build(deps): Bump protobufjs from 7.5.5 to 7.6.2 in /scripts/offchain-signing - #1693
Open
dependabot[bot] wants to merge 1 commit into
Open
StepSecurity Actions Security / StepSecurity Required Checks
succeeded
Jun 4, 2026 in 0s
StepSecurity Required Checks
Finished StepSecurity Required Checks
- Pwn Request Vulnerabilities Check - Checks for Pwn Request vulnerabilities in the PR via risky triggers
- Script Injection Check - Checks for script injection vulnerabilities in the PR
- NPM Compromised Packages Check - Checks for compromised npm package versions in the PR
- NPM Package Cooldown Check - Fails if any package version in the PR was released within the configured cooldown period, helping to avoid brand-new (and potentially unreviewed or malicious) releases
Details
✅ Script Injection Vulnerabilities Check
No Script Injection vulnerabilities found in this PR.
✅ Pwn Request Vulnerabilities Check
No Pwn Request vulnerabilities found in this PR.
✅ NPM Compromised Packages Check
No Compromised npm packages are added in current PR.
✅ NPM Package Cooldown Check
No npm package upgrades to recent releases found in current PR.
The following npm packages are inspected in current PR
| Package Name | Previous Version | Current Version | file | Current Version Release Date |
|---|---|---|---|---|
| protobufjs | 7.5.5 | 7.6.2 | scripts/offchain-signing/package-lock.json | 2026-05-30T21:58:08Z |
| @protobufjs/eventemitter | 1.1.0 | 1.1.1 | scripts/offchain-signing/package-lock.json | 2026-05-22T02:33:03Z |
| @protobufjs/inquire | 1.1.0 | 1.1.2 | scripts/offchain-signing/package-lock.json | 2026-05-17T15:18:44Z |
| @protobufjs/fetch | 1.1.0 | 1.1.1 | scripts/offchain-signing/package-lock.json | 2026-05-17T12:41:02Z |
| @protobufjs/utf8 | 1.1.0 | 1.1.1 | scripts/offchain-signing/package-lock.json | 2026-04-27T20:31:28Z |
| @protobufjs/codegen | 2.0.4 | 2.0.5 | scripts/offchain-signing/package-lock.json | 2026-04-27T20:30:11Z |
| long | 5.2.3 | 5.3.2 | scripts/offchain-signing/package-lock.json | 2025-04-17T17:32:06Z |
Loading