-
-
Notifications
You must be signed in to change notification settings - Fork 1.2k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
fix: update cookie-tough dependency #6772
Conversation
CLA Signature Action: All authors have signed the CLA. You may need to manually re-run the blocking PR check if it doesn't pass in a few minutes. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Looks good!
Kudos, SonarCloud Quality Gate passed! |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
LGTM
Description
This PR aims to solve vulnerabilities found
Vulnerability Found:
Severity: MODERATE
Modules: @metamask/network-controller>web3-provider-engine>request>tough-cookie, @metamask/assets-controllers>@metamask/network-controller>web3-provider-engine>request>tough-cookie
URL: GHSA-72xf-g2v4-qvf3
Vulnerability Found:
Severity: MODERATE
Modules: @metamask/network-controller>web3-provider-engine>request>tough-cookie, @metamask/assets-controllers>@metamask/network-controller>web3-provider-engine>request>tough-cookie
URL: GHSA-72xf-g2v4-qvf3
Screenshots/Recordings
Wallet with zero balance changing networks:
https://recordit.co/ZuOnh6Z14H
Imported account -> imported tokens, imported nfts (automatically and manually)
https://recordit.co/f09WdFAkW6 (import nft manually)
https://recordit.co/9TWRuGY56I
Transactions (e2e test dapp, send flow and almost swap on uniswap)
https://recordit.co/Hx921Okotm
E2E QA:
https://app.bitrise.io/app/be69d4368ee7e86d/pipelines/d5caec38-1f19-4536-b180-3541cf4cda40
Issue
Progresses #???
Checklist