Update dependency express to v4.21.2 #2
Mend for GitHub.com / Mend Security Check
failed
Dec 6, 2024 in 12m 52s
Security Report
1 new vulnerabilities were introduced in this branch.
❌ New vulnerabilities:
CVE | Severity | CVSS Score | Vulnerable Library | Suggested Fix | Issue | Reachability |
---|---|---|---|---|---|---|
CVE-2024-47764Path to dependency file: /backend/package.json Path to vulnerable library: /backend/node_modules/express/node_modules/cookie/package.json Dependency Hierarchy: -> express-4.20.0.tgz (Root Library) -> ❌ cookie-0.6.0.tgz (Vulnerable Library) |
Medium | 5.3 | cookie-0.6.0.tgz | Upgrade to version: cookie - 0.7.0 | None |
Base branch total remaining vulnerabilities: 82
Base branch commit: a3ba1679b8965c9f00f5ca1f92a5800372757c57
Total libraries scanned: 2147
Scan token: 631d2a1938684019b5439e2760533b35
Loading