NethermindEth / Forta-Agents

GNU General Public License v3.0
104 stars 72 forks source link

[Snyk] Security upgrade forta-agent from 0.0.11 to 0.0.26 #796

Open RCantu92 opened 4 weeks ago

RCantu92 commented 4 weeks ago

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

Changes included in this PR

Vulnerabilities that will be fixed

With an upgrade:
Severity Priority Score (*) Issue Breaking Change Exploit Maturity
high severity 701/1000
Why? Recently disclosed, Has a fix available, CVSS 8.3
Improper Verification of Cryptographic Signature
SNYK-JS-ELLIPTIC-8172694
No No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Commit messages
Package name: forta-agent The new version differs by 122 commits.
  • efa1ce9 version bump 0.0.26
  • bff9410 Merge pull request #83 from forta-protocol/switch-to-ethers
  • e605b09 update package-lock.json
  • 9b28fc3 add tests
  • 6b15c10 fix tests
  • d626db7 saving wip
  • 6a00262 version bump 0.0.25
  • e8c6e3f Merge pull request #82 from forta-protocol/limit-starter-project-alerts
  • b536d63 limit starter project alerts
  • 1935cbd saving more wip
  • da82bcb saving wip
  • 7bda827 Merge pull request #81 from forta-protocol/push-command
  • bd09ea7 cli push command
  • eec16a9 version bump js v0.0.24
  • 269b0bd Merge pull request #79 from forta-protocol/add-keyfile-command
  • e5715b4 add keyfile command
  • 4c1b784 Merge pull request #78 from forta-protocol/add-repository-to-manifest
  • 1a955ca add repository to manifest
  • 2f1f161 version bump js v0.0.23
  • 7486d4f Merge pull request #77 from forta-protocol/polygon
  • c51e848 minor cleanup; fix tests
  • 0ae733e polygon transition
  • ae99dd9 version bump js 0.0.22; python 0.0.7
  • 48e6f65 Merge pull request #75 from forta-protocol/add-agent-enable-disable-commands
See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: 🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic


Learn how to fix vulnerabilities with free interactive lessons:

🦉 Learn about vulnerability in an interactive lesson of Snyk Learn.