Update dependency express to v4.21.1 #5
Mend for GitHub.com / WhiteSource Security Check
failed
Apr 29, 2025 in 1m 22s
Security Report
You have successfully remediated 5 vulnerabilities, but introduced 1 new vulnerabilities in this branch.
❌ New vulnerabilities:
CVE | Severity | Vulnerable Library | Suggested Fix | Issue | |
---|---|---|---|---|---|
CVE-2024-52798Path to dependency file: /package.json Path to vulnerable library: /package.json Dependency Hierarchy: -> express-4.21.1.tgz (Root Library) -> ❌ path-to-regexp-0.1.10.tgz (Vulnerable Library) |
7.5 | path-to-regexp-0.1.10.tgz | Upgrade to version: path-to-regexp - 0.1.12 | None |
✔️ Remediated vulnerabilities:
CVE | Vulnerable Library |
---|---|
CVE-2024-29041 | express-4.18.2.tgz |
CVE-2024-47764 | cookie-0.5.0.tgz |
CVE-2024-52798 | path-to-regexp-0.1.7.tgz |
CVE-2024-45590 | body-parser-1.20.1.tgz |
CVE-2024-45296 | path-to-regexp-0.1.7.tgz |
Base branch total remaining vulnerabilities: 7
Base branch commit: null
Total libraries scanned: 127
Scan token: ef92a84a2c2542f28741281a2e921cff
Loading