fix(core): Upgrade @n8n/vm2 to address CVE‑2023‑37466 (#10265)

This commit is contained in:
कारतोफ्फेलस्क्रिप्ट™ 2024-07-31 14:38:49 +02:00 committed by GitHub
parent 326c983915
commit 2a09a036d2
No known key found for this signature in database
GPG key ID: B5690EEEBB952194
3 changed files with 25 additions and 31 deletions

View file

@ -153,7 +153,7 @@
"@langchain/textsplitters": "0.0.3", "@langchain/textsplitters": "0.0.3",
"@mozilla/readability": "^0.5.0", "@mozilla/readability": "^0.5.0",
"@n8n/typeorm": "0.3.20-10", "@n8n/typeorm": "0.3.20-10",
"@n8n/vm2": "3.9.20", "@n8n/vm2": "3.9.24",
"@pinecone-database/pinecone": "3.0.0", "@pinecone-database/pinecone": "3.0.0",
"@qdrant/js-client-rest": "1.9.0", "@qdrant/js-client-rest": "1.9.0",
"@supabase/supabase-js": "2.43.4", "@supabase/supabase-js": "2.43.4",

View file

@ -830,7 +830,7 @@
"dependencies": { "dependencies": {
"@kafkajs/confluent-schema-registry": "1.0.6", "@kafkajs/confluent-schema-registry": "1.0.6",
"@n8n/imap": "workspace:*", "@n8n/imap": "workspace:*",
"@n8n/vm2": "3.9.20", "@n8n/vm2": "3.9.24",
"amqplib": "0.10.3", "amqplib": "0.10.3",
"alasql": "^4.4.0", "alasql": "^4.4.0",
"aws4": "1.11.0", "aws4": "1.11.0",

