This is an automated email from the ASF dual-hosted git repository.

yamer pushed a commit to branch main
in repository https://gitbox.apache.org/repos/asf/incubator-kie-tools.git


The following commit(s) were added to refs/heads/main by this push:
     new 4670c08a8c5 [kie-issues#1789] CVE fix for path-to-regexp (#2885)
4670c08a8c5 is described below

commit 4670c08a8c5f38ad1a7b0e8215687ae810d9c576
Author: Aswathi <[email protected]>
AuthorDate: Thu Jan 30 18:12:55 2025 +0530

    [kie-issues#1789] CVE fix for path-to-regexp (#2885)
    
    Co-authored-by: Aswathi T V <[email protected]>
---
 packages/cors-proxy/package.json                   |  2 +-
 .../package.json                                   |  2 +-
 .../package.json                                   |  2 +-
 packages/sonataflow-dev-app/package.json           |  2 +-
 pnpm-lock.yaml                                     | 86 +++++++++++-----------
 5 files changed, 47 insertions(+), 47 deletions(-)

diff --git a/packages/cors-proxy/package.json b/packages/cors-proxy/package.json
index fdfcab337ba..05b986b9a23 100644
--- a/packages/cors-proxy/package.json
+++ b/packages/cors-proxy/package.json
@@ -27,7 +27,7 @@
   },
   "dependencies": {
     "cors": "^2.8.5",
-    "express": "^4.21.1",
+    "express": "^4.21.2",
     "node-fetch": "^3.3.2"
   },
   "devDependencies": {
diff --git a/packages/runtime-tools-management-console-webapp/package.json 
b/packages/runtime-tools-management-console-webapp/package.json
index b35f35f7946..9778a7c3eff 100644
--- a/packages/runtime-tools-management-console-webapp/package.json
+++ b/packages/runtime-tools-management-console-webapp/package.json
@@ -74,7 +74,7 @@
     "cors": "^2.8.5",
     "css-loader": "^5.2.6",
     "css-minimizer-webpack-plugin": "^5.0.1",
-    "express": "^4.21.1",
+    "express": "^4.21.2",
     "file-loader": "^6.2.0",
     "html-webpack-plugin": "^5.3.2",
     "https-browserify": "^1.0.0",
diff --git a/packages/runtime-tools-process-dev-ui-webapp/package.json 
b/packages/runtime-tools-process-dev-ui-webapp/package.json
index 27ecfc60804..ca5074175a3 100644
--- a/packages/runtime-tools-process-dev-ui-webapp/package.json
+++ b/packages/runtime-tools-process-dev-ui-webapp/package.json
@@ -86,7 +86,7 @@
     "cors": "^2.8.5",
     "css-loader": "^5.2.6",
     "css-minimizer-webpack-plugin": "^5.0.1",
-    "express": "^4.21.1",
+    "express": "^4.21.2",
     "file-loader": "^6.2.0",
     "filemanager-webpack-plugin": "^7.0.0",
     "graphql": "14.3.1",
diff --git a/packages/sonataflow-dev-app/package.json 
b/packages/sonataflow-dev-app/package.json
index f3aa1eb76db..df3d50a7c03 100644
--- a/packages/sonataflow-dev-app/package.json
+++ b/packages/sonataflow-dev-app/package.json
@@ -28,7 +28,7 @@
     "babel-jest": "^25.5.1",
     "body-parser": "^1.20.3",
     "cors": "^2.8.5",
-    "express": "^4.21.1",
+    "express": "^4.21.2",
     "express-rate-limit": "^7.4.0",
     "graphql": "14.3.1",
     "jest": "^29.7.0",
diff --git a/pnpm-lock.yaml b/pnpm-lock.yaml
index 0baac5f293f..81cc9d1315c 100644
--- a/pnpm-lock.yaml
+++ b/pnpm-lock.yaml
@@ -2350,8 +2350,8 @@ importers:
         specifier: ^2.8.5
         version: 2.8.5
       express:
-        specifier: ^4.21.1
-        version: 4.21.1
+        specifier: ^4.21.2
+        version: 4.21.2
       node-fetch:
         specifier: ^3.3.2
         version: 3.3.2
@@ -8665,7 +8665,7 @@ importers:
         version: 5.3.3
       apollo-server-express:
         specifier: ^3.13.0
-        version: 3.13.0([email protected])([email protected])([email protected])
+        version: 3.13.0([email protected])([email protected])([email protected])
       body-parser:
         specifier: ^1.20.3
         version: 1.20.3
@@ -8688,8 +8688,8 @@ importers:
         specifier: ^5.0.1
         version: 5.0.1([email protected](@swc/[email protected])([email protected]))
       express:
-        specifier: ^4.21.1
-        version: 4.21.1
+        specifier: ^4.21.2
+        version: 4.21.2
       file-loader:
         specifier: ^6.2.0
         version: 6.2.0([email protected](@swc/[email protected])([email protected]))
@@ -8930,7 +8930,7 @@ importers:
         version: 8.3.0
       apollo-server-express:
         specifier: ^3.13.0
-        version: 3.13.0([email protected])([email protected])([email protected])
+        version: 3.13.0([email protected])([email protected])([email protected])
       body-parser:
         specifier: ^1.20.3
         version: 1.20.3
@@ -8953,8 +8953,8 @@ importers:
         specifier: ^5.0.1
         version: 5.0.1([email protected](@swc/[email protected])([email protected]))
       express:
-        specifier: ^4.21.1
-        version: 4.21.1
+        specifier: ^4.21.2
+        version: 4.21.2
       file-loader:
         specifier: ^6.2.0
         version: 6.2.0([email protected](@swc/[email protected])([email protected]))
@@ -9011,7 +9011,7 @@ importers:
         version: 8.0.0([email protected](@swc/[email protected])([email protected]))
       swagger-ui-express:
         specifier: ^5.0.0
-        version: 5.0.0([email protected])
+        version: 5.0.0([email protected])
       ts-loader:
         specifier: ^9.4.2
         version: 
9.4.2([email protected])([email protected](@swc/[email protected])([email protected]))
@@ -12100,7 +12100,7 @@ importers:
         version: link:../root-env
       apollo-server-express:
         specifier: ^3.13.0
-        version: 3.13.0([email protected])([email protected])([email protected])
+        version: 3.13.0([email protected])([email protected])([email protected])
       babel-jest:
         specifier: ^25.5.1
         version: 25.5.1(@babel/[email protected])
@@ -12111,11 +12111,11 @@ importers:
         specifier: ^2.8.5
         version: 2.8.5
       express:
-        specifier: ^4.21.1
-        version: 4.21.1
+        specifier: ^4.21.2
+        version: 4.21.2
       express-rate-limit:
         specifier: ^7.4.0
-        version: 7.4.0([email protected])
+        version: 7.4.0([email protected])
       graphql:
         specifier: 14.3.1
         version: 14.3.1
@@ -12130,7 +12130,7 @@ importers:
         version: 3.1.4
       swagger-ui-express:
         specifier: ^5.0.0
-        version: 5.0.0([email protected])
+        version: 5.0.0([email protected])
       uuid:
         specifier: ^8.3.2
         version: 8.3.2
@@ -23946,8 +23946,8 @@ packages:
     resolution: {integrity: 
sha512-5T6nhjsT+EOMzuck8JjBHARTHfMht0POzlA60WV2pMD3gyXw2LZnZ+ueGdNxG+0calOJcWKbpFcuzLZ91YWq9Q==}
     engines: {node: '>= 0.10.0'}
 
