Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

docs(examples/cbdc): upgrade web3 from v1.5.2 to v1.10.1 #3154

Merged
merged 1 commit into from
Mar 30, 2024

Commits on Mar 30, 2024

  1. docs(examples/cbdc): upgrade web3 from v1.5.2 to v1.10.1

    1. This had to be done because of security vulnerabilities in the old version.
    2. Originally the robots have attempted to send a pull request with the
    same change but it somehow went haywire and upgraded dozens of other
    versions in dozens of other packcages not the intended one...
    3. So this was manually created to address that bug in GitHub's
    dependabot.
    4. The original commit message did not mention which vulnerabilities
    are  being fixed by it and I also cannot remember the specific ones but
    the older versions of web3 were definitely being affected and therefore
    it is known to be a good idea what the bot has proposed even though it
    couldn't explain itself.
    
    Signed-off-by: Peter Somogyvari <[email protected]>
    petermetz committed Mar 30, 2024
    Configuration menu
    Copy the full SHA
    4f2c6af View commit details
    Browse the repository at this point in the history