What changed, and why it matters
This commit is a minor maintenance update for the Monero (XMR) and Wownero (WOW) parts of Stack Wallet. It bumps two internal library versions from 1.1.0 to 1.1.1 and adds an import for a Salvium-related interface. There is no direct evidence in the commit itself that this fixes a security vulnerability. It looks like a routine dependency refresh.
Treat as routine maintenance. Review the `cs_monero` 1.1.1 release notes or changelog to confirm whether the patch version addresses any security issues. If the upstream library fixed a vulnerability, consider issuing an advisory and updating user-facing release notes accordingly.
Security signals we found
Dependency version bump (cs_monero 1.1.0 -> 1.1.1, cs_monero_flutter_libs 1.1.0 -> 1.1.1)
New import of Salvium interface (WrappedWallet) in XMR/WOW template
No explicit security fix, CVE reference, or vulnerability description in commit message or diff
Evidence from the diff
The diff changes two files: (1) pubspec.template.yaml updates pinned versions of cs_monero and cs_monero_flutter_libs from 1.1.0 to 1.1.1, and (2) XMR_cs_monero_interface_impl.template.dart adds an import of ../interfaces/cs_salvium_interface.dart to expose WrappedWallet. No functional code changes, bug fixes, or security mitigations are visible in the diff. The security relevance, if any, would depend entirely on the unpublished contents of cs_monero 1.1.1.
Changed components
scripts/app_config/templates/pubspec.template.yamltool/wl_templates/XMR_cs_monero_interface_impl.template.dartMonero (XMR) wallet integrationWownero (WOW) wallet integrationcs_monero and cs_monero_flutter_libs dependenciesInspect captured patch +3 / −2
diff --git a/scripts/app_config/templates/pubspec.template.yaml b/scripts/app_config/templates/pubspec.template.yaml
index 2fa772b..5649487 100644
--- a/scripts/app_config/templates/pubspec.template.yaml
+++ b/scripts/app_config/templates/pubspec.template.yaml
@@ -61,8 +61,8 @@ dependencies:
# %%END_ENABLE_TOR%%
# %%ENABLE_XMR%%
-# cs_monero: 1.1.0
-# cs_monero_flutter_libs: 1.1.0
+# cs_monero: 1.1.1
+# cs_monero_flutter_libs: 1.1.1
# %%END_ENABLE_XMR%%
# %%ENABLE_SAL%%
diff --git a/tool/wl_templates/XMR_cs_monero_interface_impl.template.dart b/tool/wl_templates/XMR_cs_monero_interface_impl.template.dart
index adcd951..af0016e 100644
--- a/tool/wl_templates/XMR_cs_monero_interface_impl.template.dart
+++ b/tool/wl_templates/XMR_cs_monero_interface_impl.template.dart
@@ -10,6 +10,7 @@ import 'package:cs_monero/src/ffi_bindings/wownero_wallet_bindings.dart'
//END_ON
import '../../models/input.dart';
import '../interfaces/cs_monero_interface.dart';
+import '../interfaces/cs_salvium_interface.dart' show WrappedWallet;
CsMoneroInterface get csMonero => _getInterface();
Why this scored 12/100
Community notes
Notes can correct, qualify, or add evidence to the AI analysis. Every note shown here has been validated by a human moderator.
The AI analysis stands alone for now. Submit a note if you can add evidence or important context.