From 951bf7fa1457787108d9f711e112996ce3121c7a Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 18 Oct 2024 13:42:23 +0000 Subject: [PATCH] fix: web/package.json & web/yarn.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-BOOTSTRAP-173700 - https://snyk.io/vuln/SNYK-JS-BOOTSTRAP-73560 - https://snyk.io/vuln/SNYK-JS-BOOTSTRAP-7444580 - https://snyk.io/vuln/SNYK-JS-BOOTSTRAP-7444593 - https://snyk.io/vuln/npm:bootstrap:20180529 --- web/package.json | 2 +- web/yarn.lock | 8 ++++---- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/web/package.json b/web/package.json index 5398d221..4e2198ba 100644 --- a/web/package.json +++ b/web/package.json @@ -18,7 +18,7 @@ "dependencies": { "@babel/traverse": "7.23.2", "axios": "1.7.4", - "bootstrap": "4.1.1", + "bootstrap": "5.0.0", "bootstrap-vue": "2.0.0", "brace": "^0.11.1", "dompurify": "2.5.0", diff --git a/web/yarn.lock b/web/yarn.lock index e7eb1ad0..4a3e8de6 100644 --- a/web/yarn.lock +++ b/web/yarn.lock @@ -2533,10 +2533,10 @@ bootstrap-vue@2.0.0: portal-vue "^2.1.6" vue-functional-data-merge "^3.1.0" -bootstrap@4.1.1: - version "4.1.1" - resolved "https://registry.yarnpkg.com/bootstrap/-/bootstrap-4.1.1.tgz#3aec85000fa619085da8d2e4983dfd67cf2114cb" - integrity sha512-SpiDSOcbg4J/PjVSt4ny5eY6j74VbVSjROY4Fb/WIUXBV9cnb5luyR4KnPvNoXuGnBK1T+nJIWqRsvU3yP8Mcg== +bootstrap@5.0.0: + version "5.0.0" + resolved "https://registry.yarnpkg.com/bootstrap/-/bootstrap-5.0.0.tgz#97635ac0e0d6cb466700ebf0fd266bfabf352ed2" + integrity sha512-tmhPET9B9qCl8dCofvHeiIhi49iBt0EehmIsziZib65k1erBW1rHhj2s/2JsuQh5Pq+xz2E9bEbzp9B7xHG+VA== "bootstrap@>=4.3.1 <5.0.0": version "4.6.2"