OpenZeppelin / contracts-wizard

Interactive smart contract generator based on OpenZeppelin Contracts.
https://wizard.openzeppelin.com
MIT License
245 stars 135 forks source link

Update lockfile #360

Closed renovate[bot] closed 3 months ago

renovate[bot] commented 3 months ago

Mend Renovate

This PR contains the following updates:

Update Change
lockFileMaintenance All locks refreshed

🔧 This Pull Request updates lock files to use the latest dependency versions.


Configuration

📅 Schedule: Branch creation - "before 4am on the first day of the month" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.



This PR has been generated by Mend Renovate. View repository job log here.

socket-security[bot] commented 3 months ago

New and removed dependencies detected. Learn more about Socket for GitHub ↗︎

Package New capabilities Transitives Size Publisher
npm/@babel/code-frame@7.24.7 environment +3 109 kB nicolo-ribaudo
npm/@noble/curves@1.4.0 None 0 1.39 MB paulmillr
npm/@nomicfoundation/edr-darwin-arm64@0.4.0 None 0 12.9 MB nomic-foundation-publisher
npm/@nomicfoundation/edr-darwin-x64@0.4.0 None 0 13.7 MB nomic-foundation-publisher
npm/@nomicfoundation/edr-linux-arm64-gnu@0.4.0 None 0 18.5 MB nomic-foundation-publisher
npm/@nomicfoundation/edr-linux-arm64-musl@0.4.0 None 0 18.4 MB nomic-foundation-publisher
npm/@nomicfoundation/edr-linux-x64-gnu@0.4.0 None 0 20.6 MB nomic-foundation-publisher
npm/@nomicfoundation/edr-linux-x64-musl@0.4.0 None 0 20.6 MB nomic-foundation-publisher
npm/@nomicfoundation/edr-win32-x64-msvc@0.4.0 None 0 14.9 MB nomic-foundation-publisher
npm/@nomicfoundation/edr@0.4.0 filesystem, shell 0 126 kB nomic-foundation-publisher
npm/@nomicfoundation/solidity-analyzer-darwin-arm64@0.1.2 None 0 0 B
npm/@nomicfoundation/solidity-analyzer-darwin-x64@0.1.2 None 0 0 B
npm/@nomicfoundation/solidity-analyzer-linux-arm64-gnu@0.1.2 None 0 0 B
npm/@nomicfoundation/solidity-analyzer-linux-arm64-musl@0.1.2 None 0 0 B
npm/@nomicfoundation/solidity-analyzer-linux-x64-gnu@0.1.2 None 0 0 B
npm/@nomicfoundation/solidity-analyzer-linux-x64-musl@0.1.2 None 0 0 B
npm/@nomicfoundation/solidity-analyzer-win32-x64-msvc@0.1.2 None 0 0 B
npm/@nomicfoundation/solidity-analyzer@0.1.2 None 0 0 B
npm/@rollup/plugin-replace@5.0.7 None 0 26.4 kB shellscape
npm/@rollup/rollup-android-arm-eabi@4.18.0 None 0 1.7 MB lukastaegert
npm/@rollup/rollup-android-arm64@4.18.0 None 0 2.57 MB lukastaegert
npm/@rollup/rollup-darwin-arm64@4.18.0 None 0 2.49 MB lukastaegert
npm/@rollup/rollup-darwin-x64@4.18.0 None 0 2.64 MB lukastaegert
npm/@rollup/rollup-linux-arm-gnueabihf@4.18.0 None 0 2.53 MB lukastaegert
npm/@rollup/rollup-linux-arm-musleabihf@4.18.0 None 0 2.52 MB lukastaegert
npm/@rollup/rollup-linux-arm64-gnu@4.18.0 None 0 2.55 MB lukastaegert
npm/@rollup/rollup-linux-arm64-musl@4.18.0 None 0 2.43 MB lukastaegert
npm/@rollup/rollup-linux-powerpc64le-gnu@4.18.0 None 0 3.15 MB lukastaegert
npm/@rollup/rollup-linux-riscv64-gnu@4.18.0 None 0 2.64 MB lukastaegert
npm/@rollup/rollup-linux-s390x-gnu@4.18.0 None 0 4.33 MB lukastaegert
npm/@rollup/rollup-linux-x64-gnu@4.18.0 None 0 2.79 MB lukastaegert
npm/@rollup/rollup-linux-x64-musl@4.18.0 None 0 2.79 MB lukastaegert
npm/@rollup/rollup-win32-arm64-msvc@4.18.0 None 0 3.06 MB lukastaegert
npm/@rollup/rollup-win32-ia32-msvc@4.18.0 None 0 2.73 MB lukastaegert
npm/@rollup/rollup-win32-x64-msvc@4.18.0 None 0 3.6 MB lukastaegert
npm/@types/node@18.19.34 None +3 2.19 MB types
npm/@types/node@20.14.2 None +1 2.16 MB types
npm/@vercel/nft@0.26.5 environment, eval, unsafe Transitive: filesystem +5 389 kB vercel-release-bot
npm/ava@6.1.3 Transitive: environment, eval, filesystem, unsafe +68 2.62 MB novemberborn
npm/braces@3.0.3 None +3 93.9 kB jonschlinkert
npm/caniuse-lite@1.0.30001629 None 0 2.07 MB caniuse-lite
npm/cssnano-preset-default@7.0.2 None 0 25.3 kB ludovicofischer
npm/cssnano@7.0.2 None 0 7.33 kB ludovicofischer
npm/debug@4.3.5 environment +1 49.3 kB qix
npm/entities@4.5.0 None 0 413 kB feedic
npm/es6-promise@3.3.1 eval 0 173 kB stefanpenner
npm/estree-walker@2.0.2 None 0 50.2 kB rich_harris
npm/ethereum-cryptography@2.2.0 None 0 0 B
npm/eventemitter3@4.0.7 None 0 38 kB lpinca
npm/file-saver@2.0.5 None 0 36 kB endless
npm/filter-obj@1.1.0 None 0 2.95 kB sindresorhus
npm/find-up@3.0.0 Transitive: filesystem +5 28.8 kB sindresorhus
npm/glob@7.2.3 filesystem Transitive: environment +4 78.8 kB isaacs
npm/hardhat@2.22.5 environment, filesystem, network, shell Transitive: eval, unsafe +74 34.8 MB kanej
npm/highlight.js@11.9.0 None 0 5.29 MB highlightjs_bot
npm/highlightjs-cairo@0.4.0 None 0 10.5 kB ericglau
npm/highlightjs-solidity@2.0.6 None 0 42 kB haltman
npm/icss-utils@5.1.0 None 0 10 kB evilebottnawi
npm/immediate@3.0.6 None 0 14.6 kB cwmma
npm/is-arguments@1.1.1 None 0 28.8 kB ljharb
npm/is-generator-function@1.0.10 eval 0 31.9 kB ljharb
npm/jest-worker@26.6.2 environment, shell +1 71.3 kB simenb
npm/jiti@1.21.3 environment, filesystem, unsafe 0 1.95 MB pi0
npm/jszip@3.10.1 Transitive: environment +8 1.76 MB stuk
npm/kleur@4.1.5 None 0 20.3 kB lukeed
npm/lilconfig@3.1.1 filesystem 0 17.7 kB antonk52
npm/livereload-js@3.4.1 environment, eval 0 265 kB smhg
npm/livereload@0.9.3 filesystem, network +1 86.7 kB bphogan
npm/local-access@1.1.0 environment 0 4.96 kB lukeed
npm/magic-string@0.30.10 None 0 452 kB antfu
npm/mdn-data@2.0.30 None 0 602 kB schalkneethling
npm/micromatch@4.0.7 None 0 56.3 kB paulmillr
npm/min-indent@1.0.1 None 0 2.97 kB thejameskyle
npm/minipass@5.0.0 None 0 69.5 kB isaacs
npm/mri@1.2.0 None 0 13.3 kB lukeed
npm/mrmime@2.0.0 None 0 32.7 kB lukeed
npm/mz@2.7.0 filesystem, network, shell +2 24.3 kB jongleberry
npm/node-gyp-build@4.8.1 environment, filesystem 0 13.4 kB mafintosh
npm/normalize-url@6.1.0 None 0 21.2 kB sindresorhus
npm/object-hash@3.0.0 None 0 58.9 kB addaleax
npm/p-queue@6.6.2 None +2 41.4 kB sindresorhus
npm/path-browserify@1.0.1 None 0 54.3 kB goto-bus-stop
npm/path-key@2.0.1 None 0 3.02 kB sindresorhus
npm/picocolors@1.0.1 environment 0 5.15 kB alexeyraspopov
npm/pify@2.3.0 None 0 6.02 kB sindresorhus
npm/pirates@4.0.6 unsafe 0 13.5 kB danez
npm/postcss-calc@10.0.0 None 0 151 kB ludovicofischer
npm/postcss-colormin@7.0.0 None +3 68.1 kB ludovicofischer
npm/postcss-convert-values@7.0.0 None 0 14 kB ludovicofischer
npm/postcss-discard-comments@7.0.0 None 0 11.6 kB ludovicofischer
npm/postcss-discard-duplicates@7.0.0 None 0 7.04 kB ludovicofischer
npm/postcss-discard-empty@7.0.0 None 0 4.5 kB ludovicofischer
npm/postcss-discard-overridden@7.0.0 None 0 6.59 kB ludovicofischer
npm/postcss-import@15.1.0 Transitive: filesystem +1 35.1 kB ryanzim
npm/postcss-js@4.0.1 None 0 8.45 kB ai
npm/postcss-load-config@4.0.2 environment, unsafe +1 693 kB ai
npm/postcss-load-config@6.0.1 None 0 0 B
npm/postcss-merge-longhand@7.0.1 None +1 94.1 kB ludovicofischer
npm/postcss-merge-rules@7.0.1 None +3 82.9 kB ludovicofischer
npm/postcss-minify-font-values@7.0.0 None 0 18.6 kB ludovicofischer
npm/postcss-minify-gradients@7.0.0 None 0 10.3 kB ludovicofischer
npm/postcss-minify-params@7.0.0 None 0 8.14 kB ludovicofischer
npm/postcss-minify-selectors@7.0.1 None 0 10.1 kB ludovicofischer
npm/postcss-modules-extract-imports@3.1.0 None 0 11.2 kB evilebottnawi
npm/postcss-modules-local-by-default@4.0.5 None 0 22.5 kB evilebottnawi
npm/postcss-modules-scope@3.2.0 None 0 15 kB evilebottnawi
npm/postcss-modules-values@4.0.0 None 0 9.66 kB evilebottnawi
npm/postcss-nested@6.0.1 None 0 13.9 kB ai
npm/postcss-normalize-charset@7.0.0 None 0 4.55 kB ludovicofischer
npm/postcss-normalize-display-values@7.0.0 None 0 6.04 kB ludovicofischer
npm/postcss-normalize-positions@7.0.0 None 0 8.52 kB ludovicofischer
npm/postcss-normalize-repeat-style@7.0.0 None 0 7.27 kB ludovicofischer
npm/postcss-normalize-string@7.0.0 None 0 11.7 kB ludovicofischer
npm/postcss-normalize-timing-functions@7.0.0 None 0 6.51 kB ludovicofischer
npm/postcss-normalize-unicode@7.0.0 None 0 7.33 kB ludovicofischer
npm/postcss-normalize-url@7.0.0 None 0 11.1 kB ludovicofischer
npm/postcss-normalize-whitespace@7.0.0 None 0 6.02 kB ludovicofischer
npm/postcss-ordered-values@7.0.0 None 0 31.5 kB ludovicofischer
npm/postcss-reduce-initial@7.0.0 None +3 76 kB ludovicofischer
npm/postcss-reduce-transforms@7.0.0 None 0 9.2 kB ludovicofischer
npm/postcss-selector-parser@6.1.0 None +1 204 kB evilebottnawi
npm/postcss-svgo@7.0.1 Transitive: filesystem +1 1.5 MB ludovicofischer
npm/postcss-unique-selectors@7.0.1 None 0 4.98 kB ludovicofischer
npm/postcss-value-parser@4.2.0 None 0 27.2 kB evilebottnawi
npm/postcss@8.4.38 environment, filesystem +1 222 kB ai
npm/query-string@7.1.3 None +2 52.5 kB sindresorhus
npm/resolve.exports@2.0.2 None 0 23.9 kB lukeed
npm/resolve@1.22.8 environment, filesystem +2 185 kB ljharb
npm/rimraf@3.0.2 filesystem 0 17.3 kB isaacs
npm/rimraf@5.0.7 environment, filesystem Transitive: shell +24 3.7 MB isaacs
npm/rollup-plugin-livereload@2.0.5 environment, network, shell 0 14.4 kB thgh
npm/rollup-plugin-styles@4.0.0 environment, filesystem Transitive: network +53 4.64 MB anidetrix
npm/rollup-plugin-svelte@7.2.2 None 0 0 B
npm/rollup-plugin-terser@7.0.2 eval Transitive: environment, filesystem, shell +4 2.29 MB trysound
npm/rollup@2.79.1 environment, filesystem, unsafe +1 6.88 MB lukastaegert
npm/rollup@4.18.0 environment, filesystem +1 2.45 MB lukastaegert
npm/sade@1.8.1 None 0 31.5 kB lukeed
npm/sander@0.5.1 filesystem +2 219 kB rich_harris
npm/semiver@1.1.0 None 0 5.44 kB lukeed
npm/sirv-cli@2.0.2 environment, filesystem, network +3 54 kB lukeed
npm/sorcery@0.11.0 None 0 157 kB rich_harris
npm/source-map-js@1.2.0 None 0 140 kB 7rulnik
npm/string-width@3.1.0 None +2 44.4 kB sindresorhus
npm/strip-ansi@5.2.0 None +1 9.34 kB sindresorhus
npm/strip-indent@3.0.0 None 0 3.31 kB sindresorhus
npm/sucrase@3.35.0 Transitive: environment, filesystem, shell +15 3.01 MB alangpierce
npm/svelte-check@3.8.0 Transitive: filesystem, unsafe +4 8.98 MB svelte-language-tools-deploy
npm/svelte-preprocess@5.1.4 environment, filesystem 0 165 kB dummdidumm
npm/svelte@3.59.2 None 0 10.6 MB conduitry
npm/svelte@4.2.17 None +2 2.65 MB svelte-admin
npm/tailwindcss@3.4.4 environment, filesystem +2 5.64 MB adamwathan
npm/throat@4.1.0 None 0 7.91 kB forbeslindesay
npm/tippy.js@6.3.7 environment 0 2.07 MB atomiks
npm/typescript@4.9.5 None 0 66.8 MB typescript-bot
npm/util@0.12.5 environment 0 33.7 kB goto-bus-stop
npm/uuid@9.0.1 None 0 123 kB ctavan
npm/wsrun@5.2.4 environment, filesystem, shell Transitive: eval, unsafe +30 1.24 MB ivasilov
npm/yaml@1.10.2 environment 0 448 kB eemeli
npm/yargs-parser@13.1.2 environment 0 57.1 kB oss-bot

