itinance / react-native-fs

Native filesystem access for react-native
MIT License
4.89k stars 954 forks source link

Upgrade Newtonsoft.Json from 10.0.3 to 13.0.1 to fix the vulnerability. #1227

Open kerembalaban opened 3 months ago

kerembalaban commented 3 months ago

Hi! 👋

Firstly, thanks for your work on this project! 🙂

Today I used patch-package to patch react-native-fs@2.20.0 for the project I'm working on.

Here is the diff that solved my problem:

diff --git a/node_modules/react-native-fs/windows/RNFS.Net46/packages.config b/node_modules/react-native-fs/windows/RNFS.Net46/packages.config
index b427c04..357e523 100644
--- a/node_modules/react-native-fs/windows/RNFS.Net46/packages.config
+++ b/node_modules/react-native-fs/windows/RNFS.Net46/packages.config
@@ -1,5 +1,5 @@
 <?xml version="1.0" encoding="utf-8"?>
 <packages>
-  <package id="Newtonsoft.Json" version="10.0.3" targetFramework="net46" />
+  <package id="Newtonsoft.Json" version="13.0.2" targetFramework="net46" />
   <package id="Syroot.Windows.IO.KnownFolders" version="1.2.1" targetFramework="net46" />
 </packages>
\ No newline at end of file

This issue body was partially generated by patch-package.