From a0b4635c587fb90ea978dbe4b52bc179e0d665d9 Mon Sep 17 00:00:00 2001 From: Tommy Nguyen <4123478+tido64@users.noreply.github.com> Date: Tue, 3 Feb 2026 19:16:22 +0100 Subject: [PATCH] chore: address CVE-2025-13465 --- package.json | 4 ++++ yarn.lock | 8 ++++---- 2 files changed, 8 insertions(+), 4 deletions(-) diff --git a/package.json b/package.json index 399403fa1..c15358932 100644 --- a/package.json +++ b/package.json @@ -38,13 +38,16 @@ "packageManager": "yarn@4.10.3", "resolutions": { "@appium/base-driver/axios": "^1.11.0", + "@appium/base-driver/lodash": "^4.17.21", "@appium/base-driver/lru-cache": "^11.2.1", "@appium/docutils": "link:./packages/null", + "@appium/logger/lodash": "^4.17.21", "@appium/logger/lru-cache": "^11.2.1", "@appium/support/archiver": "~7.0.1", "@appium/support/axios": "^1.11.0", "@appium/support/form-data": "~4.0.4", "@appium/support/glob": "^11.0.3", + "@appium/support/lodash": "^4.17.21", "@appium/support/semver": "~7.7.2", "@appium/support/teen_process": "~3.0.1", "@appium/support/uuid": "~13.0.0", @@ -69,6 +72,7 @@ "@react-native/virtualized-lists": "^0.79.0", "appium/ajv": "~8.17.1", "appium/axios": "^1.11.0", + "appium/lodash": "^4.17.21", "appium/lru-cache": "^11.2.1", "appium/semver": "~7.7.2", "appium/teen_process": "~3.0.1", diff --git a/yarn.lock b/yarn.lock index 71ebdb79c..389139075 100644 --- a/yarn.lock +++ b/yarn.lock @@ -10145,10 +10145,10 @@ __metadata: languageName: node linkType: hard -"lodash@npm:4.17.21, lodash@npm:^4.0.0, lodash@npm:^4.17.11, lodash@npm:^4.17.14, lodash@npm:^4.17.15, lodash@npm:^4.17.21, lodash@npm:^4.17.4, lodash@npm:^4.2.1": - version: 4.17.21 - resolution: "lodash@npm:4.17.21" - checksum: 10c0/d8cbea072bb08655bb4c989da418994b073a608dffa608b09ac04b43a791b12aeae7cd7ad919aa4c925f33b48490b5cfe6c1f71d827956071dae2e7bb3a6b74c +"lodash@npm:^4.0.0, lodash@npm:^4.17.11, lodash@npm:^4.17.14, lodash@npm:^4.17.15, lodash@npm:^4.17.21, lodash@npm:^4.17.4, lodash@npm:^4.2.1": + version: 4.17.23 + resolution: "lodash@npm:4.17.23" + checksum: 10c0/1264a90469f5bb95d4739c43eb6277d15b6d9e186df4ac68c3620443160fc669e2f14c11e7d8b2ccf078b81d06147c01a8ccced9aab9f9f63d50dcf8cace6bf6 languageName: node linkType: hard