View file

@ -390,8 +390,8 @@ importers:
specifier: 0.3.20-10 specifier: 0.3.20-10
version: 0.3.20-10(@sentry/node@7.87.0)(ioredis@5.3.2)(mssql@10.0.2)(mysql2@3.10.0)(pg@8.11.3)(redis@4.6.12)(sqlite3@5.1.7) version: 0.3.20-10(@sentry/node@7.87.0)(ioredis@5.3.2)(mssql@10.0.2)(mysql2@3.10.0)(pg@8.11.3)(redis@4.6.12)(sqlite3@5.1.7)
'@n8n/vm2': '@n8n/vm2':
specifier: 3.9.20 specifier: 3.9.24
version: 3.9.20 version: 3.9.24
'@pinecone-database/pinecone': '@pinecone-database/pinecone':
specifier: 3.0.0 specifier: 3.0.0
version: 3.0.0 version: 3.0.0
@ -1448,8 +1448,8 @@ importers:
specifier: workspace:* specifier: workspace:*
version: link:../@n8n/imap version: link:../@n8n/imap
'@n8n/vm2': '@n8n/vm2':
specifier: 3.9.20 specifier: 3.9.24
version: 3.9.20 version: 3.9.24
alasql: alasql:
specifier: ^4.4.0 specifier: ^4.4.0
version: 4.4.0(encoding@0.1.13) version: 4.4.0(encoding@0.1.13)
@ -4211,9 +4211,9 @@ packages:
typeorm-aurora-data-api-driver: typeorm-aurora-data-api-driver:
optional: true optional: true
'@n8n/vm2@3.9.20': '@n8n/vm2@3.9.24':
resolution: {integrity: sha512-qk2oJYkuFRVSTxoro4obX/sv/wT1pViZjHh/isjOvFB93D52QIg3TCjMPsHOfHTmkxCKJffjLrUvjIwvWzSMCQ==} resolution: {integrity: sha512-O4z67yVgUs2FHkcw3vbGnxdC1EglpzOj966kPkK4gtW+ZmTTFRfEB+2Ehq6PMthgg/Ou5JCLSR3wvQIZFFt4Pg==}
engines: {node: '>=18.10', pnpm: '>=8.6.12'} engines: {node: '>=18.10', pnpm: '>=9.6'}
hasBin: true hasBin: true
'@n8n_io/license-sdk@2.13.0': '@n8n_io/license-sdk@2.13.0':
@ -5999,10 +5999,6 @@ packages:
peerDependencies: peerDependencies:
acorn: ^6.0.0 || ^7.0.0 || ^8.0.0 acorn: ^6.0.0 || ^7.0.0 || ^8.0.0
acorn-walk@8.2.0:
resolution: {integrity: sha512-k+iyHEuPgSw6SbuDpGQM+06HQUa04DZ3o+F6CSzXMvvI5KMvnaEqXe+YVe555R9nn6GPt404fos4wcgpw12SDA==}
engines: {node: '>=0.4.0'}
acorn-walk@8.3.2: acorn-walk@8.3.2:
resolution: {integrity: sha512-cjkyv4OtNCIeqhHrfS81QWXoCBPExR/J62oyEqepVw8WaQeSqpW2uhuLPh1m9eWhDuOo/jUXVTlifvesOWp/4A==} resolution: {integrity: sha512-cjkyv4OtNCIeqhHrfS81QWXoCBPExR/J62oyEqepVw8WaQeSqpW2uhuLPh1m9eWhDuOo/jUXVTlifvesOWp/4A==}
engines: {node: '>=0.4.0'} engines: {node: '>=0.4.0'}
@ -16720,10 +16716,10 @@ snapshots:
transitivePeerDependencies: transitivePeerDependencies:
- supports-color - supports-color
'@n8n/vm2@3.9.20': '@n8n/vm2@3.9.24':
dependencies: dependencies:
acorn: 8.11.2 acorn: 8.12.1
acorn-walk: 8.2.0 acorn-walk: 8.3.2
'@n8n_io/license-sdk@2.13.0': '@n8n_io/license-sdk@2.13.0':
dependencies: dependencies:
@ -19367,15 +19363,13 @@ snapshots:
acorn-globals@7.0.1: acorn-globals@7.0.1:
dependencies: dependencies:
acorn: 8.11.2 acorn: 8.12.1
acorn-walk: 8.3.2 acorn-walk: 8.3.2
acorn-jsx@5.3.2(acorn@8.11.2): acorn-jsx@5.3.2(acorn@8.11.2):
dependencies: dependencies:
acorn: 8.11.2 acorn: 8.11.2
acorn-walk@8.2.0: {}
acorn-walk@8.3.2: {} acorn-walk@8.3.2: {}
acorn@7.4.1: {} acorn@7.4.1: {}
@ -21307,7 +21301,7 @@ snapshots:
eslint-import-resolver-node@0.3.9: eslint-import-resolver-node@0.3.9:
dependencies: dependencies:
debug: 3.2.7(supports-color@8.1.1) debug: 3.2.7(supports-color@5.5.0)
is-core-module: 2.13.1 is-core-module: 2.13.1
resolve: 1.22.8 resolve: 1.22.8
transitivePeerDependencies: transitivePeerDependencies:
@ -21332,7 +21326,7 @@ snapshots:
eslint-module-utils@2.8.0(@typescript-eslint/parser@7.2.0(eslint@8.57.0)(typescript@5.5.2))(eslint-import-resolver-node@0.3.9)(eslint-import-resolver-typescript@3.6.1(@typescript-eslint/parser@7.2.0(eslint@8.57.0)(typescript@5.5.2))(eslint-plugin-import@2.29.1)(eslint@8.57.0))(eslint@8.57.0): eslint-module-utils@2.8.0(@typescript-eslint/parser@7.2.0(eslint@8.57.0)(typescript@5.5.2))(eslint-import-resolver-node@0.3.9)(eslint-import-resolver-typescript@3.6.1(@typescript-eslint/parser@7.2.0(eslint@8.57.0)(typescript@5.5.2))(eslint-plugin-import@2.29.1)(eslint@8.57.0))(eslint@8.57.0):
