Skip to content

Update dependency moment to v2.29.4

ca42bd2
Select commit
Loading
Failed to load commit list.
Open

Update dependency moment to v2.29.4 #7

Update dependency moment to v2.29.4
ca42bd2
Select commit
Loading
Failed to load commit list.
Mend for GitHub.com / WhiteSource Security Check failed Mar 25, 2025 in 3m 10s

Security Report

You have successfully remediated 2 vulnerabilities, but introduced 3 new vulnerabilities in this branch.

❌ New vulnerabilities:

CVE Severity CVSS Score Vulnerable Library Suggested Fix Issue
CVE-2024-45590

Path to dependency file: /package.json

Path to vulnerable library: /package.json

Dependency Hierarchy:

-> ❌ body-parser-1.19.0.tgz (Vulnerable Library)

High 7.5 body-parser-1.19.0.tgz Upgrade to version: body-parser - 1.20.3 None
CVE-2024-43800

Path to dependency file: /package.json

Path to vulnerable library: /package.json

Dependency Hierarchy:

-> express-4.17.1.tgz (Root Library)

   -> ❌ serve-static-1.14.1.tgz (Vulnerable Library)

Medium 5.0 serve-static-1.14.1.tgz Upgrade to version: serve-static - 1.16.0,2.1.0 None
CVE-2024-43799

Path to dependency file: /package.json

Path to vulnerable library: /package.json

Dependency Hierarchy:

-> express-4.17.1.tgz (Root Library)

   -> ❌ send-0.17.1.tgz (Vulnerable Library)

Medium 5.0 send-0.17.1.tgz Upgrade to version: send - 0.19.0 None

✔️ Remediated vulnerabilities:

CVE Vulnerable Library
CVE-2022-24785 moment-2.29.1.tgz
CVE-2022-31129 moment-2.29.1.tgz

Base branch total remaining vulnerabilities: 102
Base branch commit: null


Total libraries scanned: 1620

Scan token: 3992927b3f9b4e168bdf0a1d359623b1