-
Notifications
You must be signed in to change notification settings - Fork 1
Open
Description
Summary
Security advisory GHSA-vjh7-7g9h-fjfh affects yearnfi's transitive elliptic@6.5.4 dependency (via ethers@5.7.2). Upgrading to ethers@6.x resolves this issue.
Required Changes
- Upgrade ethers from v5.7.2 to v6.15.0
- Upgrade @cowprotocol/cow-sdk to v7+ for compatibility
- Update ethers API usage in:
- apps/lib/utils/wagmi/ethersAdapter.ts
- apps/vaults-v2/hooks/solvers/useSolverCowswap.ts
Testing Requirements
- Verify wallet connection and signing operations
- Test CoW Protocol order signing functionality
- Confirm build passes and no runtime errors
wait until yearn/yearn.fi#740 is complete
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
No labels
Type
Projects
Status
To Do - Finalized