Update dependency express to v4.21.2 #11
+440
−111
Open
Mend for GitHub.com / WhiteSource Security Check
failed
Dec 6, 2024 in 14m 47s
Security Report
You have successfully remediated 6 vulnerabilities, but introduced 1 new vulnerabilities in this branch.
❌ New vulnerabilities:
CVE | Severity | CVSS Score | Vulnerable Library | Suggested Fix | Issue |
---|---|---|---|---|---|
CVE-2024-45590Path to dependency file: /package.json Path to vulnerable library: /node_modules/body-parser/package.json Dependency Hierarchy: -> ❌ body-parser-1.18.3.tgz (Vulnerable Library) |
High | 7.5 | body-parser-1.18.3.tgz | Upgrade to version: body-parser - 1.20.3 | #6 |
✔️ Remediated vulnerabilities:
CVE | Vulnerable Library |
---|---|
CVE-2024-43799 | send-0.16.2.tgz |
CVE-2024-43796 | express-4.16.4.tgz |
CVE-2024-47764 | cookie-0.3.1.tgz |
CVE-2024-29041 | express-4.16.4.tgz |
CVE-2024-52798 | path-to-regexp-0.1.7.tgz |
CVE-2024-45296 | path-to-regexp-0.1.7.tgz |
Base branch total remaining vulnerabilities: 24
Base branch commit: null
Total libraries scanned: 134
Scan token: 371a59f4bab24fcb86e07f0fdb4a58b6
Loading