From 6df9623eb95d6461da61d0f77e23fca3fb51bf4e Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Mon, 30 Sep 2024 06:57:07 +0000 Subject: [PATCH] chore: bump helmet from 5.1.1 to 8.0.0 Bumps [helmet](https://github.com/helmetjs/helmet) from 5.1.1 to 8.0.0. - [Changelog](https://github.com/helmetjs/helmet/blob/main/CHANGELOG.md) - [Commits](https://github.com/helmetjs/helmet/compare/v5.1.1...v8.0.0) --- updated-dependencies: - dependency-name: helmet dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] --- package.json | 2 +- yarn.lock | 8 ++++---- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/package.json b/package.json index d5df87b..db3a834 100644 --- a/package.json +++ b/package.json @@ -57,7 +57,7 @@ "dayjs": "^1.11.10", "feathers-hooks-common": "6.1.5", "feathers-mongoose": "^8.5.1", - "helmet": "^5.1.0", + "helmet": "^8.0.0", "kafkajs": "^2.2.4", "mongodb-core": "^3.2.7", "mongoose": "^6.3.6", diff --git a/yarn.lock b/yarn.lock index 39b528a..bb27927 100644 --- a/yarn.lock +++ b/yarn.lock @@ -4434,10 +4434,10 @@ hasown@^2.0.0, hasown@^2.0.1, hasown@^2.0.2: dependencies: function-bind "^1.1.2" -helmet@^5.1.0: - version "5.1.1" - resolved "https://registry.yarnpkg.com/helmet/-/helmet-5.1.1.tgz#609823c5c2e78aea62dd9afc8f544ca409da5e85" - integrity sha512-/yX0oVZBggA9cLJh8aw3PPCfedBnbd7J2aowjzsaWwZh7/UFY0nccn/aHAggIgWUFfnykX8GKd3a1pSbrmlcVQ== +helmet@^8.0.0: + version "8.0.0" + resolved "https://registry.yarnpkg.com/helmet/-/helmet-8.0.0.tgz#05370fb1953aa7b81bd0ddfa459221247be6ea5c" + integrity sha512-VyusHLEIIO5mjQPUI1wpOAEu+wl6Q0998jzTxqUYGE45xCIcAxy3MsbEK/yyJUJ3ADeMoB6MornPH6GMWAf+Pw== html-escaper@^2.0.0: version "2.0.2"