From ad4a65e760ee7355c3e0f9b88957ebad686aa4aa Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 24 Aug 2023 00:23:01 +0000 Subject: [PATCH] fix: upgrade conseiljs-softsigner from 5.0.4-1 to 5.0.6 Snyk has created this PR to upgrade conseiljs-softsigner from 5.0.4-1 to 5.0.6. See this package in npm: https://www.npmjs.com/package/conseiljs-softsigner See this project in Snyk: https://app.snyk.io/org/peter6c6f6c/project/76d99342-ce6b-447d-9e73-3400c9d49fef?utm_source=github&utm_medium=referral&page=upgrade-pr --- contracts/package-lock.json | 103 ++++++++++++++++++++---------------- contracts/package.json | 2 +- 2 files changed, 58 insertions(+), 47 deletions(-) diff --git a/contracts/package-lock.json b/contracts/package-lock.json index a678b08a..8a864e69 100644 --- a/contracts/package-lock.json +++ b/contracts/package-lock.json @@ -218,6 +218,11 @@ "@ethersproject/strings": "^5.0.8" } }, + "@noble/hashes": { + "version": "1.3.2", + "resolved": "https://registry.npmjs.org/@noble/hashes/-/hashes-1.3.2.tgz", + "integrity": "sha512-MVC8EAQp7MvEcm30KWENFjgR+Mkmf+D189XJTkFIlwohU5hcBbn1ZkKq7KVTi2Hme3PMGF390DaL52beVrIihQ==" + }, "@sindresorhus/is": { "version": "0.14.0", "resolved": "https://registry.npmjs.org/@sindresorhus/is/-/is-0.14.0.tgz", @@ -374,14 +379,11 @@ "integrity": "sha512-IdZR9mh6ahOBv/hYGiXyVuyCetmGJhtYkqLBpTStdhEGjegpPlUawydyaF3pbIOFynJTpllEs+NP+CS9jKFLjA==" }, "bip39": { - "version": "3.0.3", - "resolved": "https://registry.npmjs.org/bip39/-/bip39-3.0.3.tgz", - "integrity": "sha512-P0dKrz4g0V0BjXfx7d9QNkJ/Txcz/k+hM9TnjqjUaXtuOfAvxXSw2rJw8DX0e3ZPwnK/IgDxoRqf0bvoVCqbMg==", + "version": "3.1.0", + "resolved": "https://registry.npmjs.org/bip39/-/bip39-3.1.0.tgz", + "integrity": "sha512-c9kiwdk45Do5GL0vJMe7tS95VjCii65mYAH7DfWl3uW8AVzXKQVUm64i3hzVybBDMp9r7j9iNxR85+ul8MdN/A==", "requires": { - "@types/node": "11.11.6", - "create-hash": "^1.1.0", - "pbkdf2": "^3.0.9", - "randombytes": "^2.0.1" + "@noble/hashes": "^1.2.0" } }, "blakejs": { @@ -671,34 +673,55 @@ } }, "conseiljs-softsigner": { - "version": "5.0.4-1", - "resolved": "https://registry.npmjs.org/conseiljs-softsigner/-/conseiljs-softsigner-5.0.4-1.tgz", - "integrity": "sha512-dZ6PyEcoBn6gJNO3B6+3LiW7fXBcGdAbAfjLU5hYgtLImP8W7jtADpqY80weWeJz7PRpSn9bmNK5atrCT+cBSw==", - "requires": { - "bip39": "3.0.3", - "conseiljs": "5.0.7", - "ed25519-hd-key": "1.1.2", - "libsodium-wrappers-sumo": "0.7.8", - "secp256k1": "4.0.2" + "version": "5.0.