xD4HDx8Wm1xnMF7S5qFQ==
15056+
1505215057
minizlib@^2.1.1:
1505315058
version "2.1.2"
1505415059
resolved "https://registry.yarnpkg.com/minizlib/-/minizlib-2.1.2.tgz#e90d3466ba209b932451508a11ce3d3632145931"

0 commit comments

Comments
 (0)