upgrade cometbft and cosmos-sdk for tachyon security fix#3320
Conversation
📝 WalkthroughWalkthroughThe protocol/go.mod file is updated to adjust dependencies and replace directives. The golang-lru/v2 indirect dependency is removed, go-buffer-pool v0.1.0 is added, and replace directives for cometbft and cosmos-sdk are updated to reference new dydxprotocol fork versions. Changes
Estimated code review effort🎯 1 (Trivial) | ⏱️ ~2 minutes Possibly related PRs
Suggested labels
Suggested reviewers
Poem
🚥 Pre-merge checks | ✅ 2 | ❌ 1❌ Failed checks (1 warning)
✅ Passed checks (2 passed)
✏️ Tip: You can configure your own custom pre-merge checks in the settings. Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
|
@Mergifyio backport release/protocol/v9.x |
✅ Backports have been createdDetails
Cherry-pick of 07b2c96 has failed: To fix up this pull request, you can check it out locally. See documentation: https://docs.github.com/en/pull-requests/collaborating-with-pull-requests/reviewing-changes-in-pull-requests/checking-out-pull-requests-locally |
(cherry picked from commit 07b2c96) # Conflicts: # protocol/go.mod # protocol/go.sum
) (#3321) Co-authored-by: Tian <tian@dydx.exchange>
see dydxprotocol/cometbft#55
Summary by CodeRabbit
✏️ Tip: You can customize this high-level summary in your review settings.