🚮 Removed packages: npm/@babel/code-frame@7.24.2, npm/@nomicfoundation/hardhat-toolbox@5.0.0, npm/@openzeppelin/hardhat-upgrades@3.1.1, npm/@rollup/plugin-replace@5.0.5, npm/@rollup/rollup-android-arm-eabi@4.17.2, npm/@rollup/rollup-android-arm64@4.17.2, npm/@rollup/rollup-darwin-arm64@4.17.2, npm/@rollup/rollup-darwin-x64@4.17.2, npm/@rollup/rollup-linux-arm-gnueabihf@4.17.2, npm/@rollup/rollup-linux-arm-musleabihf@4.17.2, npm/@rollup/rollup-linux-arm64-gnu@4.17.2, npm/@rollup/rollup-linux-arm64-musl@4.17.2, npm/@rollup/rollup-linux-powerpc64le-gnu@4.17.2, npm/@rollup/rollup-linux-riscv64-gnu@4.17.2, npm/@rollup/rollup-linux-s390x-gnu@4.17.2, npm/@rollup/rollup-linux-x64-gnu@4.17.2, npm/@rollup/rollup-linux-x64-musl@4.17.2, npm/@rollup/rollup-win32-arm64-msvc@4.17.2, npm/@rollup/rollup-win32-ia32-msvc@4.17.2, npm/@rollup/rollup-win32-x64-msvc@4.17.2, npm/@vercel/nft@0.26.4, npm/ava@6.1.2, npm/caniuse-lite@1.0.30001614, npm/cssnano-preset-default@7.0.1, npm/cssnano@7.0.1, npm/hardhat@2.22.3

View full report↗︎

socket-security[bot] commented 3 months ago

👍 Dependency issues cleared. Learn more about Socket for GitHub ↗︎

This PR previously contained dependency changes with security issues that have been resolved, removed, or ignored.

Ignoring: npm/svelte-preprocess@5.1.4

View full report↗︎

Next steps

Take a deeper look at the dependency

Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support [AT] socket [DOT] dev.

Remove the package

If you happen to install a dependency that Socket reports as Known Malware you should immediately remove it and select a different dependency. For other alert types, you may may wish to investigate alternative packages or consider if there are other ways to mitigate the specific risk posed by the dependency.

Mark a package as acceptable risk

To ignore an alert, reply with a comment starting with @SocketSecurity ignore followed by a space separated list of ecosystem/package-name@version specifiers. e.g. @SocketSecurity ignore npm/foo@1.0.0 or ignore all packages with @SocketSecurity ignore-all

ericglau commented 3 months ago

@SocketSecurity ignore npm/svelte-preprocess@5.1.4