-
Notifications
You must be signed in to change notification settings - Fork 0
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[Snyk] Fix for 129 vulnerabilities #29
base: main
Are you sure you want to change the base?
Conversation
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-ELECTRON-7707760 - https://snyk.io/vuln/SNYK-JS-ELECTRON-8186838 - https://snyk.io/vuln/SNYK-JS-ELECTRON-8186889 - https://snyk.io/vuln/SNYK-JS-ELECTRON-8230426 - https://snyk.io/vuln/SNYK-JS-ELECTRON-8302877 - https://snyk.io/vuln/SNYK-JS-ELECTRON-8302879 - https://snyk.io/vuln/SNYK-JS-ELECTRON-8302881 - https://snyk.io/vuln/SNYK-JS-ELECTRON-8302883 - https://snyk.io/vuln/SNYK-JS-ELECTRON-8302885 - https://snyk.io/vuln/SNYK-JS-ELECTRON-8302887 - https://snyk.io/vuln/SNYK-JS-ELECTRON-8302889 - https://snyk.io/vuln/SNYK-JS-ELECTRON-8302891 - https://snyk.io/vuln/SNYK-JS-ELECTRON-8302893 - https://snyk.io/vuln/SNYK-JS-ELECTRON-8302895 - https://snyk.io/vuln/SNYK-JS-ELECTRON-8302897 - https://snyk.io/vuln/SNYK-JS-ELECTRON-8302899 - https://snyk.io/vuln/SNYK-JS-ELECTRON-8310517 - https://snyk.io/vuln/SNYK-JS-ELECTRON-8310519 - https://snyk.io/vuln/SNYK-JS-ELECTRON-8310521 - https://snyk.io/vuln/SNYK-JS-ELECTRON-8352921 - https://snyk.io/vuln/SNYK-JS-ELECTRON-8381010 - https://snyk.io/vuln/SNYK-JS-ELECTRON-8381013 - https://snyk.io/vuln/SNYK-JS-GOT-2932019 - https://snyk.io/vuln/SNYK-JS-INFLIGHT-6095116 - https://snyk.io/vuln/SNYK-JS-MICROMATCH-6838728 - https://snyk.io/vuln/SNYK-JS-VITE-6531286 - https://snyk.io/vuln/SNYK-JS-VITE-8022916 - https://snyk.io/vuln/SNYK-JS-VITE-8023174 - https://snyk.io/vuln/SNYK-JS-WS-7266574 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3014411 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3091122 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6179663 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3018192 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3150401 - https://snyk.io/vuln/SNYK-JS-ELECTRON-5923343 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6137744 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3039646 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3039648 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3043113 - https://snyk.io/vuln/SNYK-JS-ELECTRON-5880432 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6854260 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3252475 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3028028 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6146930 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6146932 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6613086 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2992453 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2994414 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3014407 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3160317 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3014409 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3057199 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3097832 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3111880 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3098879 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6253729 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6515650 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6515651 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6173171 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6261583 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6564965 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6146931 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6253728 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6515649 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6515652 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6579648 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6613084 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6613085 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7411376 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7411377 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7411378 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7411379 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7411381 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7411382 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7411383 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7411386 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7411387 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7411388 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7443353 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7443354 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7443355 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7443356 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7577919 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7577921 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7707753 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7707755 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7707756 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7707757 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7707758 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7707759 - https://snyk.io/vuln/SNYK-JS-ELECTRON-5885098 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6613087 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3111876 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3111881 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3111879 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6146929 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6226524 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7707754 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3370529 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3033159 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3033161 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3033934 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3370271 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3039650 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3097696 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3111878 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2978519 - https://snyk.io/vuln/SNYK-JS-CROSSSPAWN-8303230 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6043905 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6043907 - https://snyk.io/vuln/SNYK-JS-BRACES-6838727 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6476870 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6405830 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2978483 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6173170 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7411384 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7411385 - https://snyk.io/vuln/SNYK-JS-ELECTRON-5734243 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7411389 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3097698 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3237489 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6105391 - https://snyk.io/vuln/SNYK-JS-ELECTRON-7411390 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3097694 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6346758 - https://snyk.io/vuln/SNYK-JS-ELECTRON-6097142 - https://snyk.io/vuln/SNYK-JS-ELECTRON-3040396 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2977510 - https://snyk.io/vuln/SNYK-JS-ELECTRON-2977512
|
🚨 Potential security issues detected. Learn more about Socket for GitHub ↗︎ To accept the risk, merge this PR and you will not be notified again.
Next stepsWhat is a critical CVE?Contains a Critical Common Vulnerability and Exposure (CVE). Remove or replace dependencies that include known critical CVEs. Consumers can use dependency overrides or npm audit fix --force to remove vulnerable dependencies. Take a deeper look at the dependencyTake a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support [AT] socket [DOT] dev. Remove the packageIf you happen to install a dependency that Socket reports as Known Malware you should immediately remove it and select a different dependency. For other alert types, you may may wish to investigate alternative packages or consider if there are other ways to mitigate the specific risk posed by the dependency. Mark a package as acceptable riskTo ignore an alert, reply with a comment starting with
|
[Snyk] Fix for 129 vulnerabilities
🚨 Report Summary
For more details view the full report in OpenZeppelin Code Inspector |
Snyk has created this PR to fix 129 vulnerabilities in the npm dependencies of this project.
Snyk changed the following file(s):
package.json
Vulnerabilities that will be fixed with an upgrade:
SNYK-JS-ELECTRON-7707760
SNYK-JS-ELECTRON-8186838
SNYK-JS-ELECTRON-8186889
SNYK-JS-ELECTRON-8230426
SNYK-JS-ELECTRON-8302877
SNYK-JS-ELECTRON-8302879
SNYK-JS-ELECTRON-8302881
SNYK-JS-ELECTRON-8302883
SNYK-JS-ELECTRON-8302885
SNYK-JS-ELECTRON-8302887
SNYK-JS-ELECTRON-8302889
SNYK-JS-ELECTRON-8302891
SNYK-JS-ELECTRON-8302893
SNYK-JS-ELECTRON-8302895
SNYK-JS-ELECTRON-8302897
SNYK-JS-ELECTRON-8302899
SNYK-JS-ELECTRON-8310517
SNYK-JS-ELECTRON-8310519
SNYK-JS-ELECTRON-8310521
SNYK-JS-ELECTRON-8352921
SNYK-JS-ELECTRON-8381010
SNYK-JS-ELECTRON-8381013
SNYK-JS-GOT-2932019
SNYK-JS-INFLIGHT-6095116
SNYK-JS-MICROMATCH-6838728
SNYK-JS-VITE-6531286
SNYK-JS-VITE-8022916
SNYK-JS-VITE-8023174
SNYK-JS-WS-7266574
SNYK-JS-ELECTRON-3014411
SNYK-JS-ELECTRON-3091122
SNYK-JS-ELECTRON-6179663
SNYK-JS-ELECTRON-3018192
SNYK-JS-ELECTRON-3150401
SNYK-JS-ELECTRON-5923343
SNYK-JS-ELECTRON-6137744
SNYK-JS-ELECTRON-3039646
SNYK-JS-ELECTRON-3039648
SNYK-JS-ELECTRON-3043113
SNYK-JS-ELECTRON-5880432
SNYK-JS-ELECTRON-6854260
SNYK-JS-ELECTRON-3252475
SNYK-JS-ELECTRON-3028028
SNYK-JS-ELECTRON-6146930
SNYK-JS-ELECTRON-6146932
SNYK-JS-ELECTRON-6613086
SNYK-JS-ELECTRON-2992453
SNYK-JS-ELECTRON-2994414
SNYK-JS-ELECTRON-3014407
SNYK-JS-ELECTRON-3160317
SNYK-JS-ELECTRON-3014409
SNYK-JS-ELECTRON-3057199
SNYK-JS-ELECTRON-3097832
SNYK-JS-ELECTRON-3111880
SNYK-JS-ELECTRON-3098879
SNYK-JS-ELECTRON-6253729
SNYK-JS-ELECTRON-6515650
SNYK-JS-ELECTRON-6515651
SNYK-JS-ELECTRON-6173171
SNYK-JS-ELECTRON-6261583
SNYK-JS-ELECTRON-6564965
SNYK-JS-ELECTRON-6146931
SNYK-JS-ELECTRON-6253728
SNYK-JS-ELECTRON-6515649
SNYK-JS-ELECTRON-6515652
SNYK-JS-ELECTRON-6579648
SNYK-JS-ELECTRON-6613084
SNYK-JS-ELECTRON-6613085
SNYK-JS-ELECTRON-7411376
SNYK-JS-ELECTRON-7411377
SNYK-JS-ELECTRON-7411378
SNYK-JS-ELECTRON-7411379
SNYK-JS-ELECTRON-7411381
SNYK-JS-ELECTRON-7411382
SNYK-JS-ELECTRON-7411383
SNYK-JS-ELECTRON-7411386
SNYK-JS-ELECTRON-7411387
SNYK-JS-ELECTRON-7411388
SNYK-JS-ELECTRON-7443353
SNYK-JS-ELECTRON-7443354
SNYK-JS-ELECTRON-7443355
SNYK-JS-ELECTRON-7443356
SNYK-JS-ELECTRON-7577919
SNYK-JS-ELECTRON-7577921
SNYK-JS-ELECTRON-7707753
SNYK-JS-ELECTRON-7707755
SNYK-JS-ELECTRON-7707756
SNYK-JS-ELECTRON-7707757
SNYK-JS-ELECTRON-7707758
SNYK-JS-ELECTRON-7707759
SNYK-JS-ELECTRON-5885098
SNYK-JS-ELECTRON-6613087
SNYK-JS-ELECTRON-3111876
SNYK-JS-ELECTRON-3111881
SNYK-JS-ELECTRON-3111879
SNYK-JS-ELECTRON-6146929
SNYK-JS-ELECTRON-6226524
SNYK-JS-ELECTRON-7707754
SNYK-JS-ELECTRON-3370529
SNYK-JS-ELECTRON-3033159
SNYK-JS-ELECTRON-3033161
SNYK-JS-ELECTRON-3033934
SNYK-JS-ELECTRON-3370271
SNYK-JS-ELECTRON-3039650
SNYK-JS-ELECTRON-3097696
SNYK-JS-ELECTRON-3111878
SNYK-JS-ELECTRON-2978519
SNYK-JS-CROSSSPAWN-8303230
SNYK-JS-ELECTRON-6043905
SNYK-JS-ELECTRON-6043907
SNYK-JS-BRACES-6838727
SNYK-JS-ELECTRON-6476870
SNYK-JS-ELECTRON-6405830
SNYK-JS-ELECTRON-2978483
SNYK-JS-ELECTRON-6173170
SNYK-JS-ELECTRON-7411384
SNYK-JS-ELECTRON-7411385
SNYK-JS-ELECTRON-5734243
SNYK-JS-ELECTRON-7411389
SNYK-JS-ELECTRON-3097698
SNYK-JS-ELECTRON-3237489
SNYK-JS-ELECTRON-6105391
SNYK-JS-ELECTRON-7411390
SNYK-JS-ELECTRON-3097694
SNYK-JS-ELECTRON-6346758
SNYK-JS-ELECTRON-6097142
SNYK-JS-ELECTRON-3040396
SNYK-JS-ELECTRON-2977510
SNYK-JS-ELECTRON-2977512
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Uncontrolled resource consumption
🦉 Improper Input Validation
🦉 Access Control Bypass
🦉 More lessons are available in Snyk Learn