Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update dependency lxml to v4.9.1 #17

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Update dependency lxml to v4.9.1

e3c6056
Select commit
Loading
Failed to load commit list.
Open

Update dependency lxml to v4.9.1 #17

Update dependency lxml to v4.9.1
e3c6056
Select commit
Loading
Failed to load commit list.
Mend for GitHub.com / Mend Security Check succeeded Jan 6, 2025 in 3m 3s

Security Report

❗️Scan Warnings: The scan completed with warnings. The integration encountered issues with one or more projects in this repository. Consequently, there may be gaps in the coverage of open-source dependencies used in the repository.

Scan Details Report

pip

/tmp/ws-scm/Vulnerable-Flask-App/app/requirements.txt

Step Level Description Details
Resolving the project ⚠Warn Some problems occurred while performing the resolution operation
  • Failed to execute command: /tmp/ws-ua_20250106125331_LHPFYE/cmd_AHSQWL/20250106125448/PYHYWQ_script.sh
    Error lines:
    [ error: subprocess-exited-with-error, × python setup.py egg_info did not run successfully., │ exit code: 1, ╰─> [6 lines of output], Traceback (most recent call last):, File "", line 2, in , File "", line...
  • pip install command failed, trying to install dependencies one by one
  • Failed to resolve the following dependencies: [packaging-24.2] from /tmp/ws-scm/Vulnerable-Flask-App/app/requirements.txt file.

✔️ 👍 You have successfully remediated 5 vulnerabilities in this branch:
CVE Vulnerable Library
CVE-2018-19787 lxml-4.2.1.tar.gz
CVE-2020-27783 lxml-4.2.1.tar.gz
CVE-2022-2309 lxml-4.2.1.tar.gz
CVE-2021-28957 lxml-4.2.1.tar.gz
CVE-2021-43818 lxml-4.2.1.tar.gz

Base branch total remaining vulnerabilities: 43
Base branch commit: 0391adf155a3806d8b5826b53a62b65a5d06c09e


Total libraries scanned: 31

Scan token: dad5e7ee50cc4099bd5f3812489afcbd