From a959387249e394c2c85301d038f73d15ee6bcba9 Mon Sep 17 00:00:00 2001 From: Jared Perreault Date: Fri, 4 Feb 2022 15:55:41 +0000 Subject: [PATCH] updates 'parse-link-header' dependency OKTA-459293 <<>> Artifact: okta-sdk-nodejs Files changed count: 5 PR Link: "https://github.com/okta/okta-sdk-nodejs/pull/300" --- CHANGELOG.md | 3 +++ package.json | 4 ++-- scripts/e2e.sh | 10 ++++------ test/it/factor-create.ts | 2 +- yarn.lock | 8 ++++---- 5 files changed, 14 insertions(+), 13 deletions(-) diff --git a/CHANGELOG.md b/CHANGELOG.md index 38331b2a7..d7c9a5271 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -1,5 +1,8 @@ # Okta Node SDK Changelog +## 4.6.1 +- [#300](https://github.com/okta/okta-sdk-nodejs/pull/300) Upgrade parse-link-header for security vuln + ## 4.6.0 ### Features diff --git a/package.json b/package.json index c80712fff..ad697e037 100644 --- a/package.json +++ b/package.json @@ -1,6 +1,6 @@ { "name": "@okta/okta-sdk-nodejs", - "version": "4.6.0", + "version": "4.6.1", "description": "Okta API wrapper for Node.js", "engines": { "node": ">=10.0" @@ -38,7 +38,7 @@ "lodash": "^4.17.20", "mocha-junit-reporter": "^2.0.0", "njwt": "^1.0.0", - "parse-link-header": "^1.0.1", + "parse-link-header": "^2.0.0", "rasha": "^1.2.5", "safe-flat": "^2.0.2" }, diff --git a/scripts/e2e.sh b/scripts/e2e.sh index adfb7947c..3442d794d 100644 --- a/scripts/e2e.sh +++ b/scripts/e2e.sh @@ -2,12 +2,10 @@ source ${OKTA_HOME}/${REPO}/scripts/setup.sh -aws s3 --quiet --region us-east-1 cp s3://ci-secret-stash/prod/okta-sdk-nodejs/privateKey.pem ${OKTA_HOME}/${REPO}/scripts/privateKey.pem - -export OKTA_CLIENT_ORGURL=https://node-sdk.okta.com -get_secret prod/devex/okta-sdk-nodejs_apiKey OKTA_CLIENT_TOKEN -export OKTA_CLIENT_CLIENTID=0oa1jnkiuz6FCTchz4x7 -export OKTA_CLIENT_PRIVATEKEY=$(cat ${OKTA_HOME}/${REPO}/scripts/privateKey.pem) +export OKTA_CLIENT_ORGURL=https://node-sdk-oie.oktapreview.com +get_vault_secret_key devex/okta-sdk-nodejs-vars api_key OKTA_CLIENT_TOKEN +export OKTA_CLIENT_CLIENTID=0oa1q34stxthm0zbJ1d7 +get_vault_secret_key devex/okta-sdk-nodejs-vars private_key OKTA_CLIENT_PRIVATEKEY export TEST_SUITE_TYPE="junit" export TEST_RESULT_FILE_DIR="${REPO}/test-reports" diff --git a/test/it/factor-create.ts b/test/it/factor-create.ts index dbaf233ca..c8be1938f 100644 --- a/test/it/factor-create.ts +++ b/test/it/factor-create.ts @@ -51,7 +51,7 @@ describe('Factors API', () => { factorType: 'call', provider: 'OKTA', profile: { - phoneNumber: '415 123 1234' + phoneNumber: '162 840 01133' } }; const createdFactor = await client.enrollFactor(createdUser.id, factor); diff --git a/yarn.lock b/yarn.lock index 2d699e69a..e26e53950 100644 --- a/yarn.lock +++ b/yarn.lock @@ -4404,10 +4404,10 @@ parse-json@^5.0.0: json-parse-even-better-errors "^2.3.0" lines-and-columns "^1.1.6" -parse-link-header@^1.0.1: - version "1.0.1" - resolved "https://registry.yarnpkg.com/parse-link-header/-/parse-link-header-1.0.1.tgz#bedfe0d2118aeb84be75e7b025419ec8a61140a7" - integrity sha1-vt/g0hGK64S+deewJUGeyKYRQKc= +parse-link-header@^2.0.0: + version "2.0.0" + resolved "https://registry.yarnpkg.com/parse-link-header/-/parse-link-header-2.0.0.tgz#949353e284f8aa01f2ac857a98f692b57733f6b7" + integrity sha512-xjU87V0VyHZybn2RrCX5TIFGxTVZE6zqqZWMPlIKiSKuWh/X5WZdt+w1Ki1nXB+8L/KtL+nZ4iq+sfI6MrhhMw== dependencies: xtend "~4.0.1"