[Security] Bump apollo-server-express from 2.12.0 to 2.14.2 in /backend

Bumps [apollo-server-express](https://github.com/apollographql/apollo-server/tree/HEAD/packages/apollo-server-express) from 2.12.0 to 2.14.2. **This update includes a security fix.**
- [Release notes](https://github.com/apollographql/apollo-server/releases)
- [Changelog](https://github.com/apollographql/apollo-server/blob/main/CHANGELOG.md)
- [Commits](https://github.com/apollographql/apollo-server/commits/apollo-server-express@2.14.2/packages/apollo-server-express)

Signed-off-by: dependabot-preview[bot] <support@dependabot.com>
This commit is contained in:
dependabot-preview[bot] 2020-11-20 15:07:33 +00:00 committed by GitHub
parent f23c34dd5d
commit 6052a5957f
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
2 changed files with 100 additions and 95 deletions

View File

@ -44,7 +44,7 @@
"apollo-link-context": "~1.0.20",
"apollo-link-http": "~1.5.17",
"apollo-server": "~2.11.0",
"apollo-server-express": "^2.12.0",
"apollo-server-express": "^2.14.2",
"aws-sdk": "^2.652.0",
"babel-plugin-transform-runtime": "^6.23.0",
"bcryptjs": "~2.4.3",

View File

@ -1592,13 +1592,14 @@
"@types/qs" "*"
"@types/serve-static" "*"
"@types/express@4.17.3":
version "4.17.3"
resolved "https://registry.yarnpkg.com/@types/express/-/express-4.17.3.tgz#38e4458ce2067873b09a73908df488870c303bd9"
integrity sha512-I8cGRJj3pyOLs/HndoP+25vOqhqWkAZsWMEmq1qXy/b/M3ppufecUwaK2/TVDVxcV61/iSdhykUjQQ2DLSrTdg==
"@types/express@4.17.4":
version "4.17.4"
resolved "https://registry.yarnpkg.com/@types/express/-/express-4.17.4.tgz#e78bf09f3f530889575f4da8a94cd45384520aac"
integrity sha512-DO1L53rGqIDUEvOjJKmbMEQ5Z+BM2cIEPy/eV3En+s166Gz+FeuzRerxcab757u/U4v4XF4RYrZPmqKa+aY/2w==
dependencies:
"@types/body-parser" "*"
"@types/express-serve-static-core" "*"
"@types/qs" "*"
"@types/serve-static" "*"
"@types/fs-capacitor@*":
@ -1950,13 +1951,13 @@ anymatch@^3.0.3, anymatch@~3.1.1:
normalize-path "^3.0.0"
picomatch "^2.0.4"
apollo-cache-control@^0.11.0:
version "0.11.0"
resolved "https://registry.yarnpkg.com/apollo-cache-control/-/apollo-cache-control-0.11.0.tgz#7075492d04c5424e7c6769380b503e8f75b39d61"
integrity sha512-dmRnQ9AXGw2SHahVGLzB/p4UW/taFBAJxifxubp8hqY5p9qdlSu4MPRq8zvV2ULMYf50rBtZyC4C+dZLqmHuHQ==
apollo-cache-control@^0.11.4:
version "0.11.4"
resolved "https://registry.yarnpkg.com/apollo-cache-control/-/apollo-cache-control-0.11.4.tgz#06d57d728e6f928e03b9cc3b993f6102f305c32e"
integrity sha512-FUKE8ASr8GxVq5rmky/tY8bsf++cleGT591lfLiqnPsP1fo3kAfgRfWA2QRHTCKFNlQxzUhVOEDv+PaysqiOjw==
dependencies:
apollo-server-env "^2.4.4"
apollo-server-plugin-base "^0.9.0"
apollo-server-env "^2.4.5"
apollo-server-plugin-base "^0.10.2"
apollo-cache-inmemory@~1.6.5:
version "1.6.5"
@ -1991,20 +1992,13 @@ apollo-client@~2.6.8:
tslib "^1.10.0"
zen-observable "^0.8.0"
apollo-datasource@^0.7.1:
version "0.7.1"
resolved "https://registry.yarnpkg.com/apollo-datasource/-/apollo-datasource-0.7.1.tgz#0b06da999ace50b7f5fe509f2a03f7de97974334"
integrity sha512-h++/jQAY7GA+4TBM+7ezvctFmmGNLrAPf51KsagZj+NkT9qvxp585rdsuatynVbSl59toPK2EuVmc6ilmQHf+g==
apollo-datasource@^0.7.2:
version "0.7.2"
resolved "https://registry.yarnpkg.com/apollo-datasource/-/apollo-datasource-0.7.2.tgz#1662ee93453a9b89af6f73ce561bde46b41ebf31"
integrity sha512-ibnW+s4BMp4K2AgzLEtvzkjg7dJgCaw9M5b5N0YKNmeRZRnl/I/qBTQae648FsRKgMwTbRQIvBhQ0URUFAqFOw==
dependencies:
apollo-server-caching "^0.5.1"
apollo-server-env "^2.4.4"
apollo-engine-reporting-protobuf@^0.4.4:
version "0.4.4"
resolved "https://registry.yarnpkg.com/apollo-engine-reporting-protobuf/-/apollo-engine-reporting-protobuf-0.4.4.tgz#73a064f8c9f2d6605192d1673729c66ec47d9cb7"
integrity sha512-SGrIkUR7Q/VjU8YG98xcvo340C4DaNUhg/TXOtGsMlfiJDzHwVau/Bv6zifAzBafp2lj0XND6Daj5kyT/eSI/w==
dependencies:
"@apollo/protobufjs" "^1.0.3"
apollo-server-caching "^0.5.2"
apollo-server-env "^2.4.5"
apollo-engine-reporting-protobuf@^0.5.1:
version "0.5.1"
@ -2013,21 +2007,6 @@ apollo-engine-reporting-protobuf@^0.5.1:
dependencies:
"@apollo/protobufjs" "^1.0.3"
apollo-engine-reporting@^2.2.0:
version "2.2.0"
resolved "https://registry.yarnpkg.com/apollo-engine-reporting/-/apollo-engine-reporting-2.2.0.tgz#805399ee3d3909e01b72f1c34a3db1ad3fe16747"
integrity sha512-FmfWTpyEATO392QHcot3PNMrxNhEJ4Kq+QiYY263vN/OBLZQ5zpkFY25iB6gVuiJoz3NUkByhxq5f/XjarJVvA==
dependencies:
apollo-engine-reporting-protobuf "^0.5.1"
apollo-graphql "^0.4.0"
apollo-server-caching "^0.5.1"
apollo-server-env "^2.4.4"
apollo-server-errors "^2.4.1"
apollo-server-plugin-base "^0.9.0"
apollo-server-types "^0.5.0"
async-retry "^1.2.1"
uuid "^8.0.0"
apollo-env@^0.6.5:
version "0.6.5"
resolved "https://registry.yarnpkg.com/apollo-env/-/apollo-env-0.6.5.tgz#5a36e699d39e2356381f7203493187260fded9f3"
@ -2046,10 +2025,10 @@ apollo-errors@^1.9.0:
assert "^1.4.1"
extendable-error "^0.1.5"
apollo-graphql@^0.4.0:
version "0.4.5"
resolved "https://registry.yarnpkg.com/apollo-graphql/-/apollo-graphql-0.4.5.tgz#936529335010f9be9e239619b82fb9060c70521d"
integrity sha512-0qa7UOoq7E71kBYE7idi6mNQhHLVdMEDInWk6TNw3KsSWZE2/I68gARP84Mj+paFTO5NYuw1Dht66PVX76Cc2w==
apollo-graphql@^0.6.0:
version "0.6.0"
resolved "https://registry.yarnpkg.com/apollo-graphql/-/apollo-graphql-0.6.0.tgz#37bee7dc853213269137f4c60bfdf2ee28658669"
integrity sha512-BxTf5LOQe649e9BNTPdyCGItVv4Ll8wZ2BKnmiYpRAocYEXAVrQPWuSr3dO4iipqAU8X0gvle/Xu9mSqg5b7Qg==
dependencies:
apollo-env "^0.6.5"
lodash.sortby "^4.7.0"
@ -2090,6 +2069,13 @@ apollo-link@^1.0.0, apollo-link@^1.2.13, apollo-link@^1.2.14:
tslib "^1.9.3"
zen-observable-ts "^0.8.21"
apollo-reporting-protobuf@^0.6.1:
version "0.6.1"
resolved "https://registry.yarnpkg.com/apollo-reporting-protobuf/-/apollo-reporting-protobuf-0.6.1.tgz#09294e5f5f6b2285eb94b40621ed42113eaabea3"
integrity sha512-qr4DheFP154PGZsd93SSIS9RkqHnR5b6vT+eCloWjy3UIpY+yZ3cVLlttlIjYvOG4xTJ25XEwcHiAExatQo/7g==
dependencies:
"@apollo/protobufjs" "^1.0.3"
apollo-server-caching@^0.5.1:
version "0.5.1"
resolved "https://registry.yarnpkg.com/apollo-server-caching/-/apollo-server-caching-0.5.1.tgz#5cd0536ad5473abb667cc82b59bc56b96fb35db6"
@ -2097,35 +2083,46 @@ apollo-server-caching@^0.5.1:
dependencies:
lru-cache "^5.0.0"
apollo-server-core@^2.11.0, apollo-server-core@^2.12.0:
version "2.15.0"
resolved "https://registry.yarnpkg.com/apollo-server-core/-/apollo-server-core-2.15.0.tgz#a9c19028b76e7ca90a759b4421556ba7625df1d9"
integrity sha512-PwNm/G5IXReev7E0ZaRAekQ7pN9BTuXH8c2QVgfMGMno3XiN5Dj+1DXYQthpwNJch0y5zhhLcb/JbClijgSEsA==
apollo-server-caching@^0.5.2:
version "0.5.2"
resolved "https://registry.yarnpkg.com/apollo-server-caching/-/apollo-server-caching-0.5.2.tgz#bef5d5e0d48473a454927a66b7bb947a0b6eb13e"
integrity sha512-HUcP3TlgRsuGgeTOn8QMbkdx0hLPXyEJehZIPrcof0ATz7j7aTPA4at7gaiFHCo8gk07DaWYGB3PFgjboXRcWQ==
dependencies:
lru-cache "^5.0.0"
apollo-server-core@^2.11.0, apollo-server-core@^2.14.2:
version "2.19.0"
resolved "https://registry.yarnpkg.com/apollo-server-core/-/apollo-server-core-2.19.0.tgz#ff14e788f228c2d6739478a68cf93f46a16e5bfa"
integrity sha512-2aMKUVPyNbomJQaG2tkpfqvp1Tfgxgkdr7nX5zHudYNSzsPrHw+CcYlCbIVFFI/mTZsjoK9czNq1qerFRxZbJw==
dependencies:
"@apollographql/apollo-tools" "^0.4.3"
"@apollographql/graphql-playground-html" "1.6.26"
"@types/graphql-upload" "^8.0.0"
"@types/ws" "^7.0.0"
apollo-cache-control "^0.11.0"
apollo-datasource "^0.7.1"
apollo-engine-reporting "^2.2.0"
apollo-server-caching "^0.5.1"
apollo-server-env "^2.4.4"
apollo-server-errors "^2.4.1"
apollo-server-plugin-base "^0.9.0"
apollo-server-types "^0.5.0"
apollo-tracing "^0.11.0"
apollo-cache-control "^0.11.4"
apollo-datasource "^0.7.2"
apollo-graphql "^0.6.0"
apollo-reporting-protobuf "^0.6.1"
apollo-server-caching "^0.5.2"
apollo-server-env "^2.4.5"
apollo-server-errors "^2.4.2"
apollo-server-plugin-base "^0.10.2"
apollo-server-types "^0.6.1"
apollo-tracing "^0.12.0"
async-retry "^1.2.1"
fast-json-stable-stringify "^2.0.0"
graphql-extensions "^0.12.3"
graphql-extensions "^0.12.6"
graphql-tag "^2.9.2"
graphql-tools "^4.0.0"
graphql-upload "^8.0.2"
loglevel "^1.6.7"
lru-cache "^5.0.0"
sha.js "^2.4.11"
subscriptions-transport-ws "^0.9.11"
uuid "^8.0.0"
ws "^6.0.0"
apollo-server-env@^2.4.3, apollo-server-env@^2.4.4:
apollo-server-env@^2.4.4:
version "2.4.4"
resolved "https://registry.yarnpkg.com/apollo-server-env/-/apollo-server-env-2.4.4.tgz#12d2d0896dcb184478cba066c7a683ab18689ca1"
integrity sha512-c2oddDS3lwAl6QNCIKCLEzt/dF9M3/tjjYRVdxOVN20TidybI7rAbnT4QOzf4tORnGXtiznEAvr/Kc9ahhKADg==
@ -2133,24 +2130,32 @@ apollo-server-env@^2.4.3, apollo-server-env@^2.4.4:
node-fetch "^2.1.2"
util.promisify "^1.0.0"
apollo-server-errors@^2.4.1:
version "2.4.1"
