Skip to content

Add substrate bridge validation tests (6 criteria)

00d1478
Select commit
Loading
Failed to load commit list.
Open

Update dependencies and formalize HARVEST Protocol specifications #25

Add substrate bridge validation tests (6 criteria)
00d1478
Select commit
Loading
Failed to load commit list.
Debricked / Vulnerability analysis completed Mar 25, 2026 in 17s

An automation triggered a pipeline warning

Found 20 vulnerabilities. An additional 0 vulnerabilities have been marked as unaffected.

Output from Automations

4 rules were checked:


If a new dependency is added where the license risk is at least medium

then notify all users in the group admins by email

✔️ The rule did not trigger. Manage rule



If a dependency contains a vulnerability which has not been marked as unaffected and which has not triggered this rule for this dependency before

then notify all users in the group admins by email

✔️ The rule did not trigger. Manage rule



If there is a dependency where the license risk is at least high

then send a pipeline warning

✔️ The rule did not trigger. Manage rule



If a dependency contains a vulnerability which has not been marked as unaffected

then send a pipeline warning

⚠️ The rule triggered for the following vulnerabilities, causing a pipeline warning. Manage rule

Vulnerability CVSS2 CVSS3 CVSS4 Dependency Dependency Licenses
CVE-2024-48063 N/A 9.8 N/A torch (pypi) BSD-3-Clause
CVE-2025-32434 N/A 9.8 9.3 torch (pypi) BSD-3-Clause
CVE-2024-31580 N/A 4 8.7 torch (pypi) BSD-3-Clause
CVE-2024-31583 N/A 7.8 N/A torch (pypi) BSD-3-Clause
CVE-2025-69223 N/A 7.5 N/A aiohttp (pypi) Apache-2.0
CVE-2025-69223 N/A 7.5 N/A aiohttp (pypi) Apache-2.0
CVE-2022-31169 N/A 7.5 N/A cranelift-codegen (Cargo) Apache-2.0 WITH LLVM-exception
CVE-2025-69229 N/A 5.3 6.6 aiohttp (pypi) Apache-2.0
CVE-2025-69228 N/A 7.5 6.6 aiohttp (pypi) Apache-2.0
CVE-2025-69227 N/A 7.5 6.6 aiohttp (pypi) Apache-2.0
CVE-2025-69227 N/A 7.5 6.6 aiohttp (pypi) Apache-2.0
CVE-2025-69228 N/A 7.5 6.6 aiohttp (pypi) Apache-2.0
CVE-2025-69229 N/A 5.3 6.6 aiohttp (pypi) Apache-2.0
CVE-2025-69226 N/A 5.3 6.3 aiohttp (pypi) Apache-2.0
CVE-2025-69224 N/A 6.5 6.3 aiohttp (pypi) Apache-2.0
CVE-2025-69226 N/A 5.3 6.3 aiohttp (pypi) Apache-2.0
CVE-2025-69224 N/A 6.5 6.3 aiohttp (pypi) Apache-2.0
CVE-2022-31104 6.8 5.6 N/A cranelift-codegen (Cargo) Apache-2.0 WITH LLVM-exception
CVE-2024-31584 N/A 5.5 N/A torch (pypi) BSD-3-Clause
CVE-2025-3730 1.7 5.5 4.8 torch (pypi) BSD-3-Clause
CVE-2025-2953 1.7 5.5 4.8 torch (pypi) BSD-3-Clause
CVE-2025-69225 N/A 5.3 2.7 aiohttp (pypi) Apache-2.0
CVE-2025-69230 N/A 5.3 2.7 aiohttp (pypi) Apache-2.0
CVE-2025-69230 N/A 5.3 2.7 aiohttp (pypi) Apache-2.0
CVE-2025-69225 N/A 5.3 2.7 aiohttp (pypi) Apache-2.0
debricked-286515 N/A N/A N/A esbuild (npm) MIT
debricked-217365 N/A N/A N/A rmp-serde (Cargo) MIT
debricked-258742 N/A N/A N/A wasmer (Cargo) MIT