Skip to content

Update dependency express to v4.21.1

e25eba8
Select commit
Loading
Failed to load commit list.
Open

Update dependency express to v4.21.1 #17

Update dependency express to v4.21.1
e25eba8
Select commit
Loading
Failed to load commit list.
Mend for GitHub.com / WhiteSource Security Check failed Oct 1, 2025 in 5m 23s

Security Report

You have successfully remediated 5 vulnerabilities, but introduced 2 new vulnerabilities in this branch.

❌ New vulnerabilities:

Vulnerability Severity CVSS Score Vulnerable Library Direct Library Suggested Fix Issue
CVE-2024-52798

Path to dependency file: /package.json

Path to vulnerable library: /package.json

Dependency Hierarchy:

-> express-4.21.1.tgz (Root Library)

   -> ❌ path-to-regexp-0.1.10.tgz (Vulnerable Library)

High 7.5 Transitive path-to-regexp-0.1.10.tgz express-4.21.1.tgz Transitive 0.1.12 None
CVE-2024-45590

Path to dependency file: /package.json

Path to vulnerable library: /package.json

Dependency Hierarchy:

-> ❌ body-parser-1.19.0.tgz (Vulnerable Library)

High 7.5 Direct body-parser-1.19.0.tgz body-parser-1.19.0.tgz 1.20.3 None

✔️ Remediated vulnerabilities:

Vulnerability Vulnerable Library
CVE-2024-43796 express-4.17.1.tgz
CVE-2024-45296 path-to-regexp-0.1.7.tgz
CVE-2024-47764 cookie-0.4.0.tgz
CVE-2024-29041 express-4.17.1.tgz
CVE-2024-52798 path-to-regexp-0.1.7.tgz

Base branch total remaining vulnerabilities: 119
Base branch commit: null


Total libraries scanned: 1652

Scan token: 4b8d91182a5c4143be242a76580e7000