Mend for GitHub.com / WhiteSource Security Check
failed
Nov 12, 2024 in 9m 46s
Security Report
You have successfully remediated 1 vulnerabilities, but introduced 2 new vulnerabilities in this branch.
❌ New vulnerabilities:
CVE | Severity | CVSS Score | Vulnerable Library | Suggested Fix | Issue |
---|---|---|---|---|---|
WS-2023-0439Path to dependency file: /package.json Path to vulnerable library: /node_modules/axios/package.json Dependency Hierarchy: -> @osd/ui-shared-deps-1.0.0.tgz (Root Library) -> ❌ axios-0.28.1.tgz (Vulnerable Library) |
High | 7.5 | axios-0.28.1.tgz | Upgrade to version: axios - 1.6.3,0.20.0 | None |
CVE-2023-26156Path to dependency file: /package.json Path to vulnerable library: /node_modules/chromedriver/package.json Dependency Hierarchy: -> ❌ chromedriver-107.0.3.tgz (Vulnerable Library) |
Medium | 5.6 | chromedriver-107.0.3.tgz | Upgrade to version: chromedriver - 119.0.1 | None |
✔️ Remediated vulnerabilities:
CVE | Vulnerable Library |
---|---|
CVE-2023-28155 | request-2.88.12.tgz |
Base branch total remaining vulnerabilities: 19
Base branch commit: 76cf823e0a52e101e3e9b5fbe03836ec529229da
Total libraries scanned: 2459
Scan token: 227f16c127f74c94b9ba09fc1e9fcfd5
Loading