-  [email protected]:
-    resolution: {integrity: 
sha512-YSFlK1Ee0/GC8QaO91tHcDxJiE/X4FbpAyQWkxAvG6AXCuR65YzK8ua6D9hvi/TzUfZMpc+BwuM1IPw8fmQBiQ==}
+  [email protected]:
+    resolution: {integrity: 
sha512-28HqgMZAmih1Czt9ny7qr6ek2qddF4FclbMzwhCREB6OFfH+rXAnuNCwo1/wFvrtbgsQDb4kSbX9de9lFbrXnA==}
     engines: {node: '>= 0.10.0'}
 
   [email protected]:
@@ -27517,8 +27517,8 @@ packages:
     resolution: {integrity: 
sha512-92olbatybjsHTGB2CUnAM7s0mU/27gcMfLNA7t09UftndUdxywlQKur3fzXEPpfLrgZD3I2Bt8+UmiL7YDEgXQ==}
     engines: {node: '>=8.15'}
 
-  [email protected]:
-    resolution: {integrity: 
sha512-7lf7qcQidTku0Gu3YDPc8DJ1q7OOucfa/BSsIwjuh56VU7katFvuM8hULfkwB3Fns/rsVF7PwPKVw1sl5KQS9w==}
+  [email protected]:
+    resolution: {integrity: 
sha512-RA1GjUVMnvYFxuqovrEqZoxxW5NUZqbwKtYz/Tt7nXerk0LbLblQmrsgdeOxV5SFHf0UDggjS/bSeOZwt1pmEQ==}
 
