okta / okta-vue

OIDC SDK for Vue
https://github.com/okta/okta-vue
Other
46 stars 25 forks source link

chore: Update vulnerable dependencies #93

Closed denysoblohin-okta closed 2 years ago

denysoblohin-okta commented 2 years ago

Updates dependencies with vulnerabilities to latest versions: jest, jest-junit,@vue/cli-plugin-eslint, shelljs

Also manually upgraded (with "resolutions" in "package.json") some transitive dependencies:

minimist ^1.2.5 -> 1.2.6
walker ^1.0.7 -> 1.0.8 (vuln in tmpl)
nanoid ^3.1.23 -> 3.3.2
jsprim ^1.2.2 -> 1.4.2 (vuln in json-schema) (dependency of webdriver-manager)

After update:

yarn audit v1.22.10
0 vulnerabilities found - Packages audited: 989

Internal refs: https://oktainc.atlassian.net/browse/OKTA-473537 https://oktainc.atlassian.net/browse/OKTA-473538 https://oktainc.atlassian.net/browse/OKTA-473539 https://oktainc.atlassian.net/browse/OKTA-473540