From e6a71bf1132bd64885110e0367019c9e5598aa42 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sun, 11 Feb 2024 14:30:10 +0000 Subject: [PATCH] fix: workspaces/libnpmpublish/package.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-IP-6240864 --- workspaces/libnpmpublish/package.json | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/workspaces/libnpmpublish/package.json b/workspaces/libnpmpublish/package.json index 6237797fc5bac..c4f1586037186 100644 --- a/workspaces/libnpmpublish/package.json +++ b/workspaces/libnpmpublish/package.json @@ -42,10 +42,10 @@ "ci-info": "^3.6.1", "normalize-package-data": "^5.0.0", "npm-package-arg": "^10.1.0", - "npm-registry-fetch": "^14.0.3", + "npm-registry-fetch": "^15.0.0", "proc-log": "^3.0.0", "semver": "^7.3.7", - "sigstore": "^1.4.0", + "sigstore": "^2.0.0", "ssri": "^10.0.1" }, "engines": {