Skip to content

Commit 6389490

Browse files
chore: add changeset for security vulnerability fixes
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
1 parent 4a95d18 commit 6389490

File tree

1 file changed

+24
-0
lines changed

1 file changed

+24
-0
lines changed
Lines changed: 24 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,24 @@
1+
---
2+
'@reown/appkit-react-native': patch
3+
'@reown/appkit-common-react-native': patch
4+
'@reown/appkit-bitcoin-react-native': patch
5+
'@reown/appkit-coinbase-react-native': patch
6+
'@reown/appkit-core-react-native': patch
7+
'@reown/appkit-ethers-react-native': patch
8+
'@reown/appkit-solana-react-native': patch
9+
'@reown/appkit-ui-react-native': patch
10+
'@reown/appkit-wagmi-react-native': patch
11+
---
12+
13+
fix: resolve high-severity security vulnerabilities in transitive dependencies
14+
15+
Patched 9 vulnerable packages via resolutions/overrides:
16+
- h3 1.15.5 (Request Smuggling)
17+
- tar 7.5.6 (Race Condition, Arbitrary File Overwrite)
18+
- node-forge 1.3.2 (ASN.1 vulnerabilities)
19+
- qs 6.14.1 (arrayLimit DoS)
20+
- undici 6.23.0 (Decompression DoS)
21+
- preact 10.28.2 (VNode Injection)
22+
- js-yaml 4.1.1 (Prototype Pollution)
23+
- valibot 1.2.0 (CVE-2025-66020 EMOJI_REGEX ReDoS)
24+
- hono 4.11.4 (JWT Algorithm Confusion)

0 commit comments

Comments
 (0)