Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

RED-112: Dependabot relayer/collector: web3-utils Prototype Pollution vulnerability #5

Open
wants to merge 3 commits into
base: dev
Choose a base branch
from

Conversation

dnlbui
Copy link

@dnlbui dnlbui commented May 31, 2024

https://linear.app/shm/issue/RED-112/dependabot-relayercollector-web3-utils-prototype-pollution

Updated web3 and axios in package.json. Updated follow-redirects, tar, and web3-utils.

  • tested w/ LDRPC 10+10 test (create-wallet, shm-transfer, and staked)

@dnlbui dnlbui changed the title Red 112: Dependabot relayer/collector: web3-utils Prototype Pollution vulnerability RED-112: Dependabot relayer/collector: web3-utils Prototype Pollution vulnerability May 31, 2024
@dnlbui dnlbui force-pushed the red-112/web3-upgrade branch from 5edaa08 to 74fbea8 Compare June 13, 2024 14:33
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant