Closed hyperledger-bot closed 10 months ago
Merging #1583 (22e2cfb) into main (69e9d20) will increase coverage by
0.00%
. The diff coverage isn/a
.
@@ Coverage Diff @@
## main #1583 +/- ##
=======================================
Coverage 87.56% 87.57%
=======================================
Files 133 133
Lines 64217 64217
=======================================
+ Hits 56233 56236 +3
+ Misses 7984 7981 -3
This PR was automatically created by Snyk using the credentials of a real user.
Snyk has created this PR to upgrade @solana/spl-token from 0.2.0 to 0.3.8.
:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.- The recommended version is **10 versions** ahead of your current version. - The recommended version was released **5 months ago**, on 2023-06-01. The recommended version fixes: Severity | Issue | PriorityScore (*) | Exploit Maturity | :-------------------------:|:-------------------------|-------------------------|:------------------------- | Cross-site Request Forgery (CSRF)
[SNYK-JS-AXIOS-6032459](https://snyk.io/vuln/SNYK-JS-AXIOS-6032459) | **534/1000**
**Why?** Proof of Concept exploit, Recently disclosed, CVSS 7.1 | Proof of Concept (*) Note that the real score may have changed since the PR was raised.
Release notes
Package name: @solana/spl-token
What's new
Miscellaneous Tasks
Release
Commit messages
Package name: @solana/spl-token
**Note:** *You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.* For more information: 🧐 [View latest project report](https://app.snyk.io/org/hyperledger-bot/project/ccb2ab6a-ba20-4d58-979d-b59e66a8e113?utm_source=github&utm_medium=referral&page=upgrade-pr) 🛠 [Adjust upgrade PR settings](https://app.snyk.io/org/hyperledger-bot/project/ccb2ab6a-ba20-4d58-979d-b59e66a8e113/settings/integration?utm_source=github&utm_medium=referral&page=upgrade-pr) 🔕 [Ignore this dependency or unsubscribe from future upgrade PRs](https://app.snyk.io/org/hyperledger-bot/project/ccb2ab6a-ba20-4d58-979d-b59e66a8e113/settings/integration?pkg=@solana/spl-token&utm_source=github&utm_medium=referral&page=upgrade-pr#auto-dep-upgrades)