Open chloe-tan opened 3 months ago
New and removed dependencies detected. Learn more about Socket for GitHub ↗︎
Package | New capabilities | Transitives | Size | Publisher |
---|---|---|---|---|
npm/@uniswap/v3-staker@1.0.2 | None | +1 |
1.45 MB | noahwz |
🚮 Removed packages: npm/@uniswap/v3-staker@1.0.0
Issue
Current v3-staker version (1.0.0) depends on a vulnerable version of
@openzeppelin/contracts
. Sample dependabot alerts:Changelog
@uniswap/v3-staker
dependency tov1.0.2
Linked issues
https://github.com/Uniswap/v3-sdk/issues/195