Mend Bolt for GitHub / Mend Security Check
failed
Oct 12, 2024 in 7m 18s
Security Report
The Security Check found 3 vulnerabilities.
CVE | Severity | Vulnerable Library | Suggested Fix | Issue | |
---|---|---|---|---|---|
CVE-2024-35195Path to dependency file: /docs/requirements.txt Path to vulnerable library: /docs/requirements.txt Dependency Hierarchy: -> ❌ requests-2.31.0-py3-none-any.whl (Vulnerable Library) |
5.6 | requests-2.31.0-py3-none-any.whl | Upgrade to version: requests - 2.32.0 | #9337 | |
CVE-2024-1899Path to dependency file: /package.json Path to vulnerable library: /node_modules/showdown/package.json Dependency Hierarchy: -> ❌ showdown-2.1.0.tgz (Vulnerable Library) |
5.3 | showdown-2.1.0.tgz | #9333 | ||
CVE-2024-37891Path to dependency file: /docs/requirements.txt Path to vulnerable library: /docs/requirements.txt Dependency Hierarchy: -> ❌ urllib3-2.0.7-py3-none-any.whl (Vulnerable Library) |
4.4 | urllib3-2.0.7-py3-none-any.whl | Upgrade to version: urllib3 - 1.26.19,2.2.2 | #9334 |
Total libraries scanned: 905
Scan token: 4538573a2f1e4dd1ba654586d47828a8
Loading