Skip to content

Update dependencies #131

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Merged
merged 6 commits into from
Jul 17, 2025
Merged

Update dependencies #131

merged 6 commits into from
Jul 17, 2025

Conversation

MoMannn
Copy link
Contributor

@MoMannn MoMannn commented Jul 15, 2025

Currently dependencies are out of date which cause security problems. Since this snap is also used with gator snap the security problems get propagated through the dependency tree.

This PR updates all the dependency to the latest version (except eslint and zod dependencies) and fixates versions in package.json.

Eslint dependencies should be addressed in a separate PR since they result in changes in the whole code base - style wise.

@MoMannn MoMannn requested a review from a team as a code owner July 15, 2025 14:33
@MoMannn MoMannn self-assigned this Jul 15, 2025
@MoMannn MoMannn requested a review from jeffsmale90 July 15, 2025 14:34
Copy link

socket-security bot commented Jul 15, 2025

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Updated@​swc/​core-darwin-arm64@​1.3.78 ⏵ 1.11.311001003797100
Updated@​swc/​core-darwin-x64@​1.3.78 ⏵ 1.11.311001003797100
Updated@​swc/​core-linux-arm-gnueabihf@​1.3.78 ⏵ 1.11.311001003797100
Updated@​swc/​core-linux-arm64-gnu@​1.3.78 ⏵ 1.11.311001003797100
Updated@​swc/​core-linux-arm64-musl@​1.3.78 ⏵ 1.11.311001003797100
Updated@​swc/​core-linux-x64-gnu@​1.3.78 ⏵ 1.11.311001003797100
Updated@​swc/​core-linux-x64-musl@​1.3.78 ⏵ 1.11.311001003797100
Updated@​swc/​core-win32-arm64-msvc@​1.3.78 ⏵ 1.11.311001003797100
Updated@​swc/​core-win32-ia32-msvc@​1.3.78 ⏵ 1.11.311001003797100
Updated@​swc/​core-win32-x64-msvc@​1.3.78 ⏵ 1.11.311001003797100
Updated@​lavamoat/​preinstall-always-fail@​2.1.0 ⏵ 2.1.1811004587100
Addedis-negative-zero@​2.0.3671008351100
Updatedarray.prototype.findlastindex@​1.2.5 ⏵ 1.2.6661009252100
Updatedwhich-typed-array@​1.1.18 ⏵ 1.1.196610090 +153100
Updatedarray-includes@​3.1.8 ⏵ 3.1.96610010053100
Updated@​pkgr/​core@​0.1.1 ⏵ 0.1.2100 +110062 +188100
Updated@​babel/​plugin-syntax-jsx@​7.25.9 ⏵ 7.27.11001006392100
Addedis-promise@​4.0.01001006478100
Updated@​babel/​plugin-syntax-import-attributes@​7.26.0 ⏵ 7.27.11001006593100
Updatedeslint-module-utils@​2.12.0 ⏵ 2.12.11001006789100
Updatedcookie-signature@​1.0.6 ⏵ 1.2.210010068 -781100
Updated@​babel/​plugin-syntax-typescript@​7.25.9 ⏵ 7.27.11001006892100
Updated@​babel/​helper-plugin-utils@​7.26.5 ⏵ 7.27.11001006992100
Updated@​babel/​helper-validator-option@​7.25.9 ⏵ 7.27.11001006992100
Updated@​vue/​compiler-ssr@​3.5.13 ⏵ 3.5.171001007094100
Updated@​types/​babel__generator@​7.6.8 ⏵ 7.27.0100 +110070 +177100
Updated@​babel/​helper-validator-identifier@​7.25.9 ⏵ 7.27.11001007192100
Added@​swc/​types@​0.1.231001007189100
Updated@​vue/​shared@​3.5.13 ⏵ 3.5.171001007194100
Updated@​babel/​code-frame@​7.26.2 ⏵ 7.27.11001007293100
Updated@​types/​bn.js@​5.1.6 ⏵ 5.2.01001007281100
Updated@​babel/​helper-string-parser@​7.25.9 ⏵ 7.27.11001007292100
Updated@​types/​semver@​7.5.8 ⏵ 7.7.01001007277100
See 115 more rows in the dashboard

View full report

Copy link

socket-security bot commented Jul 15, 2025

All alerts resolved. Learn more about Socket for GitHub.

This PR previously contained dependency changes with security issues that have been resolved, removed, or ignored.

Ignoring alerts on:

View full report

Copy link

cursor bot commented Jul 15, 2025

🚨 BugBot couldn't run

Something went wrong. Try again by commenting "bugbot run", or contact support (requestId: serverGenReqId_b6b48689-6064-473f-a16d-cbce8c1a9d05).

Copy link
Contributor

@mirceanis mirceanis left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

looks good

@mirceanis
Copy link
Contributor

mirceanis commented Jul 17, 2025

@SocketSecurity ignore @metamask/[email protected] [email protected] [email protected] [email protected] [email protected] [email protected] [email protected] [email protected] [email protected] [email protected] [email protected]

@mirceanis mirceanis merged commit aa0b1d4 into main Jul 17, 2025
15 checks passed
@mirceanis mirceanis deleted the chore/updateDependencies branch July 17, 2025 08:40
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants