dfinity / keysmith

Hierarchical Deterministic Key Derivation for the Internet Computer
MIT License
45 stars 22 forks source link

chore: update go-etherium #31

Closed roman-kashitsyn closed 2 years ago

roman-kashitsyn commented 2 years ago

This change bumps the version of go-etherium package to v1.10.12 because version 1.10.0 has a known vulnerability 1.

We also pin the version of go-bip39 to 1.1.0 (which we are already using) to avoid indirectly picking up a newer version that has a security flaw.