summaryrefslogtreecommitdiff
path: root/package.json
diff options
context:
space:
mode:
authorPawel Zelawski <pawel.zelawski@outlook.com>2026-01-23 11:08:47 +0100
committerPawel Zelawski <pawel.zelawski@outlook.com>2026-01-23 11:08:47 +0100
commit4cc77ab44157764e003e0db242962384945dc2ad (patch)
treea864ea054fba129d44a960a177f636a2df57ee2b /package.json
parent23f12a7fe7ed29b527ab0a31819255a1114b8acf (diff)
Update digiid-ts to v2.0.0 - Fix ECDSA cryptanalysis vulnerability
- Upgraded digiid-ts from v1.1.1 to v2.0.0 - Resolved critical vulnerability in elliptic package (CVE for ECDSA signature cryptanalysis) - Library now uses @noble/curves instead of bitcoinjs-message (removed elliptic dependency) - Fixed additional low severity vulnerability in diff package - All npm audit vulnerabilities now resolved (0 vulnerabilities) - API unchanged, all existing code continues to work
Diffstat (limited to 'package.json')
-rw-r--r--package.json4
1 files changed, 2 insertions, 2 deletions
diff --git a/package.json b/package.json
index f63792f..8ac21d5 100644
--- a/package.json
+++ b/package.json
@@ -48,11 +48,11 @@
"vite": "^6.2.6"
},
"dependencies": {
- "digiid-ts": "^1.1.1",
+ "digiid-ts": "^2.0.0",
"dotenv": "^16.4.5",
"express": "^4.19.2",
"qrcode": "^1.5.3",
"react": "^18.3.1",
"react-dom": "^18.3.1"
}
-}
+} \ No newline at end of file