mend-bolt-for-github[bot]

Results 3422 issues of mend-bolt-for-github[bot]

Vulnerable Library - Werkzeug-2.2.3-py3-none-any.whl The comprehensive WSGI web application library. Library home page: https://files.pythonhosted.org/packages/f6/f8/9da63c1617ae2a1dec2fbf6412f3a0cfe9d4ce029eccbda6e1e4258ca45f/Werkzeug-2.2.3-py3-none-any.whl Path to dependency file: /requirements.txt Path to vulnerable library: /requirements.txt Found in HEAD commit: c24b250c4fdd4b0bb57881f5f09e59a6f6a1a3b5 ##...

Mend: dependency security vulnerability

Vulnerable Library - sentry_sdk-1.14.0-py2.py3-none-any.whl Python client for Sentry (https://sentry.io) Library home page: https://files.pythonhosted.org/packages/06/fa/cfc43276f3221006d861bf7e66d7361a47106121df65947fd3225793d845/sentry_sdk-1.14.0-py2.py3-none-any.whl Path to dependency file: /requirements.txt Path to vulnerable library: /requirements.txt Found in HEAD commit: c24b250c4fdd4b0bb57881f5f09e59a6f6a1a3b5 ## Vulnerabilities...

Mend: dependency security vulnerability

Vulnerable Library - Flask_Cors-4.0.1-py2.py3-none-any.whl A Flask extension adding a decorator for CORS support Library home page: https://files.pythonhosted.org/packages/8b/52/2aa6285f104616f73ee1ad7905a16b2b35af0143034ad0cf7b64bcba715c/Flask_Cors-4.0.1-py2.py3-none-any.whl Path to dependency file: /requirements.txt Path to vulnerable library: /requirements.txt Found in HEAD...

Mend: dependency security vulnerability

Vulnerable Library - urllib3-2.0.7-py3-none-any.whl HTTP library with thread-safe connection pooling, file post, and more. Library home page: https://files.pythonhosted.org/packages/d2/b2/b157855192a68541a91ba7b2bbcb91f1b4faa51f8bae38d8005c034be524/urllib3-2.0.7-py3-none-any.whl Path to dependency file: /requirements.txt Path to vulnerable library: /requirements.txt Found in...

Mend: dependency security vulnerability
no-issue-activity

Vulnerable Library - zipp-3.15.0-py3-none-any.whl Backport of pathlib-compatible object wrapper for zip files Library home page: https://files.pythonhosted.org/packages/5b/fa/c9e82bbe1af6266adf08afb563905eb87cab83fde00a0a08963510621047/zipp-3.15.0-py3-none-any.whl Path to dependency file: /requirements.txt Path to vulnerable library: /requirements.txt Found in HEAD commit:...

Mend: dependency security vulnerability

Vulnerable Library - scikit_learn-1.0.1-cp37-cp37m-manylinux_2_12_x86_64.manylinux2010_x86_64.whl A set of python modules for machine learning and data mining Library home page: https://files.pythonhosted.org/packages/ad/ce/cb69e20a50024db3584e58fa9037c87885598d9b6f27d64e2c456ec01b8b/scikit_learn-1.0.1-cp37-cp37m-manylinux_2_12_x86_64.manylinux2010_x86_64.whl Path to dependency file: /requirements.txt Path to vulnerable library: /requirements.txt Found...

Mend: dependency security vulnerability

Vulnerable Library - certifi-2024.2.2-py3-none-any.whl Python package for providing Mozilla's CA Bundle. Library home page: https://files.pythonhosted.org/packages/ba/06/a07f096c664aeb9f01624f858c3add0a4e913d6c96257acb4fce61e7de14/certifi-2024.2.2-py3-none-any.whl Path to dependency file: /requirements.txt Path to vulnerable library: /requirements.txt Found in HEAD commit: c24b250c4fdd4b0bb57881f5f09e59a6f6a1a3b5...

Mend: dependency security vulnerability

## CVE-2024-35255 - Medium Severity Vulnerability Vulnerable Libraries - microsoft.identity.client.4.56.0.nupkg, azure.identity.1.10.3.nupkg, azure.identity.1.10.4.nupkg microsoft.identity.client.4.56.0.nupkg This package contains the binaries of the Microsoft Authentication Library for .NET (MSAL.NET). Library home page: https://api.nuget.org/packages/microsoft.identity.client.4.56.0.nupkg...

Mend: dependency security vulnerability

## CVE-2024-30105 - High Severity Vulnerability Vulnerable Libraries - system.text.json.8.0.0.nupkg, system.text.json.7.0.2.nupkg system.text.json.8.0.0.nupkg Provides high-performance and low-allocating types that serialize objects to JavaScript Object Notation (JSON) text and deserialize JSON text...

Mend: dependency security vulnerability

## CVE-2024-29857 - High Severity Vulnerability Vulnerable Library - bouncycastle.cryptography.2.3.0.nupkg BouncyCastle.NET is a popular cryptography library for .NET Library home page: https://api.nuget.org/packages/bouncycastle.cryptography.2.3.0.nupkg Path to dependency file: /src/Server/BlazorBoilerplate.Server/BlazorBoilerplate.Server.csproj Path to vulnerable...

Mend: dependency security vulnerability