You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
The latest version @chainlink/[email protected] depends on vulnerable versions of the OpenZeppelin contracts which can be upgraded to the v4 to address the vulnerabilities.
The text was updated successfully, but these errors were encountered:
jaybuidl
changed the title
[SMRT] Bump the @openzeppelin dependencies to several security advisories
[SMRT] Bump the @openzeppelin dependencies to address security advisories
Dec 13, 2024
Description
The latest version
@chainlink/[email protected]
depends on vulnerable versions of the OpenZeppelin contracts which can be upgraded to the v4 to address the vulnerabilities.NPM resolutions:
Steps to Reproduce
Deps.dev
source
Dependencies Review Report
The text was updated successfully, but these errors were encountered: