Skip to content

Commit

Permalink
Bump dset dependency handling the CVE-2024-21529 (#3620)
Browse files Browse the repository at this point in the history
Co-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
  • Loading branch information
enisdenjo and github-actions[bot] authored Jan 6, 2025
1 parent 45fb1b6 commit d24c5d5
Show file tree
Hide file tree
Showing 4 changed files with 18 additions and 6 deletions.
7 changes: 7 additions & 0 deletions .changeset/afraid-olives-attend.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,7 @@
---
'graphql-yoga': patch
---

Bump dset dependency handling the CVE-2024-21529

https://security.snyk.io/vuln/SNYK-JS-DSET-7116691
5 changes: 5 additions & 0 deletions .changeset/graphql-yoga-3620-dependencies.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,5 @@
---
"graphql-yoga": patch
---
dependencies updates:
- Updated dependency [`dset@^3.1.4` ↗︎](https://www.npmjs.com/package/dset/v/3.1.4) (from `^3.1.1`, in `dependencies`)
2 changes: 1 addition & 1 deletion packages/graphql-yoga/package.json
Original file line number Diff line number Diff line change
Expand Up @@ -57,7 +57,7 @@
"@graphql-yoga/subscription": "workspace:^",
"@whatwg-node/fetch": "^0.10.1",
"@whatwg-node/server": "^0.9.64",
"dset": "^3.1.1",
"dset": "^3.1.4",
"lru-cache": "^10.0.0",
"tslib": "^2.8.1"
},
Expand Down
10 changes: 5 additions & 5 deletions pnpm-lock.yaml

Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.

0 comments on commit d24c5d5

Please sign in to comment.