Skip to content

Commit

Permalink
[CVE 2024-47764] Update package 'cookie'
Browse files Browse the repository at this point in the history
  • Loading branch information
jcayzac committed Oct 6, 2024
1 parent af8401e commit 6ed3c6d
Show file tree
Hide file tree
Showing 3 changed files with 11 additions and 6 deletions.
5 changes: 5 additions & 0 deletions .changeset/twenty-spoons-sneeze.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,5 @@
---
'astro': patch
---

This updates Astro's dependency on the [`cookie`](https://npmjs.com/package/cookie) package to a version that is not susceptible to the [CVE 2024-47764](https://nvd.nist.gov/vuln/detail/CVE-2024-47764) vulnerability.
2 changes: 1 addition & 1 deletion packages/astro/package.json
Original file line number Diff line number Diff line change
Expand Up @@ -140,7 +140,7 @@
"ci-info": "^4.0.0",
"clsx": "^2.1.1",
"common-ancestor-path": "^1.0.1",
"cookie": "^0.6.0",
"cookie": "^0.7.1",
"cssesc": "^3.0.0",
"debug": "^4.3.7",
"deterministic-object-hash": "^2.0.2",
Expand Down
10 changes: 5 additions & 5 deletions pnpm-lock.yaml

Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.

0 comments on commit 6ed3c6d

Please sign in to comment.