dependencies: dependencies:
debug: 3.2.7(supports-color@8.1.1) debug: 3.2.7(supports-color@5.5.0)
optionalDependencies: optionalDependencies:
'@typescript-eslint/parser': 7.2.0(eslint@8.57.0)(typescript@5.5.2) '@typescript-eslint/parser': 7.2.0(eslint@8.57.0)(typescript@5.5.2)
eslint: 8.57.0 eslint: 8.57.0
@ -21352,7 +21346,7 @@ snapshots:
array.prototype.findlastindex: 1.2.3 array.prototype.findlastindex: 1.2.3
array.prototype.flat: 1.3.2 array.prototype.flat: 1.3.2
array.prototype.flatmap: 1.3.2 array.prototype.flatmap: 1.3.2
debug: 3.2.7(supports-color@8.1.1) debug: 3.2.7(supports-color@5.5.0)
doctrine: 2.1.0 doctrine: 2.1.0
eslint: 8.57.0 eslint: 8.57.0
eslint-import-resolver-node: 0.3.9 eslint-import-resolver-node: 0.3.9
@ -21882,7 +21876,7 @@ snapshots:
follow-redirects@1.15.6(debug@3.2.7): follow-redirects@1.15.6(debug@3.2.7):
optionalDependencies: optionalDependencies:
debug: 3.2.7(supports-color@8.1.1) debug: 3.2.7(supports-color@5.5.0)
follow-redirects@1.15.6(debug@4.3.4): follow-redirects@1.15.6(debug@4.3.4):
optionalDependencies: optionalDependencies:
@ -22223,7 +22217,7 @@ snapshots:
array-parallel: 0.1.3 array-parallel: 0.1.3
array-series: 0.1.5 array-series: 0.1.5
cross-spawn: 4.0.2 cross-spawn: 4.0.2
debug: 3.2.7(supports-color@8.1.1) debug: 3.2.7(supports-color@5.5.0)
transitivePeerDependencies: transitivePeerDependencies:
- supports-color - supports-color
@ -23353,7 +23347,7 @@ snapshots:
jsdom@20.0.2: jsdom@20.0.2:
dependencies: dependencies:
abab: 2.0.6 abab: 2.0.6
acorn: 8.11.2 acorn: 8.12.1
acorn-globals: 7.0.1 acorn-globals: 7.0.1
cssom: 0.5.0 cssom: 0.5.0
cssstyle: 2.3.0 cssstyle: 2.3.0
@ -24209,7 +24203,7 @@ snapshots:
mlly@1.4.2: mlly@1.4.2:
dependencies: dependencies:
acorn: 8.11.2 acorn: 8.12.1
pathe: 1.1.2 pathe: 1.1.2
pkg-types: 1.0.3 pkg-types: 1.0.3
ufo: 1.3.2 ufo: 1.3.2
@ -24916,7 +24910,7 @@ snapshots:
pdf-parse@1.1.1: pdf-parse@1.1.1:
dependencies: dependencies:
debug: 3.2.7(supports-color@8.1.1) debug: 3.2.7(supports-color@5.5.0)
node-ensure: 0.0.0 node-ensure: 0.0.0
transitivePeerDependencies: transitivePeerDependencies:
- supports-color - supports-color
@ -25828,7 +25822,7 @@ snapshots:
rhea@1.0.24: rhea@1.0.24:
dependencies: dependencies:
debug: 3.2.7(supports-color@8.1.1) debug: 3.2.7(supports-color@5.5.0)
transitivePeerDependencies: transitivePeerDependencies:
- supports-color - supports-color
@ -26202,7 +26196,7 @@ snapshots:
binascii: 0.0.2 binascii: 0.0.2
bn.js: 5.2.1 bn.js: 5.2.1
browser-request: 0.3.3 browser-request: 0.3.3
debug: 3.2.7(supports-color@8.1.1) debug: 3.2.7(supports-color@5.5.0)
expand-tilde: 2.0.2 expand-tilde: 2.0.2
extend: 3.0.2 extend: 3.0.2
fast-xml-parser: 4.2.7 fast-xml-parser: 4.2.7
@ -27190,7 +27184,7 @@ snapshots:
unplugin@1.0.1: unplugin@1.0.1:
dependencies: dependencies:
acorn: 8.11.2 acorn: 8.12.1
chokidar: 3.5.2 chokidar: 3.5.2
webpack-sources: 3.2.3 webpack-sources: 3.2.3
webpack-virtual-modules: 0.5.0 webpack-virtual-modules: 0.5.0
@ -27204,7 +27198,7 @@ snapshots:
unplugin@1.5.1: unplugin@1.5.1:
dependencies: dependencies:
acorn: 8.11.2 acorn: 8.12.1
chokidar: 3.5.2 chokidar: 3.5.2
webpack-sources: 3.2.3 webpack-sources: 3.2.3
webpack-virtual-modules: 0.6.1 webpack-virtual-modules: 0.6.1