js-libp2p-noise
js-libp2p-noise copied to clipboard
deps: bump @noble/ciphers from 0.6.0 to 1.0.0
Bumps @noble/ciphers from 0.6.0 to 1.0.0.
Release notes
Sourced from @noble/ciphers's releases.
1.0.0
- Prohibit AES-GCM nonces smaller than 8 bytes
- Hide unnecessary data exposure in AES errors
- Improve FF1 type checks
- Add support for node.js v14
Full Changelog: https://github.com/paulmillr/noble-ciphers/compare/0.6.0...1.0.0
Commits
428b211Release 1.0.0.dced50fbuild: add aeskw8f15960pkg.json: specify supported nodejs versionsc84e70areadmeb7793e2README8f6917cci: add nodejs v22a73b73dREADME: clarify AES security61dc2ecff1: improve type checks1d356caaes, chacha, salsa: adjust commentsceaeb80aes: skip small gcm nonce wycheproof tests- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)