Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

build: [Snyk] Upgrade dotenv from 16.4.5 to 16.4.7 #3358

Merged
merged 1 commit into from
Jan 8, 2025

Conversation

swirlds-automation
Copy link
Contributor

snyk-top-banner

Snyk has created this PR to upgrade dotenv from 16.4.5 to 16.4.7.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 2 versions ahead of your current version.

  • The recommended version was released a month ago.

Release notes
Package name: dotenv from dotenv GitHub release notes

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

Copy link

github-actions bot commented Jan 7, 2025

Test Results

 20 files   -   4  293 suites   - 68   42m 19s ⏱️ - 18m 1s
613 tests  -   6  605 ✅ + 11  4 💤 ±0  4 ❌  - 17 
739 runs   - 162  729 ✅  - 141  6 💤 +2  4 ❌  - 23 

For more details on these failures, see this check.

Results for commit 12f0ba1. ± Comparison against base commit 90739e1.

This pull request removes 7 and adds 1 tests. Note that renamed tests count towards both.
"after all" hook in "RPC Server Acceptance Tests" ‑ RPC Server Acceptance Tests "after all" hook in "RPC Server Acceptance Tests"
"after each" hook for "Subscribe to multiple contracts on same subscription" ‑ RPC Server Acceptance Tests Acceptance tests @web-socket-batch-3 eth_subscribe "after each" hook for "Subscribe to multiple contracts on same subscription"
"before all" hook for "emits an approval event" ‑ RPC Server Acceptance Tests Acceptance tests @erc20 Acceptance Tests HTS token should behave like erc20 transfer from when the token owner is not the zero address when the recipient is not the zero address when the spender has enough allowance "before all" hook for "emits an approval event"
"before all" hook for "reverts" ‑ RPC Server Acceptance Tests Acceptance tests @erc20 Acceptance Tests HTS token should behave like erc20 transfer from when the token owner is not the zero address when the recipient is not the zero address when the spender does not have enough allowance when the token owner has enough balance "before all" hook for "reverts"
"before each" hook for "reverts" ‑ RPC Server Acceptance Tests Acceptance tests @erc20 Acceptance Tests HTS token should behave like erc20 transfer from when the token owner is not the zero address when the recipient is not the zero address when the spender does not have enough allowance "before each" hook for "reverts"
"before each" hook for "reverts" ‑ RPC Server Acceptance Tests Acceptance tests @erc20 Acceptance Tests HTS token should behave like erc20 transfer from when the token owner is not the zero address when the recipient is the zero address "before each" hook for "reverts"
"before each" hook: reducing balance for "reverts" ‑ RPC Server Acceptance Tests Acceptance tests @erc20 Acceptance Tests HTS token should behave like erc20 transfer from when the token owner is not the zero address when the recipient is not the zero address when the spender does not have enough allowance when the token owner does not have enough balance "before each" hook: reducing balance for "reverts"
"before all" hook in "Debug API Test Suite" ‑ RPC Server Acceptance Tests Acceptance tests @api-batch-3 RPC Server Acceptance Tests Debug API Test Suite "before all" hook in "Debug API Test Suite"

♻️ This comment has been updated with latest results.

Snyk has created this PR to upgrade dotenv from 16.4.5 to 16.4.7.

See this package in npm:
dotenv

See this project in Snyk:
https://app.snyk.io/org/json-rpc-relay/project/84d6749f-7535-44c9-8b2d-a84a70c5d8d6?utm_source=github&utm_medium=referral&page=upgrade-pr

Signed-off-by: Logan Nguyen <[email protected]>
@quiet-node quiet-node force-pushed the snyk-upgrade-298d0303f313a59783c0d562047dde44 branch from 495dc33 to 12f0ba1 Compare January 7, 2025 20:43
@quiet-node quiet-node changed the title [Snyk] Upgrade dotenv from 16.4.5 to 16.4.7 build: [Snyk] Upgrade dotenv from 16.4.5 to 16.4.7 Jan 7, 2025
@quiet-node quiet-node added the dependencies Pull requests that update a dependency file label Jan 7, 2025
@quiet-node quiet-node added this to the 0.64.0 milestone Jan 7, 2025
Copy link

sonarqubecloud bot commented Jan 7, 2025

@quiet-node quiet-node merged commit b2bff54 into main Jan 8, 2025
48 of 50 checks passed
@quiet-node quiet-node deleted the snyk-upgrade-298d0303f313a59783c0d562047dde44 branch January 8, 2025 16:22
Copy link

codecov bot commented Jan 8, 2025

Codecov Report

All modified and coverable lines are covered by tests ✅

Project coverage is 85.13%. Comparing base (90739e1) to head (12f0ba1).
Report is 3 commits behind head on main.

Additional details and impacted files
@@            Coverage Diff             @@
##             main    #3358      +/-   ##
==========================================
+ Coverage   85.11%   85.13%   +0.02%     
==========================================
  Files          69       69              
  Lines        4688     4688              
  Branches     1050     1050              
==========================================
+ Hits         3990     3991       +1     
+ Misses        389      388       -1     
  Partials      309      309              
Flag Coverage Δ
config-service 98.14% <ø> (ø)
relay 79.72% <ø> (ø)
server 83.28% <ø> (ø)
ws-server 36.66% <ø> (ø)

Flags with carried forward coverage won't be shown. Click here to find out more.

see 3 files with indirect coverage changes

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

4 participants