From 6c636676178f90397ab0beb6dfad2a70483b7635 Mon Sep 17 00:00:00 2001 From: vinodkumarsharma276 Date: Mon, 13 Jun 2022 22:30:27 +0530 Subject: [PATCH] Bump cheerio to @1.0.0-rc.11 Due to recent security vulnerability in nth-checkv1.2.0 which is fetched transitively from enzyme --> cheerio --> css-select --> .... --> nth-checkv1.2.0. cherrio@1.0.0-rc.11 removes dependency of css-select which ultimately removes dependency of nth-check --- packages/enzyme/package.json | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/packages/enzyme/package.json b/packages/enzyme/package.json index a112e6d5e..11625a52b 100644 --- a/packages/enzyme/package.json +++ b/packages/enzyme/package.json @@ -39,7 +39,7 @@ "license": "MIT", "dependencies": { "array.prototype.flat": "^1.2.4", - "cheerio": "=1.0.0-rc.3", + "cheerio": "=1.0.0-rc.11", "enzyme-shallow-equal": "^1.0.4", "function.prototype.name": "^1.1.4", "has": "^1.0.3",