diff --git a/package-lock.json b/package-lock.json index 252b6f1a..6444152b 100644 --- a/package-lock.json +++ b/package-lock.json @@ -10920,9 +10920,10 @@ "license": "ISC" }, "node_modules/make-fetch-happen": { - "version": "14.0.2", - "resolved": "https://registry.npmjs.org/make-fetch-happen/-/make-fetch-happen-14.0.2.tgz", - "integrity": "sha512-ByhSXJdWoBKRHKaqfmULjm4RwlL3EN9bZogHPDIuT9GHJIqHgh8FYkxpcCMsvaNTwl2VzFFYgzrGMlGsOEtGPQ==", + "version": "14.0.3", + "resolved": "https://registry.npmjs.org/make-fetch-happen/-/make-fetch-happen-14.0.3.tgz", + "integrity": "sha512-QMjGbFTP0blj97EeidG5hk/QhKQ3T4ICckQGLgz38QF7Vgbk6e6FTARN8KhKxyBbWn8R0HU+bnw8aSoFPD4qtQ==", + "license": "ISC", "dependencies": { "@npmcli/agent": "^3.0.0", "cacache": "^19.0.1", @@ -10931,7 +10932,7 @@ "minipass-fetch": "^4.0.0", "minipass-flush": "^1.0.5", "minipass-pipeline": "^1.2.4", - "negotiator": "^0.6.3", + "negotiator": "^1.0.0", "proc-log": "^5.0.0", "promise-retry": "^2.0.1", "ssri": "^12.0.0" @@ -10940,6 +10941,15 @@ "node": "^18.17.0 || >=20.5.0" } }, + "node_modules/make-fetch-happen/node_modules/negotiator": { + "version": "1.0.0", + "resolved": "https://registry.npmjs.org/negotiator/-/negotiator-1.0.0.tgz", + "integrity": "sha512-8Ofs/AUQh8MaEcrlq5xOX0CQ9ypTF5dl78mjlMNfOK08fzpgTHQRQPBxcPlEtIw0yRpws+Zo/3r+5WRby7u3Gg==", + "license": "MIT", + "engines": { + "node": ">= 0.6" + } + }, "node_modules/makeerror": { "version": "1.0.12", "dev": true, @@ -11915,7 +11925,9 @@ } }, "node_modules/pkijs": { - "version": "3.2.4", + "version": "3.2.5", + "resolved": "https://registry.npmjs.org/pkijs/-/pkijs-3.2.5.tgz", + "integrity": "sha512-WX0la7n7CbnguuaIQoT4Fc0IJckPDOUldzOwlZ0nwpOcySS+Six/tXBdc0RX17J5o1To0SAr3xDJjDLsOfDFQA==", "license": "BSD-3-Clause", "dependencies": { "@noble/hashes": "^1.4.0", @@ -13784,7 +13796,7 @@ "sigstore": "bin/run" }, "devDependencies": { - "make-fetch-happen": "^14.0.2", + "make-fetch-happen": "^14.0.3", "oclif": "^4", "ts-node": "^10.9.2", "tslib": "^2.8.1" @@ -13877,12 +13889,12 @@ "canonicalize": "^2.0.0", "jose": "^5.9.6", "nock": "^13.5.5", - "pkijs": "^3.2.4", + "pkijs": "^3.2.5", "pvutils": "^1.1.3" }, "devDependencies": { "@sigstore/rekor-types": "^3.0.0", - "make-fetch-happen": "^14.0.2" + "make-fetch-happen": "^14.0.3" }, "engines": { "node": "^18.17.0 || >=20.5.0" @@ -13915,7 +13927,7 @@ "version": "0.4.0", "license": "Apache-2.0", "dependencies": { - "make-fetch-happen": "^14.0.2", + "make-fetch-happen": "^14.0.3", "proc-log": "^5.0.0" }, "devDependencies": { @@ -13945,7 +13957,7 @@ "@sigstore/bundle": "^3.1.0", "@sigstore/core": "^2.0.0", "@sigstore/protobuf-specs": "^0.4.0", - "make-fetch-happen": "^14.0.2", + "make-fetch-happen": "^14.0.3", "proc-log": "^5.0.0", "promise-retry": "^2.0.1" }, diff --git a/packages/cli/package.json b/packages/cli/package.json index 37aab2fe..caf01f15 100644 --- a/packages/cli/package.json +++ b/packages/cli/package.json @@ -43,7 +43,7 @@ "sigstore": "^3.0.0" }, "devDependencies": { - "make-fetch-happen": "^14.0.2", + "make-fetch-happen": "^14.0.3", "oclif": "^4", "ts-node": "^10.9.2", "tslib": "^2.8.1" diff --git a/packages/mock/package.json b/packages/mock/package.json index 7bc9fcb5..21126806 100644 --- a/packages/mock/package.json +++ b/packages/mock/package.json @@ -27,7 +27,7 @@ }, "devDependencies": { "@sigstore/rekor-types": "^3.0.0", - "make-fetch-happen": "^14.0.2" + "make-fetch-happen": "^14.0.3" }, "dependencies": { "@peculiar/webcrypto": "^1.5.0", @@ -38,7 +38,7 @@ "canonicalize": "^2.0.0", "jose": "^5.9.6", "nock": "^13.5.5", - "pkijs": "^3.2.4", + "pkijs": "^3.2.5", "pvutils": "^1.1.3" }, "engines": { diff --git a/packages/oci/package.json b/packages/oci/package.json index 6cab9a98..b8e974fd 100644 --- a/packages/oci/package.json +++ b/packages/oci/package.json @@ -29,7 +29,7 @@ "@types/make-fetch-happen": "^10.0.4" }, "dependencies": { - "make-fetch-happen": "^14.0.2", + "make-fetch-happen": "^14.0.3", "proc-log": "^5.0.0" }, "engines": { diff --git a/packages/sign/package.json b/packages/sign/package.json index b1d60ea1..dd93fd79 100644 --- a/packages/sign/package.json +++ b/packages/sign/package.json @@ -36,7 +36,7 @@ "@sigstore/bundle": "^3.1.0", "@sigstore/core": "^2.0.0", "@sigstore/protobuf-specs": "^0.4.0", - "make-fetch-happen": "^14.0.2", + "make-fetch-happen": "^14.0.3", "proc-log": "^5.0.0", "promise-retry": "^2.0.1" },