Skip to content

Commit 9e29c6b

Browse files
authored
Merge pull request #522 from ForestAdmin/fix(security)/handle-refresh-token
fix(security): decrease the time before expiration of forest session token
2 parents 97a44e4 + 206d713 commit 9e29c6b

File tree

2 files changed

+29
-29
lines changed

2 files changed

+29
-29
lines changed

package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -26,7 +26,7 @@
2626
"dependencies": {
2727
"@babel/runtime": "7.10.1",
2828
"bluebird": "2.9.25",
29-
"forest-express": "8.0.4",
29+
"forest-express": "8.0.5",
3030
"http-errors": "1.7.2",
3131
"lodash": "4.17.21",
3232
"moment": "2.24.0",

yarn.lock

Lines changed: 28 additions & 28 deletions
Original file line numberDiff line numberDiff line change
@@ -2675,9 +2675,9 @@ cache-base@^1.0.1:
26752675
unset-value "^1.0.0"
26762676

26772677
cacheable-lookup@^5.0.3:
2678-
version "5.0.3"
2679-
resolved "https://registry.yarnpkg.com/cacheable-lookup/-/cacheable-lookup-5.0.3.tgz#049fdc59dffdd4fc285e8f4f82936591bd59fec3"
2680-
integrity sha512-W+JBqF9SWe18A72XFzN/V/CULFzPm7sBXzzR6ekkE+3tLG72wFZrBiBZhrZuDoYexop4PHJVdFAKb/Nj9+tm9w==
2678+
version "5.0.4"
2679+
resolved "https://registry.yarnpkg.com/cacheable-lookup/-/cacheable-lookup-5.0.4.tgz#5a6b865b2c44357be3d5ebc2a467b032719a7005"
2680+
integrity sha512-2/kNscPhpcxrOigMZzbiWF7dz8ilhb/nIHU3EyZiXWXpeq/au8qJ8VhdftMkty3n7Gj6HIGalQG8oiBNB3AJgA==
26812681

26822682
cacheable-request@^7.0.1:
26832683
version "7.0.1"
@@ -3566,9 +3566,9 @@ defaults@^1.0.3:
35663566
clone "^1.0.2"
35673567

35683568
defer-to-connect@^2.0.0:
3569-
version "2.0.0"
3570-
resolved "https://registry.yarnpkg.com/defer-to-connect/-/defer-to-connect-2.0.0.tgz#83d6b199db041593ac84d781b5222308ccf4c2c1"
3571-
integrity sha512-bYL2d05vOSf1JEZNx5vSAtPuBMkX8K9EUutg7zlKvTqKXHt7RhWJFbmd7qakVuf13i+IkGmp6FwSsONOf6VYIg==
3569+
version "2.0.1"
3570+
resolved "https://registry.yarnpkg.com/defer-to-connect/-/defer-to-connect-2.0.1.tgz#8016bdb4143e4632b77a3449c6236277de520587"
3571+
integrity sha512-4tvttepXG1VaYGrRibk5EwJd1t4udunSOVMdLSAL6mId1ix438oPwPZMALY41FCijukO1L0twNcGsdzS7dHgDg==
35723572

35733573
define-properties@^1.1.2, define-properties@^1.1.3:
35743574
version "1.1.3"
@@ -4478,10 +4478,10 @@ for-in@^1.0.2:
44784478
resolved "https://registry.yarnpkg.com/for-in/-/for-in-1.0.2.tgz#81068d295a8142ec0ac726c6e2200c30fb6d5e80"
44794479
integrity sha1-gQaNKVqBQuwKxybG4iAMMPttXoA=
44804480

