ava-labs / avax-js-cli-tools

A collection of helpful scripts for the Avalanche network.
19 stars 16 forks source link

[Snyk] Upgrade bip39 from 3.0.2 to 3.0.4 #11

Open snyk-bot opened 2 years ago

snyk-bot commented 2 years ago

Snyk has created this PR to upgrade bip39 from 3.0.2 to 3.0.4.

merge advice :information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


Release notes
Package name: bip39 from bip39 GitHub release notes
Commit messages
Package name: bip39
  • 5faee2c Merge pull request #154 from bitcoinjs/version/bump
  • f88d0dd 3.0.4
  • 200c6a9 Merge pull request #153 from bitcoinjs/fix/typo
  • 1f83e56 Remove extra "explicitly"
  • 327a17b Merge pull request #151 from bitcoinjs/dependabot/npm_and_yarn/y18n-4.0.1
  • 97ffddb Bump y18n from 4.0.0 to 4.0.1
  • d8ea080 Merge pull request #146 from gastonponti/master
  • 808944c Add Portuguese language
  • fca349d Merge pull request #145 from bitcoinjs/bumpVer
  • 1c1d393 3.0.3
  • 98eee2d Merge pull request #144 from hladik-dan/master
  • 8d97116 Add Czech language
  • 049f88c Merge pull request #141 from bitcoinjs/dependabot/npm_and_yarn/node-fetch-2.6.1
  • 7d53adf Bump node-fetch from 1.7.3 to 2.6.1
  • 82643db Merge pull request #140 from bitcoinjs/dependabot/npm_and_yarn/yargs-parser-18.1.3
  • dc63144 Bump yargs-parser from 18.1.1 to 18.1.3
  • 4314d22 Merge pull request #139 from bitcoinjs/codeStyle
  • 1d063b6 Fix coding style: curly + Promise handling
  • 8461e83 Merge pull request #137 from bitcoinjs/dependabot/npm_and_yarn/lodash-4.17.19
  • 36aa9de Bump lodash from 4.17.15 to 4.17.19
  • 0a0e74e Fix dependencies for minimalist vuln (and update tslint format)
  • 58843d4 Merge pull request #128 from bitcoinjs/dependabot/npm_and_yarn/handlebars-4.5.3
  • efb65cd Bump handlebars from 4.1.2 to 4.5.3
  • 90a2122 Merge pull request #125 from bitcoinjs/fixAudit
Compare

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs