From 4cdb40e566bdadc5952ec0e11d9b6ec52a99ae30 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sun, 6 Oct 2024 20:14:59 +0000 Subject: [PATCH] fix: remote/package.json & remote/yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-COOKIE-8163060 --- remote/package.json | 2 +- remote/yarn.lock | 8 ++++---- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/remote/package.json b/remote/package.json index 80e835671cebb..7a1f91b4ad719 100644 --- a/remote/package.json +++ b/remote/package.json @@ -9,7 +9,7 @@ "@vscode/ripgrep": "^1.14.2", "@vscode/vscode-languagedetection": "1.0.21", "applicationinsights": "1.4.2", - "cookie": "^0.4.0", + "cookie": "^0.7.0", "graceful-fs": "4.2.8", "http-proxy-agent": "^2.1.0", "https-proxy-agent": "^2.2.3", diff --git a/remote/yarn.lock b/remote/yarn.lock index a6201c6d4338d..0a1d82e2e67d6 100644 --- a/remote/yarn.lock +++ b/remote/yarn.lock @@ -254,10 +254,10 @@ continuation-local-storage@^3.2.1: async-listener "^0.6.0" emitter-listener "^1.1.1" -cookie@^0.4.0: - version "0.4.0" - resolved "https://registry.yarnpkg.com/cookie/-/cookie-0.4.0.tgz#beb437e7022b3b6d49019d088665303ebe9c14ba" - integrity sha512-+Hp8fLp57wnUSt0tY0tHEXh4voZRDnoIrZPqlo3DPiI4y9lwg/jqx+1Om94/W6ZaPDOUbnjOt/99w66zk+l1Xg== +cookie@^0.7.0: + version "0.7.1" + resolved "https://registry.yarnpkg.com/cookie/-/cookie-0.7.1.tgz#2f73c42142d5d5cf71310a74fc4ae61670e5dbc9" + integrity sha512-6DnInpx7SJ2AK3+CTUE/ZM0vWTUboZCegxhC2xiIydHR9jNuTAASBrfEpHhiGOZw/nX51bHt6YQl8jsGo4y/0w== core-util-is@~1.0.0: version "1.0.2"