mend-bolt-for-github[bot]

Results 3392 issues of mend-bolt-for-github[bot]
trafficstars

## CVE-2022-25758 - High Severity Vulnerability Vulnerable Library - scss-tokenizer-0.2.3.tgz A tokenzier for Sass' SCSS syntax Library home page: https://registry.npmjs.org/scss-tokenizer/-/scss-tokenizer-0.2.3.tgz Path to dependency file: /package.json Path to vulnerable library: /node_modules/scss-tokenizer/package.json...

security vulnerability

## CVE-2022-33987 - Medium Severity Vulnerability Vulnerable Library - got-9.6.0.tgz Simplified HTTP requests Library home page: https://registry.npmjs.org/got/-/got-9.6.0.tgz Path to dependency file: /package.json Path to vulnerable library: /node_modules/got/package.json Dependency Hierarchy: -...

Mend: dependency security vulnerability

## CVE-2022-0639 - Medium Severity Vulnerability Vulnerable Library - url-parse-1.2.0.tgz Small footprint URL parser that works seamlessly across Node.js and browser environments Library home page: https://registry.npmjs.org/url-parse/-/url-parse-1.2.0.tgz Path to dependency file:...

Mend: dependency security vulnerability

## CVE-2020-15168 - Medium Severity Vulnerability Vulnerable Library - node-fetch-2.1.2.tgz A light-weight module that brings window.fetch to node.js Library home page: https://registry.npmjs.org/node-fetch/-/node-fetch-2.1.2.tgz Path to dependency file: /package.json Path to vulnerable...

security vulnerability

## CVE-2020-36048 - High Severity Vulnerability Vulnerable Library - engine.io-3.5.0.tgz The realtime engine behind Socket.IO. Provides the foundation of a bidirectional connection between client and server Library home page: https://registry.npmjs.org/engine.io/-/engine.io-3.5.0.tgz...

security vulnerability

## CVE-2021-37713 - High Severity Vulnerability Vulnerable Library - tar-2.2.2.tgz tar for node Library home page: https://registry.npmjs.org/tar/-/tar-2.2.2.tgz Path to dependency file: /package.json Path to vulnerable library: /node_modules/tar/package.json Dependency Hierarchy: -...

security vulnerability

## CVE-2022-0686 - Critical Severity Vulnerability Vulnerable Library - url-parse-1.2.0.tgz Small footprint URL parser that works seamlessly across Node.js and browser environments Library home page: https://registry.npmjs.org/url-parse/-/url-parse-1.2.0.tgz Path to dependency file:...

Mend: dependency security vulnerability

## CVE-2021-27515 - Medium Severity Vulnerability Vulnerable Library - url-parse-1.2.0.tgz Small footprint URL parser that works seamlessly across Node.js and browser environments Library home page: https://registry.npmjs.org/url-parse/-/url-parse-1.2.0.tgz Path to dependency file:...

Mend: dependency security vulnerability

## WS-2021-0153 - High Severity Vulnerability Vulnerable Library - ejs-2.7.4.tgz Embedded JavaScript templates Library home page: https://registry.npmjs.org/ejs/-/ejs-2.7.4.tgz Path to dependency file: /package.json Path to vulnerable library: /node_modules/ejs/package.json Dependency Hierarchy: -...

security vulnerability

## CVE-2021-37712 - High Severity Vulnerability Vulnerable Library - tar-2.2.2.tgz tar for node Library home page: https://registry.npmjs.org/tar/-/tar-2.2.2.tgz Path to dependency file: /package.json Path to vulnerable library: /node_modules/tar/package.json Dependency Hierarchy: -...

security vulnerability