Fix Dependabot security alert #11 - resolve sha.js and brace-expansion vulnerabilities (#292)

Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com>
Co-authored-by: samanhappy <2755122+samanhappy@users.noreply.github.com>
This commit is contained in:
Copilot
2025-08-25 12:26:04 +08:00
committed by GitHub
parent 9300814994
commit 83cbd16821
2 changed files with 1440 additions and 1646 deletions

View File

@@ -46,81 +46,87 @@
"license": "ISC", "license": "ISC",
"dependencies": { "dependencies": {
"@apidevtools/swagger-parser": "^11.0.1", "@apidevtools/swagger-parser": "^11.0.1",
"@modelcontextprotocol/sdk": "^1.17.2", "@modelcontextprotocol/sdk": "^1.17.4",
"@types/adm-zip": "^0.5.7", "@types/adm-zip": "^0.5.7",
"@types/multer": "^1.4.13", "@types/multer": "^1.4.13",
"@types/pg": "^8.15.2", "@types/pg": "^8.15.5",
"adm-zip": "^0.5.16", "adm-zip": "^0.5.16",
"axios": "^1.10.0", "axios": "^1.11.0",
"bcryptjs": "^3.0.2", "bcryptjs": "^3.0.2",
"dotenv": "^16.3.1", "dotenv": "^16.6.1",
"dotenv-expand": "^12.0.2", "dotenv-expand": "^12.0.2",
"express": "^4.21.2", "express": "^4.21.2",
"express-validator": "^7.2.1", "express-validator": "^7.2.1",
"i18next-fs-backend": "^2.6.0", "i18next-fs-backend": "^2.6.0",
"jsonwebtoken": "^9.0.2", "jsonwebtoken": "^9.0.2",
"multer": "^2.0.1", "multer": "^2.0.2",
"openai": "^4.103.0", "openai": "^4.104.0",
"openapi-types": "^12.1.3", "openapi-types": "^12.1.3",
"pg": "^8.16.0", "pg": "^8.16.3",
"pgvector": "^0.2.1", "pgvector": "^0.2.1",
"postgres": "^3.4.7", "postgres": "^3.4.7",
"reflect-metadata": "^0.2.2", "reflect-metadata": "^0.2.2",
"typeorm": "^0.3.24", "typeorm": "^0.3.26",
"uuid": "^11.1.0" "uuid": "^11.1.0"
}, },
"devDependencies": { "devDependencies": {
"@radix-ui/react-accordion": "^1.2.3", "@radix-ui/react-accordion": "^1.2.12",
"@radix-ui/react-slot": "^1.1.2", "@radix-ui/react-slot": "^1.2.3",
"@shadcn/ui": "^0.0.4", "@shadcn/ui": "^0.0.4",
"@swc/core": "^1.13.0", "@swc/core": "^1.13.5",
"@swc/jest": "^0.2.39", "@swc/jest": "^0.2.39",
"@tailwindcss/line-clamp": "^0.4.4", "@tailwindcss/line-clamp": "^0.4.4",
"@tailwindcss/postcss": "^4.1.3", "@tailwindcss/postcss": "^4.1.12",
"@tailwindcss/vite": "^4.1.7", "@tailwindcss/vite": "^4.1.12",
"@types/bcryptjs": "^3.0.0", "@types/bcryptjs": "^3.0.0",
"@types/express": "^4.17.21", "@types/express": "^4.17.23",
"@types/jest": "^29.5.5", "@types/jest": "^29.5.14",
"@types/jsonwebtoken": "^9.0.9", "@types/jsonwebtoken": "^9.0.10",
"@types/node": "^22.15.21", "@types/node": "^22.17.2",
"@types/react": "^19.0.12", "@types/react": "^19.1.11",
"@types/react-dom": "^19.0.4", "@types/react-dom": "^19.1.7",
"@types/supertest": "^6.0.3", "@types/supertest": "^6.0.3",
"@types/uuid": "^10.0.0", "@types/uuid": "^10.0.0",
"@typescript-eslint/eslint-plugin": "^6.7.4", "@typescript-eslint/eslint-plugin": "^6.21.0",
"@typescript-eslint/parser": "^6.7.4", "@typescript-eslint/parser": "^6.21.0",
"@vitejs/plugin-react": "^4.4.1", "@vitejs/plugin-react": "^4.7.0",
"autoprefixer": "^10.4.21", "autoprefixer": "^10.4.21",
"class-variance-authority": "^0.7.1", "class-variance-authority": "^0.7.1",
"clsx": "^2.1.1", "clsx": "^2.1.1",
"concurrently": "^9.1.2", "concurrently": "^9.2.0",
"eslint": "^8.50.0", "eslint": "^8.57.1",
"i18next": "^24.2.3", "i18next": "^24.2.3",
"i18next-browser-languagedetector": "^8.0.4", "i18next-browser-languagedetector": "^8.2.0",
"jest": "^29.7.0", "jest": "^29.7.0",
"jest-environment-node": "^30.0.0", "jest-environment-node": "^30.0.5",
"jest-mock-extended": "4.0.0-beta1", "jest-mock-extended": "4.0.0-beta1",
"lucide-react": "^0.486.0", "lucide-react": "^0.486.0",
"next": "^15.2.4", "next": "^15.5.0",
"postcss": "^8.5.3", "postcss": "^8.5.6",
"prettier": "^3.0.3", "prettier": "^3.6.2",
"react": "^19.1.0", "react": "^19.1.1",
"react-dom": "^19.1.0", "react-dom": "^19.1.1",
"react-i18next": "^15.4.1", "react-i18next": "^15.7.2",
"react-router-dom": "^7.6.0", "react-router-dom": "^7.8.2",
"supertest": "^7.1.1", "supertest": "^7.1.4",
"tailwind-merge": "^3.1.0", "tailwind-merge": "^3.3.1",
"tailwind-scrollbar-hide": "^2.0.0", "tailwind-scrollbar-hide": "^2.0.0",
"tailwindcss": "^4.0.17", "tailwindcss": "^4.1.12",
"ts-jest": "^29.1.1", "ts-jest": "^29.4.1",
"ts-node-dev": "^2.0.0", "ts-node-dev": "^2.0.0",
"tsx": "^4.7.0", "tsx": "^4.20.5",
"typescript": "^5.2.2", "typescript": "^5.9.2",
"vite": "^6.3.5", "vite": "^6.3.5",
"zod": "^3.24.2" "zod": "^3.25.76"
}, },
"engines": { "engines": {
"node": "^18.0.0 || >=20.0.0" "node": "^18.0.0 || >=20.0.0"
}, },
"packageManager": "pnpm@10.12.4+sha256.cadfd9e6c9fcc2cb76fe7c0779a5250b632898aea5f53d833a73690c77a778d9" "packageManager": "pnpm@10.12.4+sha256.cadfd9e6c9fcc2cb76fe7c0779a5250b632898aea5f53d833a73690c77a778d9",
"pnpm": {
"overrides": {
"brace-expansion@1.1.11": "1.1.12",
"brace-expansion@2.0.1": "2.0.2"
}
}
} }

2998
pnpm-lock.yaml generated

File diff suppressed because it is too large Load Diff