Uh oh!
There was an error while loading. Please reload this page.
Bump several MetaMask dependencies - #1964
Conversation
Mrtenz
commented
Nov 15, 2023
@metamaskbot update-pr |
b3f294c to
8f76ec6CompareUpdated dependencies detected. Learn more about Socket for GitHub ↗︎
|
@metamask/utils, @metamask/json-rpc-engine, @metamask/permission-controller@metamask/utils, @metamask/json-rpc-engine, @metamask/permission-controller@metamask/utils, @metamask/json-rpc-engine, @metamask/permission-controller, @metamask/providers3c39910 to
c8f729cCompare👍 Dependency issues cleared. Learn more about Socket for GitHub ↗︎ This PR previously contained dependency changes with security issues that have been resolved, removed, or ignored. Ignoring: Next stepsTake a deeper look at the dependencyTake a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support [AT] socket [DOT] dev. Remove the packageIf you happen to install a dependency that Socket reports as Known Malware you should immediately remove it and select a different dependency. For other alert types, you may may wish to investigate alternative packages or consider if there are other ways to mitigate the specific risk posed by the dependency. Mark a package as acceptable riskTo ignore an alert, reply with a comment starting with |
Codecov ReportAttention:
Additional details and impacted files@@ Coverage Diff @@## main #1964 +/- ##
==========================================
- Coverage 96.03% 95.98% -0.05%
==========================================
Files 263 263 Lines 6127 6127 Branches 989 989 ==========================================
- Hits 5884 5881 -3 - Misses 243 246 +3 ☔ View full report in Codecov by Sentry. |
@metamask/utils, @metamask/json-rpc-engine, @metamask/permission-controller, @metamask/providersMrtenz
commented
Nov 16, 2023
@SocketSecurity ignore extension-port-stream@3.0.0 These are ours. |
Uh oh!
There was an error while loading. Please reload this page.
Bumps [@metamask/utils](https://github.com/MetaMask/utils) from 8.1.0 to 8.2.1. - [Release notes](https://github.com/MetaMask/utils/releases) - [Changelog](https://github.com/MetaMask/utils/blob/main/CHANGELOG.md) - [Commits](MetaMask/utils@v8.1.0...v8.2.1) --- updated-dependencies: - dependency-name: "@metamask/utils" dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <support@github.com>
…resolve type issues
e0b2495 to
b8f37b8Compare
FrederikBolding
left a comment
There was a problem hiding this comment.
Can we remove @types/readable-stream?
Uh oh!
There was an error while loading. Please reload this page.
Co-authored-by: Frederik Bolding <frederik.bolding@gmail.com>
Mrtenz
commented
Nov 16, 2023
Doing that results in type errors. |
This bumps several MetaMask packages to the latest version.
Changelog
@metamask/utilsfrom^8.1.0to^8.2.1.@metamask/json-rpc-enginefrom^7.1.1to^7.3.0.@metamask/object-multiplexfrom^1.2.0to^2.0.0.@metamask/permission-controllerfrom^5.0.0to^5.0.1.@metamask/providersfrom^13.0.0to^14.0.1.