4481-
4482-
version "8.0.4"
4483-
resolved "https://registry.yarnpkg.com/forest-express/-/forest-express-8.0.4.tgz#5cbc24b3cd7b5d76f1ac9141b4b6b34a78a758a8"
4484-
integrity sha512-kkXVhWp8eltiX6F35FNlJSrOKsbbdc+vRsKaC/rRmRRwG/CAnHbAVm47BRSh9yKVu7GU1mauo/99GJJRv/O+tA==
4481+
4482+
version "8.0.5"
4483+
resolved "https://registry.yarnpkg.com/forest-express/-/forest-express-8.0.5.tgz#f727ca8a19900fd78e963144f3c774a56533bf45"
4484+
integrity sha512-UGs9ceHpUczNp/pX5CFSNbbwnzoy7AzIrK6lKSsFAFKPiHtMD9ZtrusQZ6qpEQBY0hUaGLBGKwiHmOOpf1VcKg==
44854485
dependencies:
44864486
"@babel/runtime" "7.10.1"
44874487
base32-encode "1.1.1"
@@ -4836,9 +4836,9 @@ globby@^11.0.0:
48364836
slash "^3.0.0"
48374837

48384838
got@^11.6.2:
4839-
version "11.8.0"
4840-
resolved "https://registry.yarnpkg.com/got/-/got-11.8.0.tgz#be0920c3586b07fd94add3b5b27cb28f49e6545f"
4841-
integrity sha512-k9noyoIIY9EejuhaBNLyZ31D5328LeqnyPNXJQb2XlJZcKakLqN5m6O/ikhq/0lw56kUYS54fVm+D1x57YC9oQ==
4839+
version "11.8.2"
4840+
resolved "https://registry.yarnpkg.com/got/-/got-11.8.2.tgz#7abb3959ea28c31f3576f1576c1effce23f33599"
4841+
integrity sha512-D0QywKgIe30ODs+fm8wMZiAcZjypcCodPNuMz5H9Mny7RJ+IjJ10BdmGW7OM7fHXP+O7r6ZwapQ/YQmMSvB0UQ==
48424842
dependencies:
48434843
"@sindresorhus/is" "^4.0.0"
48444844
"@szmarczak/http-timer" "^4.0.5"
@@ -5065,9 +5065,9 @@ http-signature@~1.2.0:
50655065
sshpk "^1.7.0"
50665066

50675067
http2-wrapper@^1.0.0-beta.5.2:
5068-
version "1.0.0-beta.5.2"
5069-
resolved "https://registry.yarnpkg.com/http2-wrapper/-/http2-wrapper-1.0.0-beta.5.2.tgz#8b923deb90144aea65cf834b016a340fc98556f3"
5070-
integrity sha512-xYz9goEyBnC8XwXDTuC/MZ6t+MrKVQZOk4s7+PaDkwIsQd8IwqvM+0M6bA/2lvG8GHXcPdf+MejTUeO2LCPCeQ==
5068+
version "1.0.3"
5069+
resolved "https://registry.yarnpkg.com/http2-wrapper/-/http2-wrapper-1.0.3.tgz#b8f55e0c1f25d4ebd08b3b0c2c079f9590800b3d"
5070+
integrity sha512-V+23sDMr12Wnz7iTcDeJr3O6AIxlnvT/bmaAAAP/Xda35C90p9599p0F1eHR/N1KILWSoWVAiOMFjBBXaXSMxg==
50715071
dependencies:
50725072
quick-lru "^5.1.1"
50735073
resolve-alpn "^1.0.0"
@@ -6209,9 +6209,9 @@ [email protected]:
62096209
jest-cli "^26.0.1"
62106210

62116211
jose@^2.0.2:
6212-
version "2.0.3"
6213-
resolved "https://registry.yarnpkg.com/jose/-/jose-2.0.3.tgz#9c931ab3e13e2d16a5b9e6183e60b2fc40a8e1b8"
6214-
integrity sha512-L+RlDgjO0Tk+Ki6/5IXCSEnmJCV8iMFZoBuEgu2vPQJJ4zfG/k3CAqZUMKDYNRHIDyy0QidJpOvX0NgpsAqFlw==
6212+
version "2.0.4"
6213+
resolved "https://registry.yarnpkg.com/jose/-/jose-2.0.4.tgz#7838354d28f64466db9fc7f275aa8a96db656f37"
6214+
integrity sha512-EArN9f6aq1LT/fIGGsfghOnNXn4noD+3dG5lL/ljY3LcRjw1u9w+4ahu/4ahsN6N0kRLyyW6zqdoYk7LNx3+YQ==
62156215
dependencies:
62166216
"@panva/asn1.js" "^1.0.0"
62176217

