Update dependency react-scripts to v5 #8
Mend for GitHub.com / Mend Security Check
succeeded
Apr 4, 2024 in 10m 18s
Security Report
❗️ The scan was completed with partial results. There were issues encountered while retrieving or scanning dependencies for the following package managers: python. This may result in incomplete coverage of open-source dependencies used in the repository.
✔️ 👍 You have successfully remediated 78 vulnerabilities in this branch:
CVE | Vulnerable Library |
---|---|
CVE-2022-37598 | uglify-js-3.4.10.tgz |
CVE-2020-36604 | hoek-8.5.0.tgz |
CVE-2021-32640 | ws-5.2.2.tgz |
CVE-2020-7789 | node-notifier-5.4.3.tgz |
CVE-2021-23386 | dns-packet-1.3.1.tgz |
CVE-2022-24773 | node-forge-0.9.0.tgz |
CVE-2020-7693 | sockjs-0.3.19.tgz |
CVE-2020-28477 | immer-1.10.0.tgz |
CVE-2022-0691 | url-parse-1.4.7.tgz |
CVE-2021-3664 | url-parse-1.4.7.tgz |
CVE-2021-3757 | immer-1.10.0.tgz |
CVE-2020-15256 | object-path-0.11.4.tgz |
CVE-2022-0512 | url-parse-1.4.7.tgz |
WS-2020-0091 | http-proxy-1.18.0.tgz |
CVE-2021-44906 | minimist-0.0.10.tgz |
WS-2020-0042 | acorn-6.4.0.tgz |
CVE-2022-0122 | node-forge-0.9.0.tgz |
CVE-2022-0639 | url-parse-1.4.7.tgz |
CVE-2021-23368 | postcss-7.0.25.tgz |
CVE-2022-1650 | eventsource-1.0.7.tgz |
CVE-2020-28469 | glob-parent-5.1.0.tgz |
CVE-2021-3918 | json-schema-0.2.3.tgz |
CVE-2021-27290 | ssri-7.1.0.tgz |
CVE-2022-24999 | qs-6.5.2.tgz |
CVE-2021-23382 | postcss-7.0.21.tgz |
CVE-2020-7774 | y18n-4.0.0.tgz |
CVE-2021-43138 | async-2.6.3.tgz |
CVE-2021-23424 | ansi-html-0.0.7.tgz |
CVE-2020-7608 | yargs-parser-11.1.1.tgz |
WS-2022-0008 | node-forge-0.9.0.tgz |
WS-2021-0152 | color-string-1.5.3.tgz |
CVE-2020-7598 | minimist-0.0.10.tgz |
CVE-2022-25883 | semver-7.0.0.tgz |
CVE-2021-23362 | hosted-git-info-2.8.5.tgz |
CVE-2020-7720 | node-forge-0.9.0.tgz |
CVE-2022-24999 | qs-6.7.0.tgz |
CVE-2021-28092 | is-svg-3.0.0.tgz |
CVE-2021-23368 | postcss-7.0.21.tgz |
WS-2020-0450 | handlebars-4.5.3.tgz |
CVE-2023-26136 | tough-cookie-2.4.3.tgz |
CVE-2022-25858 | terser-4.4.3.tgz |
CVE-2020-28498 | elliptic-6.5.3.tgz |
CVE-2022-46175 | json5-1.0.1.tgz |
CVE-2020-15366 | ajv-6.10.2.tgz |
CVE-2021-29060 | color-string-1.5.3.tgz |
CVE-2022-0686 | url-parse-1.4.7.tgz |
CVE-2024-29180 | webpack-dev-middleware-3.7.2.tgz |
CVE-2022-37603 | loader-utils-1.2.3.tgz |
CVE-2022-37598 | uglify-js-3.7.2.tgz |
CVE-2021-27290 | ssri-6.0.1.tgz |
CVE-2020-8116 | dot-prop-4.2.0.tgz |
CVE-2021-23436 | immer-1.10.0.tgz |
CVE-2020-7660 | serialize-javascript-2.1.2.tgz |
CVE-2023-26136 | tough-cookie-2.5.0.tgz |
CVE-2021-29059 | is-svg-3.0.0.tgz |
CVE-2021-32640 | ws-6.2.1.tgz |
CVE-2020-7608 | yargs-parser-13.1.1.tgz |
CVE-2020-28469 | glob-parent-3.1.0.tgz |
CVE-2022-24771 | node-forge-0.9.0.tgz |
CVE-2021-23434 | object-path-0.11.4.tgz |
CVE-2023-46234 | browserify-sign-4.0.4.tgz |
CVE-2021-3807 | ansi-regex-3.0.0.tgz |
CVE-2021-27515 | url-parse-1.4.7.tgz |
CVE-2022-37620 | html-minifier-3.5.21.tgz |
CVE-2023-28155 | request-2.88.0.tgz |
CVE-2024-27088 | es5-ext-0.10.53.tgz |
CVE-2024-29041 | express-4.17.1.tgz |
CVE-2021-23382 | postcss-7.0.25.tgz |
CVE-2022-37601 | loader-utils-1.2.3.tgz |
CVE-2021-26707 | merge-deep-3.0.2.tgz |
CVE-2021-42740 | shell-quote-1.7.2.tgz |
CVE-2021-24033 | react-dev-utils-10.0.0.tgz |
CVE-2021-23364 | browserslist-4.7.3.tgz |
CVE-2021-3805 | object-path-0.11.4.tgz |
CVE-2021-23383 | handlebars-4.5.3.tgz |
CVE-2021-23369 | handlebars-4.5.3.tgz |
CVE-2022-24772 | node-forge-0.9.0.tgz |
CVE-2023-42282 | ip-1.1.5.tgz |
Base branch total remaining vulnerabilities: 124
Base branch commit: 585759b277c5041e33fa778e7a918f73cf748e22
Total libraries scanned: 1532
Scan token: b110ed3f03d343edaa509752cca96692
Loading