6", + "resolved": "https://registry.npmjs.org/conseiljs-softsigner/-/conseiljs-softsigner-5.0.6.tgz", + "integrity": "sha512-OqGIrvlE0+yYKlr8Pj+g793ZKQ+t+A301RfgQz5fXD7wfmxjcaXZRYXq+FO2eU1QUX4yLezfuirvx9BL96Xb6Q==", + "requires": { + "bip39": "3.1.0", + "conseiljs": "5.2.5", + "ed25519-hd-key": "1.3.0", + "libsodium-wrappers-sumo": "0.7.11", + "secp256k1": "4.0.3" }, "dependencies": { + "big-integer": { + "version": "1.6.51", + "resolved": "https://registry.npmjs.org/big-integer/-/big-integer-1.6.51.tgz", + "integrity": "sha512-GPEid2Y9QU1Exl1rpO9B2IPJGHPSupF5GnVIP0blYvNOMer2bTvSWs1jGOUg04hTmu67nmLsQ9TBo1puaotBHg==" + }, + "bignumber.js": { + "version": "9.0.2", + "resolved": "https://registry.npmjs.org/bignumber.js/-/bignumber.js-9.0.2.tgz", + "integrity": "sha512-GAcQvbpsM0pUb0zw1EI0KhQEZ+lRwR5fYaAp3vPOYuP7aDvGy6cVN6XHLauvF8SOga2y0dcLcjt3iQDTSEliyw==" + }, "conseiljs": { - "version": "5.0.7", - "resolved": "https://registry.npmjs.org/conseiljs/-/conseiljs-5.0.7.tgz", - "integrity": "sha512-AktnPebmW8MJBGSTah6QpQNyXSjj3u+OxXcneKutMAEWv55PNFSiEftv/Xp0GRqumKn0igdulfpf9sLfAh2u4A==", + "version": "5.2.5", + "resolved": "https://registry.npmjs.org/conseiljs/-/conseiljs-5.2.5.tgz", + "integrity": "sha512-dlZJ12o0YZL3lerG7+AtPR4AF69zbvoQXCp63IJTfsbmI2v45fxLOo2G6eYHeqedEqi8p8e+yCoA5OMbqfxXQQ==", "requires": { - "big-integer": "1.6.48", + "big-integer": "1.6.51", + "bignumber.js": "9.0.2", "blakejs": "1.1.0", "bs58check": "2.1.2", - "jsonpath-plus": "5.0.2", + "jsonpath-plus": "6.0.1", "moo": "0.5.0", "nearley": "2.19.1" } }, "jsonpath-plus": { - "version": "5.0.2", - "resolved": "https://registry.npmjs.org/jsonpath-plus/-/jsonpath-plus-5.0.2.tgz", - "integrity": "sha512-J1StEInJIb5INbUkzf/DM6mby0hEyU2o6kw+AUzrJnrgMunvDKdZgGFXEqH5qA2TVF3mVH7A6ZZQJpcNXXg90A==" + "version": "6.0.1", + "resolved": "https://registry.npmjs.org/jsonpath-plus/-/jsonpath-plus-6.0.1.tgz", + "integrity": "sha512-EvGovdvau6FyLexFH2OeXfIITlgIbgZoAZe3usiySeaIDm5QS+A10DKNpaPBBqqRSZr2HN6HVNXxtwUAr2apEw==" + }, + "secp256k1": { + "version": "4.0.3", + "resolved": "https://registry.npmjs.org/secp256k1/-/secp256k1-4.0.3.tgz", + "integrity": "sha512-NLZVf+ROMxwtEj3Xa562qgv2BK5e2WNmXPiOdVIPLgs6lyTzMvBq0aWTYMI5XCP9jZMVKOcqZLw/Wc4vDkuxhA==", + "requires": { + "elliptic": "^6.5.4", + "node-addon-api": "^2.0.0", + "node-gyp-build": "^4.2.0" + } } } }, @@ -923,26 +946,14 @@ } }, "ed25519-hd-key": { - "version": "1.1.2", - "resolved": "https://registry.npmjs.org/ed25519-hd-key/-/ed25519-hd-key-1.1.2.tgz", - "integrity": "sha512-/0y9y6N7vM6Kj5ASr9J9wcMVDTtygxSOvYX+PJiMD7VcxCx2G03V5bLRl8Dug9EgkLFsLhGqBtQWQRcElEeWTA==", + "version": "1.3.0", + "resolved": "https://registry.npmjs.org/ed25519-hd-key/-/ed25519-hd-key-1.3.0.tgz", + "integrity": "sha512-IWwAyiiuJQhgu3L8NaHb68eJxTu2pgCwxIBdgpLJdKpYZM46+AXePSVTr7fkNKaUOfOL4IrjEUaQvyVRIDP7fg==", "requires": { - "bip39": "3.0.2", "create-hmac": "1.1.7", "tweetnacl": "1.0.3" }, "dependencies": { - "bip39": { - "version": "3.0.2", - "resolved": "https://registry.npmjs.org/bip39/-/bip39-3.0.2.tgz", - "integrity": "sha512-J4E1r2N0tUylTKt07ibXvhpT2c5pyAFgvuA5q1H9uDy6dEGpjV8jmymh3MTYJDLCNbIVClSB9FbND49I6N24MQ==", - "requires": { - "@types/node": "11.11.6", - "create-hash": "^1.1.0", - "pbkdf2": "^3.0.9", - "randombytes": "^2.0.1" - } - }, "tweetnacl": { "version": "1.0.3", "resolved": "https://registry.npmjs.org/tweetnacl/-/tweetnacl-1.0.3.tgz", @@ -1706,16 +1717,16 @@ } }, "libsodium-sumo": { - "version": "0.7.9", - "resolved": "https://registry.npmjs.org/libsodium-sumo/-/libsodium-sumo-0.7.9.tgz", - "integrity": "sha512-DcfJ57zlSlcmQU4s8KOX78pT0zKx5S9RLi0oyDuoIgm4K95+VNSaOidK/y9lUK4lxft14PtTPjoBy8tmLk1TDQ==" + "version": "0.7.11", + "resolved": "https://registry.npmjs.org/libsodium-sumo/-/libsodium-sumo-0.7.11.tgz", + "integrity": "sha512-bY+7ph7xpk51Ez2GbE10lXAQ5sJma6NghcIDaSPbM/G9elfrjLa0COHl/7P6Wb/JizQzl5UQontOOP1z0VwbLA==" }, "libsodium-wrappers-sumo": { - "version": "0.7.8", - "resolved": "https://registry.npmjs.org/libsodium-wrappers-sumo/-/libsodium-wrappers-sumo-0.7.8.tgz", - "integrity": "sha512-a36GRLb59E5Zx8br6Xvwk6QsnYWodkCJFvNQxnhrvL9t9i4v6v3V/cv3h0/pxehf35ljVCWqoi0CawMQ8C1JmA==", + "version": "0.7.11", + "resolved": "https://registry.npmjs.org/libsodium-wrappers-sumo/-/libsodium-wrappers-sumo-0.7.11.tgz", + "integrity": "sha512-DGypHOmJbB1nZn89KIfGOAkDgfv5N6SBGC3Qvmy/On0P0WD1JQvNRS/e3UL3aFF+xC0m+MYz5M+MnRnK2HMrKQ==", "requires": { - "libsodium-sumo": "^0.7.0" + "libsodium-sumo": "^0.7.11" } }, "loglevel": { diff --git a/contracts/package.json b/contracts/package.json index eef28794..f26db9dc 100644 --- a/contracts/package.json +++ b/contracts/package.json @@ -11,7 +11,7 @@ "dependencies": { "big-integer": "^1.6.48", "conseiljs": "5.0.8-1", - "conseiljs-softsigner": "5.0.4-1", + "conseiljs-softsigner": "5.0.6", "ethereumjs-tx": "^2.1.2", "jsonpath-plus": "^4.0.0", "loglevel": "^1.6.8",