@@ -7813,9 +7813,9 @@ object-copy@^0.1.0:
78137813
kind-of "^3.0.3"
78147814

78157815
object-hash@^2.0.1:
7816-
version "2.0.3"
7817-
resolved "https://registry.yarnpkg.com/object-hash/-/object-hash-2.0.3.tgz#d12db044e03cd2ca3d77c0570d87225b02e1e6ea"
7818-
integrity sha512-JPKn0GMu+Fa3zt3Bmr66JhokJU5BaNBIh4ZeTlaCBzrBsOeXzwcKKAK1tbLiPKgvwmPXsDvvLHoWh5Bm7ofIYg==
7816+
version "2.1.1"
7817+
resolved "https://registry.yarnpkg.com/object-hash/-/object-hash-2.1.1.tgz#9447d0279b4fcf80cff3259bf66a1dc73afabe09"
7818+
integrity sha512-VOJmgmS+7wvXf8CjbQmimtCnEx3IAoLxI3fp2fbWehxrWBcAQFbk+vcwb6vzR0VZv/eNCJ/27j151ZTwqW/JeQ==
78197819

78207820
object-inspect@^1.7.0:
78217821
version "1.7.0"
@@ -7880,9 +7880,9 @@ object.values@^1.1.0:
78807880
has "^1.0.3"
78817881

78827882
oidc-token-hash@^5.0.0:
7883-
version "5.0.0"
7884-
resolved "https://registry.yarnpkg.com/oidc-token-hash/-/oidc-token-hash-5.0.0.tgz#acdfb1f4310f58e64d5d74a4e8671a426986e888"
7885-
integrity sha512-8Yr4CZSv+Tn8ZkN3iN2i2w2G92mUKClp4z7EGUfdsERiYSbj7P4i/NHm72ft+aUdsiFx9UdIPSTwbyzQ6C4URg==
7883+
version "5.0.1"
7884+
resolved "https://registry.yarnpkg.com/oidc-token-hash/-/oidc-token-hash-5.0.1.tgz#ae6beec3ec20f0fd885e5400d175191d6e2f10c6"
7885+
integrity sha512-EvoOtz6FIEBzE+9q253HsLCVRiK/0doEJ2HCvvqMQb3dHZrP3WlJKYtJ55CRTw4jmYomzH4wkPuCj/I3ZvpKxQ==
78867886

78877887
on-finished@~2.3.0:
78887888
version "2.3.0"
@@ -8019,9 +8019,9 @@ p-any@^3.0.0:
80198019
p-some "^5.0.0"
80208020

80218021
p-cancelable@^2.0.0:
8022-
version "2.0.0"
8023-
resolved "https://registry.yarnpkg.com/p-cancelable/-/p-cancelable-2.0.0.tgz#4a3740f5bdaf5ed5d7c3e34882c6fb5d6b266a6e"
8024-
integrity sha512-wvPXDmbMmu2ksjkB4Z3nZWTSkJEb9lqVdMaCKpZUGJG9TMiNp9XcbG3fn9fPKjem04fJMJnXoyFPk2FmgiaiNg==
8022+
version "2.1.0"
8023+
resolved "https://registry.yarnpkg.com/p-cancelable/-/p-cancelable-2.1.0.tgz#4d51c3b91f483d02a0d300765321fca393d758dd"
8024+
integrity sha512-HAZyB3ZodPo+BDpb4/Iu7Jv4P6cSazBz9ZM0ChhEXp70scx834aWCEjQRwgt41UzzejUAPdbqqONfRWTPYrPAQ==
80258025

80268026
p-defer@^1.0.0:
80278027
version "1.0.0"

0 commit comments

Comments
 (0)