Skip to content

Conversation

@GregProuty
Copy link
Collaborator

Resolved 19 security vulnerabilities:
Updated @near-js packages to v2.2.4 (fixes base-x, secp256k1 issues)
Ran npm audit fix for automated fixes
Updated vocs to v1.0.13

Before: 32 vulnerabilities (2 critical, 6 high, 8 moderate, 16 low)
After: 13 vulnerabilities (13 low only)

Remaining low-severity issues are in Hardhat dev dependencies with no upstream fixes available.

@GregProuty
Copy link
Collaborator Author

We may as well update all the near-js packages to the latest versions all to 2.2.4 https://github.com/near/near-api-js/releases

Updated here e0b3ed5

@GregProuty GregProuty merged commit 453aa00 into main Aug 2, 2025
1 check passed
@GregProuty GregProuty deleted the FIX_VULNERABILITY branch August 2, 2025 00:38
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants