Skip to content

fix(deps): update dependency @actions/github to v6

Wiz Inc. (48d099cbad) / Wiz Vulnerability Scanner completed Feb 9, 2024 in 3s

Wiz Vulnerability Scanner

Well Met, High Commander of Heap Management! ๐Ÿž๏ธ

The runes of inspection revealed a landscape adorned with new mysteries within this code. ๐Ÿ“œ๐Ÿ”ฎ

Exposing Vulnerabilities with Wiz ๐Ÿช„

๐Ÿ”ฎ Vulnerabilities Detected: 3

โ€• Note from Wiz: "Like a code illusionist, you're making bugs vanish into thin air! ๐Ÿช„๐ŸŽฉ"

Annotations

Check warning on line 1 in package-lock.json

See this annotation in the file changed.

@wiz-inc-48d099cbad wiz-inc-48d099cbad / Wiz Vulnerability Scanner

tough-cookie:3.0.1

Detected Vulnerabilities:
  CVE-2023-26136, Severity: Medium, Source: https://github.com/advisories/GHSA-72xf-g2v4-qvf3
    CVSS score: 9.8, CVSS exploitability score: 3.9
    ๐Ÿฉน Fixed version: 4.1.3
    ๐Ÿ’ฅ Has public exploit
    ๐Ÿงจ Has CISA KEV exploit

Check warning on line 1 in package-lock.json

See this annotation in the file changed.

@wiz-inc-48d099cbad wiz-inc-48d099cbad / Wiz Vulnerability Scanner

xml2js:0.4.23

Detected Vulnerabilities:
  CVE-2023-0842, Severity: Medium, Source: https://github.com/advisories/GHSA-776f-qx25-q3cc
    CVSS score: 5.3, CVSS exploitability score: 3.9
    ๐Ÿฉน Fixed version: 0.5.0
    ๐Ÿ’ฅ Has public exploit
    ๐Ÿงจ Has CISA KEV exploit

Check warning on line 1 in package-lock.json

See this annotation in the file changed.

@wiz-inc-48d099cbad wiz-inc-48d099cbad / Wiz Vulnerability Scanner

semver:6.3.0

Detected Vulnerabilities:
  CVE-2022-25883, Severity: Medium, Source: https://github.com/advisories/GHSA-c2qf-rxjj-qqgw
    CVSS score: 7.5, CVSS exploitability score: 3.9
    ๐Ÿฉน Fixed version: 6.3.1
    ๐Ÿ’ฅ Has public exploit
    ๐Ÿงจ Has CISA KEV exploit