Skip to content

Commit 44230b3

Browse files
fix(deps): resolve tar DoS vulnerability GHSA-f5x3-32g6-xq36
2 parents 3a9322c + 96fb1ae commit 44230b3

File tree

2 files changed

+4
-43
lines changed

2 files changed

+4
-43
lines changed

package.json

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -97,6 +97,7 @@
9797
"**/avalanche/**/ws": "8.18.3",
9898
"**/ethers/**/ws": "7.5.10",
9999
"**/swarm-js/**/ws": "5.2.4",
100+
"**/swarm-js/**/tar": "6.2.1",
100101
"serialize-javascript": "^6.0.2",
101102
"@grpc/grpc-js": "^1.12.6",
102103
"bigint-buffer": "npm:@trufflesuite/[email protected]",

yarn.lock

Lines changed: 3 additions & 43 deletions
Original file line numberDiff line numberDiff line change
@@ -8675,11 +8675,6 @@ chokidar@^4.0.0:
86758675
dependencies:
86768676
readdirp "^4.0.1"
86778677

8678-
chownr@^1.1.4:
8679-
version "1.1.4"
8680-
resolved "https://registry.npmjs.org/chownr/-/chownr-1.1.4.tgz"
8681-
integrity sha512-jJ0bqzaylmJtVnNgzTeSOs8DPavpbYgEr/b0YL8/2GO3xJEhInFmhKMUnEJQjZumK7KXGFhUy89PrsJWlakBVg==
8682-
86838678
chownr@^2.0.0:
86848679
version "2.0.0"
86858680
resolved "https://registry.npmjs.org/chownr/-/chownr-2.0.0.tgz"
@@ -11976,13 +11971,6 @@ fs-extra@^8.1.0:
1197611971
jsonfile "^4.0.0"
1197711972
universalify "^0.1.0"
1197811973

11979-
fs-minipass@^1.2.7:
11980-
version "1.2.7"
11981-
resolved "https://registry.npmjs.org/fs-minipass/-/fs-minipass-1.2.7.tgz"
11982-
integrity sha512-GWSSJGFy4e9GUeCcbIkED+bgAoFyj7XF1mV8rma3QW4NIqX9Kyx79N/PF61H5udOV3aY1IaMLs6pGbH71nlCTA==
11983-
dependencies:
11984-
minipass "^2.6.0"
11985-
1198611974
fs-minipass@^2.0.0, fs-minipass@^2.1.0:
1198711975
version "2.1.0"
1198811976
resolved "https://registry.npmjs.org/fs-minipass/-/fs-minipass-2.1.0.tgz"
@@ -15274,14 +15262,6 @@ minipass-sized@^1.0.3:
1527415262
dependencies:
1527515263
minipass "^3.0.0"
1527615264

15277-
minipass@^2.6.0, minipass@^2.9.0:
15278-
version "2.9.0"
15279-
resolved "https://registry.npmjs.org/minipass/-/minipass-2.9.0.tgz"
15280-
integrity sha512-wxfUjg9WebH+CUDX/CdbRlh5SmfZiy/hpkxaRI16Y9W56Pa75sWgd/rvFilSgrauD9NyFymP/+JFV3KwzIsJeg==
15281-
dependencies:
15282-
safe-buffer "^5.1.2"
15283-
yallist "^3.0.0"
15284-
1528515265
minipass@^3.0.0, minipass@^3.1.1, minipass@^3.1.6:
1528615266
version "3.3.6"
1528715267
resolved "https://registry.npmjs.org/minipass/-/minipass-3.3.6.tgz"
@@ -15299,13 +15279,6 @@ minipass@^5.0.0:
1529915279
resolved "https://registry.npmjs.org/minipass/-/minipass-7.1.2.tgz"
1530015280
integrity sha512-qOOzS1cBTWYF4BH8fVePDBOO9iptMnGUEZwNc/cMWnTV2nVLZ7VoNWEPHkYczZA0pdoA7dl6e7FL659nX9S2aw==
1530115281

15302-
minizlib@^1.3.3:
15303-
version "1.3.3"
15304-
resolved "https://registry.npmjs.org/minizlib/-/minizlib-1.3.3.tgz"
15305-
integrity sha512-6ZYMOEnmVsdCeTJVE0W9ZD+pVnE8h9Hma/iOwwRDsdQoePpoX56/8B6z3P9VNwppJuBKNRuFDRNRqRWexT9G9Q==
15306-
dependencies:
15307-
minipass "^2.9.0"
15308-
1530915282
minizlib@^2.1.1, minizlib@^2.1.2:
1531015283
version "2.1.2"
1531115284
resolved "https://registry.npmjs.org/minizlib/-/minizlib-2.1.2.tgz"
@@ -19821,22 +19794,9 @@ tar-stream@~2.2.0:
1982119794
inherits "^2.0.3"
1982219795
readable-stream "^3.1.1"
1982319796

19824-
tar@^4.0.2:
19825-
version "4.4.19"
19826-
resolved "https://registry.npmjs.org/tar/-/tar-4.4.19.tgz"
19827-
integrity sha512-a20gEsvHnWe0ygBY8JbxoM4w3SJdhc7ZAuxkLqh+nvNQN2IOt0B5lLgM490X5Hl8FF0dl0tOf2ewFYAlIFgzVA==
19828-
dependencies:
19829-
chownr "^1.1.4"
19830-
fs-minipass "^1.2.7"
19831-
minipass "^2.9.0"
19832-
minizlib "^1.3.3"
19833-
mkdirp "^0.5.5"
19834-
safe-buffer "^5.2.1"
19835-
yallist "^3.1.1"
19836-
19837-
tar@^6.1.0, tar@^6.1.11, tar@^6.1.2:
19797+
[email protected], tar@^4.0.2, tar@^6.1.0, tar@^6.1.11, tar@^6.1.2:
1983819798
version "6.2.1"
19839-
resolved "https://registry.npmjs.org/tar/-/tar-6.2.1.tgz"
19799+
resolved "https://registry.npmjs.org/tar/-/tar-6.2.1.tgz#717549c541bc3c2af15751bea94b1dd068d4b03a"
1984019800
integrity sha512-DZ4yORTwrbTj/7MZYq2w+/ZFdI6OZ/f9SFHR+71gIVUZhOQPHzVCLpvRnPgyaMpfWxxk/4ONva3GQSyNIKRv6A==
1984119801
dependencies:
1984219802
chownr "^2.0.0"
@@ -21697,7 +21657,7 @@ yaeti@^0.0.6:
2169721657
resolved "https://registry.npmjs.org/yaeti/-/yaeti-0.0.6.tgz"
2169821658
integrity sha512-MvQa//+KcZCUkBTIC9blM+CU9J2GzuTytsOUwf2lidtvkx/6gnEp1QvJv34t9vdjhFmha/mUiNDbN0D0mJWdug==
2169921659

21700-
yallist@^3.0.0, yallist@^3.0.2, yallist@^3.1.1:
21660+
yallist@^3.0.2:
2170121661
version "3.1.1"
2170221662
resolved "https://registry.npmjs.org/yallist/-/yallist-3.1.1.tgz"
2170321663
integrity sha512-a4UGQaWPH59mOXUYnAG2ewncQS4i4F43Tv3JoAM+s2VDAmS9NsK8GpDMLrCHPksFT7h3K6TOoUNn2pb7RoXx4g==

0 commit comments

Comments
 (0)