   [email protected]:
     resolution: {integrity: 
sha512-5DFkuoqlv1uYQKxy8omFBeJPQcdoE07Kv2sferDCrAq1ohOU+MSDswDIbnx3YAM60qIOnYa53wBhXW0EbMonrQ==}
@@ -41499,7 +41499,7 @@ snapshots:
       ejs: 3.1.9
       esbuild: 0.18.20
       esbuild-plugin-alias: 0.2.1
-      express: 4.21.1
+      express: 4.21.2
       find-cache-dir: 3.3.1
       fs-extra: 11.2.0
       process: 0.11.10
@@ -41521,7 +41521,7 @@ snapshots:
       ejs: 3.1.9
       esbuild: 0.18.20
       esbuild-plugin-alias: 0.2.1
-      express: 4.21.1
+      express: 4.21.2
       find-cache-dir: 3.3.1
       fs-extra: 11.2.0
       process: 0.11.10
@@ -41543,7 +41543,7 @@ snapshots:
       ejs: 3.1.9
       esbuild: 0.18.20
       esbuild-plugin-alias: 0.2.1
-      express: 4.21.1
+      express: 4.21.2
       find-cache-dir: 3.3.1
       fs-extra: 11.2.0
       process: 0.11.10
@@ -41580,7 +41580,7 @@ snapshots:
       case-sensitive-paths-webpack-plugin: 2.4.0
       constants-browserify: 1.0.0
       css-loader: 6.7.1([email protected](@swc/[email protected])([email protected]))
-      express: 4.21.1
+      express: 4.21.2
       fork-ts-checker-webpack-plugin: 
8.0.0([email protected])([email protected](@swc/[email protected])([email protected]))
       fs-extra: 11.1.1
       html-webpack-plugin: 
5.5.3([email protected](@swc/[email protected])([email protected]))
@@ -41640,7 +41640,7 @@ snapshots:
       case-sensitive-paths-webpack-plugin: 2.4.0
       constants-browserify: 1.0.0
       css-loader: 
6.7.1([email protected](@swc/[email protected])([email protected])([email protected]))
-      express: 4.21.1
+      express: 4.21.2
       fork-ts-checker-webpack-plugin: 
8.0.0([email protected])([email protected](@swc/[email protected])([email protected])([email protected]))
       fs-extra: 11.1.1
       html-webpack-plugin: 
5.5.3([email protected](@swc/[email protected])([email protected])([email protected]))
@@ -41693,7 +41693,7 @@ snapshots:
       constants-browserify: 1.0.0
       css-loader: 
6.7.1([email protected](@swc/[email protected])([email protected])([email protected]))
       es-module-lexer: 1.4.1
-      express: 4.21.1
+      express: 4.21.2
       fork-ts-checker-webpack-plugin: 
8.0.0([email protected])([email protected](@swc/[email protected])([email protected])([email protected]))
       fs-extra: 11.1.1
       html-webpack-plugin: 
5.5.3([email protected](@swc/[email protected])([email protected])([email protected]))
@@ -41743,7 +41743,7 @@ snapshots:
       constants-browserify: 1.0.0
       css-loader: 
6.7.1([email protected](@swc/[email protected])([email protected]([email protected])([email protected])([email protected])))
       es-module-lexer: 1.4.1
-      express: 4.21.1
+      express: 4.21.2
       fork-ts-checker-webpack-plugin: 
8.0.0([email protected])([email protected](@swc/[email protected])([email protected]([email protected])([email protected])([email protected])))
       fs-extra: 11.1.1
       html-webpack-plugin: 
5.5.3([email protected](@swc/[email protected])([email protected]([email protected])([email protected])([email protected])))
@@ -41793,7 +41793,7 @@ snapshots:
       constants-browserify: 1.0.0
       css-loader: 
6.7.1([email protected](@swc/[email protected])([email protected]([email protected])([email protected])))
       es-module-lexer: 1.4.1
-      express: 4.21.1
+      express: 4.21.2
       fork-ts-checker-webpack-plugin: 
8.0.0([email protected])([email protected](@swc/[email protected])([email protected]([email protected])([email protected])))
       fs-extra: 11.1.1
       html-webpack-plugin: 
5.5.3([email protected](@swc/[email protected])([email protected]([email protected])([email protected])))
@@ -41863,7 +41863,7 @@ snapshots:
       detect-indent: 6.1.0
       envinfo: 7.8.1
       execa: 5.1.1
-      express: 4.21.1
+      express: 4.21.2
       find-up: 5.0.0
       fs-extra: 11.1.1
       get-npm-tarball-url: 2.0.3
@@ -41912,7 +41912,7 @@ snapshots:
       detect-indent: 6.1.0
       envinfo: 7.8.1
       execa: 5.1.1
-      express: 4.21.1
+      express: 4.21.2
       find-up: 5.0.0
       fs-extra: 11.1.1
       get-npm-tarball-url: 2.0.3
@@ -41961,7 +41961,7 @@ snapshots:
       detect-indent: 6.1.0
       envinfo: 7.8.1
       execa: 5.1.1
-      express: 4.21.1
+      express: 4.21.2
       find-up: 5.0.0
       fs-extra: 11.1.1
       get-npm-tarball-url: 2.0.3
@@ -42204,7 +42204,7 @@ snapshots:
       cli-table3: 0.6.1
       compression: 1.7.4
       detect-port: 1.5.1
-      express: 4.21.1
+      express: 4.21.2
       fs-extra: 11.2.0
       globby: 11.1.0
       ip: 2.0.0
@@ -42253,7 +42253,7 @@ snapshots:
       cli-table3: 0.6.1
       compression: 1.7.4
       detect-port: 1.5.1
-      express: 4.21.1
+      express: 4.21.2
       fs-extra: 11.2.0
       globby: 11.1.0
       ip: 2.0.0
@@ -42302,7 +42302,7 @@ snapshots:
       cli-table3: 0.6.1
       compression: 1.7.4
       detect-port: 1.5.1
-      express: 4.21.1
+      express: 4.21.2
       fs-extra: 11.2.0
       globby: 11.1.0
       ip: 2.0.0
@@ -44989,7 +44989,7 @@ snapshots:
     dependencies:
       graphql: 14.3.1
 
