Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Checkmarx Bot - Auto Pull Request in branch "main" #2

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

tamarleviCm
Copy link
Owner

Checkmarx created this PR to replace vulnerable packages.
You can check the package details in the Files Changed tab

@tamarleviCm
Copy link
Owner Author

Logo
Checkmarx One – Scan Summary & Detailsdefc1c1b-de79-458c-bb7f-e01f1c46cd01

Fixed Issues

Severity Issue Source File / Package
HIGH CVE-2016-10540 Npm-minimatch-0.3.0
HIGH CVE-2017-16042 Npm-growl-1.9.2
HIGH CVE-2017-16114 Npm-marked-0.3.5
HIGH CVE-2020-7610 Npm-bson-1.0.9
HIGH CVE-2022-21680 Npm-marked-0.3.5
HIGH CVE-2022-21681 Npm-marked-0.3.5
HIGH CVE-2022-24785 Npm-moment-2.24.0
HIGH CVE-2022-31129 Npm-moment-2.24.0
HIGH Cx10578cb2-c0fc Npm-cypress-3.8.3
HIGH Cx62f5bb1b-fa5e Npm-moment-2.24.0
HIGH Cxb3ca64d2-9cd1 Npm-mocha-2.5.3
HIGH Cxd6c215a2-86bd Npm-mongodb-2.2.36
MEDIUM CVE-2016-10531 Npm-marked-0.3.5
MEDIUM CVE-2017-1000427 Npm-marked-0.3.5
MEDIUM CVE-2019-2391 Npm-bson-1.0.9
MEDIUM Cx3bab5572-419d Npm-marked-0.3.5
MEDIUM Cx77c0fe72-ea38 Npm-yauzl-2.4.1
MEDIUM Cx816df59e-1cc9 Npm-marked-0.3.5
MEDIUM Cx9b9f022f-6dff Npm-marked-0.3.5
MEDIUM Cxbd6f2b91-dd38 Npm-debug-3.2.6
MEDIUM Cxee7cbf9f-8b8d Npm-marked-0.3.5
MEDIUM Cxef2b7924-22da Npm-marked-0.3.5

@tamarleviCm tamarleviCm deleted the checkmarx-main-zfpb9YlIvx3YFxW5 branch September 18, 2024 11:09
@tamarleviCm tamarleviCm restored the checkmarx-main-zfpb9YlIvx3YFxW5 branch September 25, 2024 12:15
@tamarleviCm tamarleviCm reopened this Sep 25, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant