swarmcity / SwarmCityDapp

Swarm City dApp FrontEnd
MIT License
28 stars 10 forks source link

[Snyk] Fix for 1 vulnerabilities #901

Open snyk-bot opened 4 years ago

snyk-bot commented 4 years ago

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

Changes included in this PR

Vulnerabilities that will be fixed

With an upgrade:
Severity Issue Breaking Change
medium severity Timing Attack
SNYK-JS-ELLIPTIC-511941
No
Commit messages
Package name: eth-crypto The new version differs by 204 commits.
  • 175261d 1.5.1
  • e8fb89a Update dependency ts-node to v8.6.0
  • 8002fb2 Update dependency terser-webpack-plugin to v2.3.2
  • 82ba1f1 Update dependency karma-firefox-launcher to v1.3.0
  • 03c5793 Update dependency ganache-cli to v6.8.1
  • f8cf8d0 Update dependency mocha to v7
  • 0a07fea Update dependency ethers to v4.0.42
  • f779f7f Update dependency @types/bn.js to v4.11.6
  • d79d1ad Update dependency bn.js to v5.1.1
  • d75e1d7 Update dependency bn.js to v5.1.0
  • c7dd943 Update dependency ethers to v4.0.41
  • 7b670c1 Update dependency typescript to v3.7.4
  • 1682b17 Update dependency eslint to v6.8.0
  • fb7976a Update dependency ethereumjs-tx to v2.1.2
  • 8c269dd Update dependency secp256k1 to v3.8.0
  • 01fbc3d Update dependency concurrently to v5.0.2
  • 636b001 Update dependency terser-webpack-plugin to v2.3.1
  • ba51452 Update dependency terser-webpack-plugin to v2.3.0
  • 665130b Update dependency terser-webpack-plugin to v2.2.3
  • 0498064 Update dependency concurrently to v5.0.1
  • 010177f Update dependency terser-webpack-plugin to v2.2.2
  • 22cc4cb Update dependency typescript to v3.7.3
  • 20a3242 Update dependency eslint to v6.7.2
  • 2068e50 Update dependency ts-node to v8.5.4
See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:

🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic