From 3fa201075d2e42303b4ecb7d154e06f700131726 Mon Sep 17 00:00:00 2001 From: Quentin RIBIERRE Date: Fri, 22 Sep 2017 11:44:20 +0200 Subject: [PATCH] Update minimum request version to 2.83 Enforce our users to upgrade to a recent request version that contains latest security fixes: - tough-cookie vulnerability: https://nodesecurity.io/advisories/525 - request update: https://github.com/request/request/pull/2776 --- package.json | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/package.json b/package.json index c78dc08..5a4e225 100644 --- a/package.json +++ b/package.json @@ -32,7 +32,7 @@ "loopback-phase": "^1.3.0", "mux-demux": "^3.7.9", "qs": "^6.2.1", - "request": "^2.55.0", + "request": "^2.83.0", "sse": "0.0.6", "strong-error-handler": "^1.0.0", "strong-globalize": "^2.6.6",