Skip to content

Set yarn resolution for elliptic@^6.6.1 to fix critical security issue#393

Merged
desi merged 1 commit into
mainfrom
jongsun/deps/250305-bump-elliptic
Mar 5, 2025
Merged

Set yarn resolution for elliptic@^6.6.1 to fix critical security issue#393
desi merged 1 commit into
mainfrom
jongsun/deps/250305-bump-elliptic

Conversation

@MajorLift

@MajorLift MajorLift commented Mar 5, 2025

Copy link
Copy Markdown
Contributor

Yarn resolution field necessary to keep lockfile stable while resolving to elliptic@^6.6.1.

@socket-security

Copy link
Copy Markdown

Updated dependencies detected. Learn more about Socket for GitHub ↗︎

Package New capabilities Transitives Size Publisher
npm/elliptic@6.5.46.6.1 None 0 120 kB indutny

View full report↗︎

@desi desi left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@desi desi merged commit 665fa02 into main Mar 5, 2025
@desi desi deleted the jongsun/deps/250305-bump-elliptic branch March 5, 2025 16:09
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants