NethermindEth / Forta-Agents

GNU General Public License v3.0
104 stars 72 forks source link

[Snyk] Security upgrade forta-agent-tools from 1.0.27 to 2.2.2 #774

Open RCantu92 opened 4 weeks ago

RCantu92 commented 4 weeks ago

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

Changes included in this PR

Vulnerabilities that will be fixed

With an upgrade:
Severity Priority Score (*) Issue Breaking Change Exploit Maturity
high severity 701/1000
Why? Recently disclosed, Has a fix available, CVSS 8.3
Improper Verification of Cryptographic Signature
SNYK-JS-ELLIPTIC-8172694
Yes No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Commit messages
Package name: forta-agent-tools The new version differs by 100 commits.
  • c00c3dc Merge pull request #41 from NethermindEth/fix/remove_web3
  • b2eca93 chore: Bump package version
  • e34c1d1 fix: Remove dependency of web3 package
  • d4277ef Merge pull request #38 from NethermindEth/fix/get_logs
  • 28f0e60 chore: Bump package version
  • c136517 fix: Fix log filtering topics length check
  • 87b36e9 Merge pull request #37 from NethermindEth/fix/filtered_logs
  • a78050c chore: Bump package version
  • 67c1816 doc: Update README after deprecating addFilteredLogs and changing addLogs
  • 08f161b chore: Deprecate addFilteredLogs
  • 65caadf refac: Get array as parameter in addLogs
  • c799378 fix: Check if some filter fields are not undefined instead of truthy in getLogs mock
  • 13f48db fix: Filter by lowercase addresses in getLogs mock
  • ed87acd fix: Rename addLog to addLogs
  • 06b6a52 doc: Add spread operator to addLogs argument
  • 17723ac doc: Add addLogs to README documentation
  • 5d2beeb tests: Add unit tests for getLogs mock implementation
  • 843380b feat: Add addLogs & mock implementation for getLogs, fix addFilteredLogs
  • 9a9784c chore: Run audit fix
  • 7ec5ea3 Merge pull request #36 from NethermindEth/feat/network_manager
  • eb62c54 fix: Update NetworkManager example snippet in README
  • 79a7d0d chore: Bump package version
  • fd79981 doc: Add NetworkManager documentation
  • 7596d9a chore: Export NetworkManager
See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: 🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic


Learn how to fix vulnerabilities with free interactive lessons:

🦉 Learn about vulnerability in an interactive lesson of Snyk Learn.