[Android] Fix remote access vulnerability in the follow redirect dependency

Nicolas Pomepuy git at videolan.org
Tue Jan 9 06:58:30 UTC 2024


vlc-android | branch: master | Nicolas Pomepuy <nicolas at videolabs.io> | Tue Jan  9 07:34:37 2024 +0100| [c895224c1d22f9156398e33a035e8752eafb38d0] | committer: Nicolas Pomepuy

Fix remote access vulnerability in the follow redirect dependency

See https://github.com/advisories/GHSA-jchw-25xp-jwwc

> https://code.videolan.org/videolan/vlc-android/commit/c895224c1d22f9156398e33a035e8752eafb38d0
---

 buildsystem/network-sharing-server/package-lock.json | 12 ++++++------
 1 file changed, 6 insertions(+), 6 deletions(-)

diff --git a/buildsystem/network-sharing-server/package-lock.json b/buildsystem/network-sharing-server/package-lock.json
index b78b1129a9..5b7d2e9a77 100644
--- a/buildsystem/network-sharing-server/package-lock.json
+++ b/buildsystem/network-sharing-server/package-lock.json
@@ -6455,9 +6455,9 @@
             "dev": true
         },
         "node_modules/follow-redirects": {
-            "version": "1.15.2",
-            "resolved": "https://registry.npmjs.org/follow-redirects/-/follow-redirects-1.15.2.tgz",
-            "integrity": "sha512-VQLG33o04KaQ8uYi2tVNbdrWp1QWxNNea+nmIB4EVM28v0hmP17z7aG1+wAkNzVq4KeXTq3221ye5qTJP91JwA==",
+            "version": "1.15.4",
+            "resolved": "https://registry.npmjs.org/follow-redirects/-/follow-redirects-1.15.4.tgz",
+            "integrity": "sha512-Cr4D/5wlrb0z9dgERpUL3LrmPKVDsETIJhaCMeDfuFYcqa5bldGV6wBsAN6X/vxlXQtFBMrXdXxdL8CbDTGniw==",
             "funding": [
                 {
                     "type": "individual",
@@ -16865,9 +16865,9 @@
             "dev": true
         },
         "follow-redirects": {
-            "version": "1.15.2",
-            "resolved": "https://registry.npmjs.org/follow-redirects/-/follow-redirects-1.15.2.tgz",
-            "integrity": "sha512-VQLG33o04KaQ8uYi2tVNbdrWp1QWxNNea+nmIB4EVM28v0hmP17z7aG1+wAkNzVq4KeXTq3221ye5qTJP91JwA=="
+            "version": "1.15.4",
+            "resolved": "https://registry.npmjs.org/follow-redirects/-/follow-redirects-1.15.4.tgz",
+            "integrity": "sha512-Cr4D/5wlrb0z9dgERpUL3LrmPKVDsETIJhaCMeDfuFYcqa5bldGV6wBsAN6X/vxlXQtFBMrXdXxdL8CbDTGniw=="
         },
         "form-data": {
             "version": "4.0.0",



More information about the Android mailing list