chore(deps): update babel monorepo #6
Security Report
The Security Check found 4 vulnerabilities.
CVE | Severity | CVSS Score | Exploit Maturity | EPSS | Vulnerable Library | Suggested Fix | Issue |
---|---|---|---|---|---|---|---|
CVE-2022-39353Path to dependency file: /package.json Path to vulnerable library: /package.json Dependency Hierarchy: -> video.js-7.14.3.tgz (Root Library) -> mpd-parser-0.17.0.tgz -> ❌ xmldom-0.5.0.tgz (Vulnerable Library) |
Critical | 9.4 | Not Defined | 0.2% | xmldom-0.5.0.tgz | Upgrade to version: @xmldom/xmldom - 0.7.7,0.8.4 | None |
CVE-2020-7677Path to dependency file: /package.json Path to vulnerable library: /package.json Dependency Hierarchy: -> karma-safaritechpreview-launcher-0.0.6.tgz (Root Library) -> fs-promise-0.5.0.tgz -> thenify-all-1.6.0.tgz -> ❌ thenify-3.3.0.tgz (Vulnerable Library) |
High | 8.6 | Proof of concept | 0.4% | thenify-3.3.0.tgz | Upgrade to version: thenify - 3.3.1;org.webjars.npm:thenify:3.3.1 | None |
CVE-2022-3517Path to dependency file: /package.json Path to vulnerable library: /package.json Dependency Hierarchy: -> karma-safaritechpreview-launcher-0.0.6.tgz (Root Library) -> fs-promise-0.5.0.tgz -> fs-extra-0.26.7.tgz -> rimraf-2.6.2.tgz -> glob-7.1.2.tgz -> ❌ minimatch-3.0.4.tgz (Vulnerable Library) |
High | 7.5 | Not Defined | 0.2% | minimatch-3.0.4.tgz | Upgrade to version: minimatch - 3.0.5 | None |
CVE-2021-32796Path to dependency file: /package.json Path to vulnerable library: /package.json Dependency Hierarchy: -> video.js-7.14.3.tgz (Root Library) -> mpd-parser-0.17.0.tgz -> ❌ xmldom-0.5.0.tgz (Vulnerable Library) |
Medium | 6.5 | Not Defined | 0.1% | xmldom-0.5.0.tgz | Upgrade to version: @xmldom/xmldom - 0.7.0 | None |
Total libraries scanned: 51
Scan token: 4620524b81aa4bbf8820d766e8ddc04e