jonhenshaw / Cointracker

Open-Source mobile app for tracking cryptocurrency market data
GNU General Public License v3.0
2 stars 6 forks source link

Fix dependabot alerts #11

Open jonhenshaw opened 2 years ago

jonhenshaw commented 2 years ago

https://github.com/jonhenshaw/Cointracker/security/dependabot

Guzzler commented 2 years ago

Would like to take a crack at this as well if possible @jonhenshaw. Do you want to just add the alerts? or is there something wrong with them currently? dont seem to have access to that page

jonhenshaw commented 2 years ago

Would like to take a crack at this as well if possible @jonhenshaw. Do you want to just add the alerts? or is there something wrong with them currently? dont seem to have access to that page

Absolutely! Oh right I guess you can't see them. Does this link work? https://github.com/jonhenshaw/Cointracker/security/dependabot

Basically these packages need to be updated. I tried updating them myself but was getting some errors building afterwards so I postponed making a fix.

image

Guzzler commented 2 years ago

I can upgrade these packages to the latest ones but unfortunately still can't see that page so don't know the exact version blip. Is there a way to add me as a contributor or change the settings maybe?

jonhenshaw commented 2 years ago

I can upgrade these packages to the latest ones but unfortunately still can't see that page so don't know the exact version blip. Is there a way to add me as a contributor or change the settings maybe?

I added you as a contributor. I'm not 100% sure how to make them viewable to non-admins though.

Guzzler commented 2 years ago

yeah its not yet viewable no worries. I'll try to update the packages myself by reading up on the recent changes.

jonhenshaw commented 2 years ago

@Guzzler You should just be able to update all of them to the latest versions. You don't need to go through all of that.