-  
[email protected]([email protected])([email protected])([email protected]):
+  
[email protected]([email protected])([email protected])([email protected]):
     dependencies:
       '@types/accepts': 1.3.7
       '@types/body-parser': 1.19.2
@@ -45001,7 +45001,7 @@ snapshots:
       apollo-server-types: 3.8.0([email protected])([email protected])
       body-parser: 1.20.3
       cors: 2.8.5
-      express: 4.21.1
+      express: 4.21.2
       graphql: 14.3.1
       parseurl: 1.3.3
     transitivePeerDependencies:
@@ -49125,9 +49125,9 @@ snapshots:
 
   [email protected]: {}
 
-  [email protected]([email protected]):
+  [email protected]([email protected]):
     dependencies:
-      express: 4.21.1
+      express: 4.21.2
 
   [email protected]:
     dependencies:
@@ -49165,7 +49165,7 @@ snapshots:
     transitivePeerDependencies:
       - supports-color
 
-  [email protected]:
+  [email protected]:
     dependencies:
       accepts: 1.3.8
       array-flatten: 1.1.1
@@ -49186,7 +49186,7 @@ snapshots:
       methods: 1.1.2
       on-finished: 2.4.1
       parseurl: 1.3.3
-      path-to-regexp: 0.1.10
+      path-to-regexp: 0.1.12
       proxy-addr: 2.0.7
       qs: 6.13.0
       range-parser: 1.2.1
@@ -54005,7 +54005,7 @@ snapshots:
     dependencies:
       unique-string: 2.0.0
 
-  [email protected]: {}
+  [email protected]: {}
 
   [email protected]: {}
 
@@ -54643,7 +54643,7 @@ snapshots:
 
   [email protected]:
     dependencies:
-      side-channel: 1.0.4
+      side-channel: 1.0.6
 
   [email protected]:
     dependencies:
@@ -56744,9 +56744,9 @@ snapshots:
 
   [email protected]: {}
 
-  [email protected]([email protected]):
+  [email protected]([email protected]):
     dependencies:
-      express: 4.21.1
+      express: 4.21.2
       swagger-ui-dist: 5.11.2
 
   [email protected]:
@@ -58648,7 +58648,7 @@ snapshots:
       compression: 1.7.4
       connect-history-api-fallback: 2.0.0
       default-gateway: 6.0.3
-      express: 4.21.1
+      express: 4.21.2
       graceful-fs: 4.2.11
       html-entities: 2.5.2
       http-proxy-middleware: 2.0.6(@types/[email protected])


---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to