socket-security[bot]

Results 7679 comments of socket-security[bot]

**New and removed dependencies detected.** Learn more about [Socket for GitHub ↗︎](https://socket.dev?utm_medium=gh) | Package | New capabilities | Transitives | Size | Publisher | |:--- |:--- |:--- |:--- |:--- |...

**New and removed dependencies detected.** Learn more about [Socket for GitHub ↗︎](https://socket.dev?utm_medium=gh) | Package | New capabilities | Transitives | Size | Publisher | |:--- |:--- |:--- |:--- |:--- |...

**New dependencies detected.** Learn more about [Socket for GitHub ↗︎](https://socket.dev?utm_medium=gh) | Package | New capabilities | Transitives | Size | Publisher | |:--- |:--- |:--- |:--- |:--- | | [npm/@metamask/[email protected]](https://socket.dev/npm/package/@metamask/eth-snap-keyring/overview/7.0.0)...

**New and removed dependencies detected.** Learn more about [Socket for GitHub ↗︎](https://socket.dev?utm_medium=gh) | Package | New capabilities | Transitives | Size | Publisher | |:--- |:--- |:--- |:--- |:--- |...

**👍 Dependency issues cleared.** Learn more about [Socket for GitHub ↗︎](https://socket.dev?utm_medium=gh) This PR previously contained dependency changes with security issues that have been resolved, removed, or ignored. [**View full report↗︎**](https://socket.dev/dashboard/org/trezor/diff/73620b40-1aa1-4544-b042-ce5f8fc81652/46597365-6e88-4a46-bfc0-fd6a29860bef)

**Review the following changes in direct dependencies.** Learn more about [Socket for GitHub](https://socket.dev?utm_medium=gh). Diff Package Supply ChainSecurity Vulnerability Quality Maintenance License @​ioredis/​commands@​1.5.0 [View full report](https://socket.dev/dashboard/org/stipsan/diff-scan/8029a378-91c1-4926-9f4c-179aaedda935?tab=dependencies)

> [!WARNING] > **Review the following alerts detected in dependencies.** > > According to your organization's Security Policy, it is recommended to resolve "Warn" alerts. Learn more about [Socket for...

**Review the following changes in direct dependencies.** Learn more about [Socket for GitHub](https://socket.dev?utm_medium=gh). Diff Package Supply ChainSecurity Vulnerability Quality Maintenance License golang.org/​x/​sync@​v0.16.0 ⏵ v0.18.0 github.com/​lrstanley/​bubblezone/​v2@​v2.0.0-alpha.3 [View full report](https://socket.dev/dashboard/org/gabe565/diff-scan/37064d0a-580e-48e3-b927-c4bd439d48e6?tab=dependencies)

**Review the following changes in direct dependencies.** Learn more about [Socket for GitHub](https://socket.dev?utm_medium=gh). Diff Package Supply ChainSecurity Vulnerability Quality Maintenance License protoc@​32.1.0 glob@​11.0.3 @​protobuf-ts/​runtime-rpc@​2.11.1 @​protobuf-ts/​plugin@​2.11.1 @​protobuf-ts/​runtime@​2.11.1 google-protobuf@​4.0.0 grpc-web@​1.5.0 tsup@​8.5.0 typescript@​5.9.2...

**All alerts resolved.** Learn more about [Socket for GitHub](https://socket.dev?utm_medium=gh). This PR previously contained dependency changes with security issues that have been resolved, removed, or ignored. [View full report](https://socket.dev/dashboard/org/InjectiveLabs/diff-scan/c2b7c895-4419-4903-b65c-5554b8481200?tab=alerts&action=error%2Cwarn)