Update dependency moment to v2.29.4 #7
Security Report
You have successfully remediated 2 vulnerabilities, but introduced 3 new vulnerabilities in this branch.
❌ New vulnerabilities:
| CVE | Severity | Vulnerable Library | Suggested Fix | Issue | |
|---|---|---|---|---|---|
CVE-2024-45590Path to dependency file: /package.json Path to vulnerable library: /package.json Dependency Hierarchy: -> ❌ body-parser-1.19.0.tgz (Vulnerable Library) |
7.5 | body-parser-1.19.0.tgz | Upgrade to version: body-parser - 1.20.3 | None | |
CVE-2024-43800Path to dependency file: /package.json Path to vulnerable library: /package.json Dependency Hierarchy: -> express-4.17.1.tgz (Root Library) -> ❌ serve-static-1.14.1.tgz (Vulnerable Library) |
5.0 | serve-static-1.14.1.tgz | Upgrade to version: serve-static - 1.16.0,2.1.0 | None | |
CVE-2024-43799Path to dependency file: /package.json Path to vulnerable library: /package.json Dependency Hierarchy: -> express-4.17.1.tgz (Root Library) -> ❌ send-0.17.1.tgz (Vulnerable Library) |
5.0 | send-0.17.1.tgz | Upgrade to version: send - 0.19.0 | None |
✔️ Remediated vulnerabilities:
| CVE | Vulnerable Library |
|---|---|
| CVE-2022-24785 | moment-2.29.1.tgz |
| CVE-2022-31129 | moment-2.29.1.tgz |
Base branch total remaining vulnerabilities: 102
Base branch commit: null
Total libraries scanned: 1620
Scan token: 3992927b3f9b4e168bdf0a1d359623b1