stake-house / wagyu-key-gen

GNU General Public License v3.0
60 stars 42 forks source link

web3-utils < 4.2.1 high vulnerability #190

Open valefar-on-discord opened 3 months ago

valefar-on-discord commented 3 months ago

https://github.com/advisories/GHSA-87qp-7cw8-8q9c

% yarn npm audit
└─ web3-utils
   ├─ ID: 1096804
   ├─ Issue: web3-utils Prototype Pollution vulnerability
   ├─ URL: https://github.com/advisories/GHSA-87qp-7cw8-8q9c
   ├─ Severity: high
   ├─ Vulnerable Versions: <4.2.1
   │ 
   ├─ Tree Versions
   │  └─ 1.10.4
   │ 
   └─ Dependents
      └─ wagyukeygen@workspace:.