Skip to content

chore: Bump LavaMoat and SES - #4150

Merged
FrederikBolding merged 4 commits into
mainfrom
fb/bump-lm
Oct 9, 2026
Merged

FrederikBolding merged 4 commits into
mainfrom
fb/bump-lm

Conversation

@FrederikBolding

@FrederikBolding FrederikBolding commented Oct 9, 2026 •

Copy link
Copy Markdown
Member

Bump LavaMoat which includes a couple of bug fixes that we want for the Snaps execution environment. Also bumps our version of SES to match LavaMoat.

https://consensyssoftware.atlassian.net/browse/WPC-1401

@socket-security

socket-security Bot commented Oct 9, 2026 •

Copy link
Copy Markdown

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Updatedses@​1.15.0 ⏵ 2.3.0100 +110010093100
Updatedlavamoat@​11.1.5 ⏵ 11.1.793 -210010096 +7100
Updated@​lavamoat/​webpack@​2.2.4 ⏵ 3.0.196 -110010096100

View full report

@socket-security

socket-security Bot commented Oct 9, 2026 •

Copy link
Copy Markdown

All alerts resolved. Learn more about Socket for GitHub.

This PR previously contained dependency changes with security issues that have been resolved, removed, or ignored.

Ignoring alerts on:

  • ses@2.3.0
  • @endo/immutable-arraybuffer@2.0.0
  • lavamoat-core@19.0.1

View full report

@FrederikBolding

Copy link
Copy Markdown
Member Author

@SocketSecurity ignore npm/@endo/immutable-arraybuffer@2.0.0

Trusted author.

@SocketSecurity ignore npm/ses@2.3.0
@SocketSecurity ignore npm/lavamoat-core@19.0.1

False positive from AI.

@FrederikBolding
FrederikBolding marked this pull request as ready for review October 9, 2026 09:37
@FrederikBolding
FrederikBolding requested a review from a team as a code owner October 9, 2026 09:37
@codecov

codecov Bot commented Oct 9, 2026

Copy link
Copy Markdown

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 98.65%. Comparing base (f6caad2) to head (a349785).

Additional details and impacted files
@@           Coverage Diff           @@
##             main    #4150   +/-   ##
=======================================
  Coverage   98.65%   98.65%           
=======================================
  Files         429      429           
  Lines       12522    12522           
  Branches     1979     1979           
=======================================
  Hits        12354    12354           
  Misses        168      168           

☔ View full report in Codecov by Harness.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

@FrederikBolding
FrederikBolding added this pull request to the merge queue Oct 9, 2026
Merged via the queue into main with commit 96af920 Oct 9, 2026
129 checks passed
@FrederikBolding
FrederikBolding deleted the fb/bump-lm branch October 9, 2026 09:42
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants