From 1bd44d1bbc6b109c916e148b354ab42212c7a2e0 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 11 Jul 2025 10:23:15 +0000 Subject: [PATCH] fix: package.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-ELLIPTIC-8187303 - https://snyk.io/vuln/SNYK-JS-NODEFORGE-598677 - https://snyk.io/vuln/SNYK-JS-NODEFORGE-2330875 - https://snyk.io/vuln/SNYK-JS-NODEFORGE-2430339 - https://snyk.io/vuln/SNYK-JS-NODEFORGE-2331908 - https://snyk.io/vuln/SNYK-JS-NODEFORGE-2430337 - https://snyk.io/vuln/SNYK-JS-NODEFORGE-2430341 --- package.json | 26 +++++++++++++------------- 1 file changed, 13 insertions(+), 13 deletions(-) diff --git a/package.json b/package.json index 7b3aa922..a59ea110 100644 --- a/package.json +++ b/package.json @@ -107,7 +107,7 @@ "hoek": "^5.0.3", "human-to-milliseconds": "^1.0.0", "interface-datastore": "~0.5.0", - "ipfs-api": "^24.0.0", + "ipfs-api": "^26.1.2", "ipfs-bitswap": "~0.20.3", "ipfs-block": "~0.7.1", "ipfs-block-service": "~0.14.0", @@ -128,19 +128,19 @@ "joi-browser": "^13.4.0", "joi-multiaddr": "^2.0.0", "libp2p": "~0.23.0", - "libp2p-bootstrap": "~0.9.3", - "libp2p-circuit": "~0.2.0", - "libp2p-crypto": "~0.13.0", + "libp2p-bootstrap": "~0.14.0", + "libp2p-circuit": "~0.3.7", + "libp2p-crypto": "~0.21.2", "libp2p-floodsub": "~0.15.0", - "libp2p-kad-dht": "~0.10.1", - "libp2p-keychain": "~0.3.1", - "libp2p-mdns": "~0.12.0", + "libp2p-kad-dht": "~0.27.0", + "libp2p-keychain": "~0.6.1", + "libp2p-mdns": "~0.18.0", "libp2p-mplex": "~0.8.0", "libp2p-record": "~0.5.1", - "libp2p-secio": "~0.10.0", + "libp2p-secio": "~0.11.1", "libp2p-tcp": "~0.12.0", - "libp2p-webrtc-star": "~0.15.3", - "libp2p-websocket-star": "~0.8.1", + "libp2p-webrtc-star": "~0.25.0", + "libp2p-websocket-star": "~0.10.2", "libp2p-websockets": "~0.12.0", "lodash": "^4.17.10", "mafmt": "^6.0.0", @@ -152,9 +152,9 @@ "multihashes": "~0.4.13", "once": "^1.4.0", "path-exists": "^3.0.0", - "peer-book": "~0.8.0", - "peer-id": "~0.11.0", - "peer-info": "~0.14.1", + "peer-book": "~0.9.2", + "peer-id": "~0.16.0", + "peer-info": "~0.17.5", "progress": "^2.0.0", "promisify-es6": "^1.0.3", "pull-abortable": "^4.1.1",