rigs
rigs copied to clipboard
Bump axios and @openzeppelin/hardhat-upgrades in /ethereum
Bumps axios to 1.6.7 and updates ancestor dependency @openzeppelin/hardhat-upgrades. These dependencies need to be updated together.
Updates axios
from 1.5.1 to 1.6.7
Release notes
Sourced from axios's releases.
Release v1.6.7
Release notes:
Bug Fixes
Contributors to this release
Release v1.6.6
Release notes:
Bug Fixes
- fixed missed dispatchBeforeRedirect argument (#5778) (a1938ff)
- wrap errors to improve async stack trace (#5987) (123f354)
Contributors to this release
Release v1.6.5
Release notes:
Bug Fixes
- ci: refactor notify action as a job of publish action; (#6176) (0736f95)
- dns: fixed lookup error handling; (#6175) (f4f2b03)
Contributors to this release
Release v1.6.4
Release notes:
Bug Fixes
- security: fixed formToJSON prototype pollution vulnerability; (#6167) (3c0c11c)
- security: fixed security vulnerability in follow-redirects (#6163) (75af1cd)
Contributors to this release
Release v1.6.3
Release notes:
... (truncated)
Changelog
Sourced from axios's changelog.
1.6.7 (2024-01-25)
Bug Fixes
Contributors to this release
1.6.6 (2024-01-24)
Bug Fixes
- fixed missed dispatchBeforeRedirect argument (#5778) (a1938ff)
- wrap errors to improve async stack trace (#5987) (123f354)
Contributors to this release
1.6.5 (2024-01-05)
Bug Fixes
- ci: refactor notify action as a job of publish action; (#6176) (0736f95)
- dns: fixed lookup error handling; (#6175) (f4f2b03)
Contributors to this release
1.6.4 (2024-01-03)
Bug Fixes
- security: fixed formToJSON prototype pollution vulnerability; (#6167) (3c0c11c)
- security: fixed security vulnerability in follow-redirects (#6163) (75af1cd)
Contributors to this release
... (truncated)
Commits
a52e4d9
chore(release): v1.6.7 (#6204)2b69888
chore: remove unnecessary check (#6186)1a08f90
fix: capture async stack only for rejections with native error objects; (#6203)104aa3f
chore(release): v1.6.6 (#6199)a1938ff
fix: fixed missed dispatchBeforeRedirect argument (#5778)123f354
fix: wrap errors to improve async stack trace (#5987)6d4c421
chore(release): v1.6.5 (#6177)0736f95
fix(ci): refactor notify action as a job of publish action; (#6176)f4f2b03
fix(dns): fixed lookup error handling; (#6175)1f73dcb
docs: update sponsor links- Additional commits viewable in compare view
Updates @openzeppelin/hardhat-upgrades
from 1.28.0 to 3.0.2
Release notes
Sourced from @openzeppelin/hardhat-upgrades
's releases.
@openzeppelin/hardhat-upgrades
@3
.0.2
- Support proxy verification on Snowtrace. (#954)
@openzeppelin/hardhat-upgrades
@3
.0.1
- Update dependency on undici. (#948)
- Update Defender SDK, support
txOverrides
option with Defender. (#951)
@openzeppelin/hardhat-upgrades
@3
.0.0This is a major version of the Hardhat Upgrades plugin that contains breaking changes. Please review the changes below.
This version deploys proxy contracts from OpenZeppelin Contracts 5.0, and no longer supports deploying proxy contracts from OpenZeppelin Contracts 4.x. However, it still supports importing and/or managing existing proxies that were deployed from previous versions.
If you are using Hardhat Verify, this plugin now requires Hardhat Verify 2.0.0 or higher.
Summary
- Deploy proxies from OpenZeppelin Contracts 5.0. (#919)
- Support
initialOwner
option when deploying a transparent proxy or beacon. If not set, the externally owned account used during deployment will be the default owner for the transparent proxy's admin or the beacon, respectively.- Update optional peer dependency on
@nomicfoundation/hardhat-verify
to v2.0.0 or higher. (#937)
- Note: Fully verifying proxies is only supported with Etherscan at the moment. The Hardhat Upgrades plugin does not currently assist with Sourcify verification for proxies.
Breaking changes
deployProxy
,deployBeacon
,deployBeaconProxy
: Deploys proxy contracts from OpenZeppelin Contracts 5.0.deployProxy
:
- Deploying a transparent proxy automatically causes a new proxy admin contract to be deployed along with the proxy.
- New transparent proxy deployments no longer use an existing proxy admin, even if one was previously recorded in the network file.
- New proxy admins are no longer recorded in the network file.
deployProxyAdmin
: Removed, since proxy admins are deployed automatically by transparent proxies.admin.changeProxyAdmin
: Not supported with admins or proxies from OpenZeppelin Contracts 5.0. Only supported for previously deployed admins and proxies from OpenZeppelin Contracts 4.x or below.admin.transferProxyAdminOwnership
: This function no longer uses the proxy admin from the network file. It now requires aproxyAddress
argument to be passed in.@nomicfoundation/hardhat-verify
v1.x and@nomicfoundation/hardhat-toolbox
v3.x are no longer supported with this plugin. If you are using these packages, update them to@nomicfoundation/hardhat-verify
v2.x and@nomicfoundation/hardhat-toolbox
v4.x.
@openzeppelin/hardhat-upgrades
@3
.0.0-alpha.0Disclaimer
This is an alpha release of a new major version which contains breaking changes. Additional breaking changes may be introduced leading up to the full release.
Documentation
API documentation for this alpha release can be found here.
Summary
- Deploy proxies from OpenZeppelin Contracts 5.0.
- Support
initialOwner
option when deploying a transparent proxy or beacon. If not set, the externally owned account used during deployment will be the default owner for the transparent proxy's admin or the beacon, respectively.Breaking changes
deployProxy
,deployBeacon
,deployBeaconProxy
: Deploys proxy contracts from OpenZeppelin Contracts 5.0.deployProxy
:
- Deploying a transparent proxy automatically causes a new proxy admin contract to be deployed along with the proxy.
- New transparent proxy deployments no longer use an existing proxy admin, even if one was previously recorded in the network file.
- New proxy admins are no longer recorded in the network file.
deployProxyAdmin
: Removed, since proxy admins are deployed automatically by transparent proxies.admin.changeProxyAdmin
: Not supported with admins or proxies from OpenZeppelin Contracts 5.0. Only supported for previously deployed admins and proxies from OpenZeppelin Contracts 4.x or below.
... (truncated)
Commits
25dbafa
Publish@openzeppelin/hardhat-upgrades
@3
.0.27b4698a
Use query instead of body for Etherscan API (#954)c9f518d
Publish@openzeppelin/upgrades-core
@1
.32.2e869b1c
Fix manifest error when connecting to an Anvil dev network (#950)54a2ed5
Publish@openzeppelin/hardhat-upgrades
@3
.0.1e2b537e
Upgrade defender-sdk and add support to tx overrides (#951)11e37eb
Update undici dependency (#948)9c8a12d
Bump apollo-server-core from 3.12.0 to 3.13.0 (#947)0f69281
Publish@openzeppelin/upgrades-core
@1
.32.1f008ac4
CLI: Fix ambiguous name error when passing in fully qualified contract names ...- Additional commits viewable in compare view
Most Recent Ignore Conditions Applied to This Pull Request
Dependency Name | Ignore Conditions |
---|---|
@openzeppelin/hardhat-upgrades | [>= 2.a, < 3] |
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase
.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
-
@dependabot rebase
will rebase this PR -
@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it -
@dependabot merge
will merge this PR after your CI passes on it -
@dependabot squash and merge
will squash and merge this PR after your CI passes on it -
@dependabot cancel merge
will cancel a previously requested merge and block automerging -
@dependabot reopen
will reopen this PR if it is closed -
@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually -
@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency -
@dependabot ignore this major version
will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this minor version
will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this dependency
will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) You can disable automated security fix PRs for this repo from the Security Alerts page.