resolved "https://registry.yarnpkg.com/apollo-server-errors/-/apollo-server-errors-2.4.1.tgz#16ad49de6c9134bfb2b7dede9842e73bb239dbe2"
integrity sha512-7oEd6pUxqyWYUbQ9TA8tM0NU/3aGtXSEibo6+txUkuHe7QaxfZ2wHRp+pfT1LC1K3RXYjKj61/C2xEO19s3Kdg==
apollo-server-env@^2.4.5:
version "2.4.5"
resolved "https://registry.yarnpkg.com/apollo-server-env/-/apollo-server-env-2.4.5.tgz#73730b4f0439094a2272a9d0caa4079d4b661d5f"
integrity sha512-nfNhmGPzbq3xCEWT8eRpoHXIPNcNy3QcEoBlzVMjeglrBGryLG2LXwBSPnVmTRRrzUYugX0ULBtgE3rBFNoUgA==
dependencies:
node-fetch "^2.1.2"
util.promisify "^1.0.0"
apollo-server-express@^2.11.0, apollo-server-express@^2.12.0:
version "2.12.0"
resolved "https://registry.yarnpkg.com/apollo-server-express/-/apollo-server-express-2.12.0.tgz#a03cef8a3aa753bff73156e6a31fd59a076dc48b"
integrity sha512-oTBKM2SsziCoFW+ta+ubJ/ypvsc+EWrbJnyZhJ5FBYzSXPstt/jvgZHgMO+kOQgHEHrbJwugNDUuLMSm608L7A==
apollo-server-errors@^2.4.2:
version "2.4.2"
resolved "https://registry.yarnpkg.com/apollo-server-errors/-/apollo-server-errors-2.4.2.tgz#1128738a1d14da989f58420896d70524784eabe5"
integrity sha512-FeGxW3Batn6sUtX3OVVUm7o56EgjxDlmgpTLNyWcLb0j6P8mw9oLNyAm3B+deHA4KNdNHO5BmHS2g1SJYjqPCQ==
apollo-server-express@^2.11.0, apollo-server-express@^2.14.2:
version "2.14.2"
resolved "https://registry.yarnpkg.com/apollo-server-express/-/apollo-server-express-2.14.2.tgz#662dfeb9c794c1eca59dd93e57e74487a8195ae6"
integrity sha512-iYyZm0kQqkM561i9l0WC9HbJsGZJbHP9bhnWaa1Itd+yNBS2AJFp6mRR3hQacsWXUw7ewaKAracMIggvfSH5Aw==
dependencies:
"@apollographql/graphql-playground-html" "1.6.24"
"@types/accepts" "^1.3.5"
"@types/body-parser" "1.19.0"
"@types/cors" "^2.8.4"
"@types/express" "4.17.3"
"@types/express" "4.17.4"
accepts "^1.3.5"
apollo-server-core "^2.12.0"
apollo-server-types "^0.3.1"
apollo-server-core "^2.14.2"
apollo-server-types "^0.5.0"
body-parser "^1.18.3"
cors "^2.8.4"
express "^4.17.1"
@ -2160,12 +2165,12 @@ apollo-server-express@^2.11.0, apollo-server-express@^2.12.0:
subscriptions-transport-ws "^0.9.16"
type-is "^1.6.16"
apollo-server-plugin-base@^0.9.0:
version "0.9.0"
resolved "https://registry.yarnpkg.com/apollo-server-plugin-base/-/apollo-server-plugin-base-0.9.0.tgz#777f720a1ee827a66b8c159073ca30645f8bc625"
integrity sha512-LWcPrsy2+xqwlNseh/QaGa/MPNopS8c4qGgh0g0cAn0lZBRrJ9Yab7dq+iQ6vdUBwIhUWYN6s9dwUWCZw2SL8g==
apollo-server-plugin-base@^0.10.2:
version "0.10.2"
resolved "https://registry.yarnpkg.com/apollo-server-plugin-base/-/apollo-server-plugin-base-0.10.2.tgz#185aea98ba22afe275fb01659070edeb480a89a7"
integrity sha512-uM5uL1lOxbXdgvt/aEIbgs40fV9xA45Y3Mmh0VtQ/ddqq0MXR5aG92nnf8rM+URarBCUfxKJKaYzJJ/CXAnEdA==
dependencies:
apollo-server-types "^0.5.0"
apollo-server-types "^0.6.1"
apollo-server-testing@~2.11.0:
version "2.11.0"
@ -2174,15 +2179,6 @@ apollo-server-testing@~2.11.0:
dependencies:
apollo-server-core "^2.11.0"
apollo-server-types@^0.3.1:
version "0.3.1"
resolved "https://registry.yarnpkg.com/apollo-server-types/-/apollo-server-types-0.3.1.tgz#9456e243dad525a78b689246f124a66d7d8ac409"
integrity sha512-6nX5VC3icOGf1RZIs7/SYQZff+Cl16LQu1FHUOIk9gAMN2XjlRCyJgCeMj5YHJzQ8Mhg4BO0weWuydEg+JxLzg==
dependencies:
apollo-engine-reporting-protobuf "^0.4.4"
apollo-server-caching "^0.5.1"
apollo-server-env "^2.4.3"
apollo-server-types@^0.5.0:
version "0.5.0"
resolved "https://registry.yarnpkg.com/apollo-server-types/-/apollo-server-types-0.5.0.tgz#51f39c5fa610ece8b07f1fbcf63c47d4ac150340"
@ -2192,6 +2188,15 @@ apollo-server-types@^0.5.0:
apollo-server-caching "^0.5.1"
apollo-server-env "^2.4.4"
apollo-server-types@^0.6.1:
version "0.6.1"
resolved "https://registry.yarnpkg.com/apollo-server-types/-/apollo-server-types-0.6.1.tgz#61486980b44cacee2cb4939f0b369a0eb661a098"
integrity sha512-IEQ37aYvMLiTUzsySVLOSuvvhxuyYdhI05f3cnH6u2aN1HgGp7vX6bg+U3Ue8wbHfdcifcGIk5UEU+Q+QO6InA==
dependencies:
apollo-reporting-protobuf "^0.6.1"
apollo-server-caching "^0.5.2"
apollo-server-env "^2.4.5"
apollo-server@~2.11.0:
version "2.11.0"
resolved "https://registry.yarnpkg.com/apollo-server/-/apollo-server-2.11.0.tgz#f901f820716716e8693be8b0e234849f5819a4ae"
@ -2203,13 +2208,13 @@ apollo-server@~2.11.0:
graphql-subscriptions "^1.0.0"
graphql-tools "^4.0.0"
apollo-tracing@^0.11.0:
version "0.11.0"
resolved "https://registry.yarnpkg.com/apollo-tracing/-/apollo-tracing-0.11.0.tgz#8821eb60692f77c06660fb6bc147446f600aecfe"
integrity sha512-I9IFb/8lkBW8ZwOAi4LEojfT7dMfUSkpnV8LHQI8Rcj0HtzL9HObQ3woBmzyGHdGHLFuD/6/VHyFD67SesSrJg==
apollo-tracing@^0.12.0:
version "0.12.0"
resolved "https://registry.yarnpkg.com/apollo-tracing/-/apollo-tracing-0.12.0.tgz#26250d7789c28aa89d63226eb674706dd69a568a"
integrity sha512-cMUYGE6mOEwb9HDqhf4fiPEo2JMhjPIqEprAQEC57El76avRpRig5NM0bnqMZcYJZR5QmLlNcttNccOwf9WrNg==
dependencies:
apollo-server-env "^2.4.4"
apollo-server-plugin-base "^0.9.0"
apollo-server-env "^2.4.5"
apollo-server-plugin-base "^0.10.2"
apollo-utilities@1.3.3, apollo-utilities@^1.3.3:
version "1.3.3"
@ -4777,14 +4782,14 @@ graphql-custom-directives@~0.2.14:
moment "^2.22.2"
numeral "^2.0.6"
graphql-extensions@^0.12.3:
version "0.12.3"
resolved "https://registry.yarnpkg.com/graphql-extensions/-/graphql-extensions-0.12.3.tgz#593b210d0c1ec79985056bea1b7d645e5eddfc31"
integrity sha512-W7iT0kzlwTiZU7fXfw9IgWnsqVj7EFLd0/wVcZZRAbR8L3f4+YsGls0oxKdsrvYBnbG347BXKQmIyo6GTEk4XA==
graphql-extensions@^0.12.6:
version "0.12.6"
resolved "https://registry.yarnpkg.com/graphql-extensions/-/graphql-extensions-0.12.6.tgz#c66be43035662a8cfb0b8efe9df96595338bd13c"
integrity sha512-EUNw+OIRXYTPxToSoJjhJvS5aGa94KkdkZnL1I9DCZT64/+rzQNeLeGj+goj2RYuYvoQe1Bmcx0CNZ1GqwBhng==
dependencies:
"@apollographql/apollo-tools" "^0.4.3"
apollo-server-env "^2.4.4"
apollo-server-types "^0.5.0"
apollo-server-env "^2.4.5"
apollo-server-types "^0.6.1"
graphql-iso-date@~3.6.1:
version "3.6.1"