mend-bolt-for-github[bot]

Results 3422 issues of mend-bolt-for-github[bot]

## CVE-2024-11831 - Medium Severity Vulnerability Vulnerable Library - serialize-javascript-6.0.0.tgz Serialize JavaScript to a superset of JSON that includes regular expressions and functions. Library home page: https://registry.npmjs.org/serialize-javascript/-/serialize-javascript-6.0.0.tgz Path to dependency...

Mend: dependency security vulnerability

## CVE-2024-52798 - High Severity Vulnerability Vulnerable Library - path-to-regexp-0.1.7.tgz Express style path to RegExp utility Library home page: https://registry.npmjs.org/path-to-regexp/-/path-to-regexp-0.1.7.tgz Dependency Hierarchy: - webpack-dev-server-4.2.1.tgz (Root Library) - express-4.17.1.tgz - :x:...

Mend: dependency security vulnerability

## CVE-2024-21536 - High Severity Vulnerability Vulnerable Library - http-proxy-middleware-2.0.1.tgz The one-liner node.js proxy middleware for connect, express and browser-sync Library home page: https://registry.npmjs.org/http-proxy-middleware/-/http-proxy-middleware-2.0.1.tgz Path to dependency file: /root/package.json Path...

Mend: dependency security vulnerability

## CVE-2024-47764 - Medium Severity Vulnerability Vulnerable Library - cookie-0.4.0.tgz HTTP server cookie parsing and serialization Library home page: https://registry.npmjs.org/cookie/-/cookie-0.4.0.tgz Path to dependency file: /server/client/package.json Path to vulnerable library: /server/client/node_modules/cookie/package.json,/root/node_modules/cookie/package.json...

Mend: dependency security vulnerability

## CVE-2025-27789 - Medium Severity Vulnerability Vulnerable Libraries - runtime-7.15.4.tgz, runtime-corejs3-7.15.4.tgz, runtime-7.12.1.tgz, helpers-7.15.4.tgz runtime-7.15.4.tgz babel's modular runtime helpers Library home page: https://registry.npmjs.org/@babel/runtime/-/runtime-7.15.4.tgz Path to dependency file: /dmreactplugin/package.json Path to vulnerable...

Mend: dependency security vulnerability

## CVE-2025-27152 - High Severity Vulnerability Vulnerable Library - axios-0.21.4.tgz Promise based HTTP client for the browser and node.js Library home page: https://registry.npmjs.org/axios/-/axios-0.21.4.tgz Path to dependency file: /dmplugins/package.json Path to...

Mend: dependency security vulnerability

## CVE-2024-21538 - High Severity Vulnerability Vulnerable Libraries - cross-spawn-6.0.5.tgz, cross-spawn-7.0.3.tgz cross-spawn-6.0.5.tgz Cross platform child_process#spawn and child_process#spawnSync Library home page: https://registry.npmjs.org/cross-spawn/-/cross-spawn-6.0.5.tgz Path to dependency file: /dmreactplugin/package.json Path to vulnerable library:...

Mend: dependency security vulnerability

## CVE-2024-9506 - Low Severity Vulnerability Vulnerable Library - vue-2.6.14.tgz Reactive, component-oriented view layer for modern web interfaces. Library home page: https://registry.npmjs.org/vue/-/vue-2.6.14.tgz Path to dependency file: /dmplugins/package.json Path to vulnerable...

Mend: dependency security vulnerability

## CVE-2024-21536 - High Severity Vulnerability Vulnerable Library - http-proxy-middleware-0.19.1.tgz The one-liner node.js proxy middleware for connect, express and browser-sync Library home page: https://registry.npmjs.org/http-proxy-middleware/-/http-proxy-middleware-0.19.1.tgz Path to dependency file: /dmreactplugin/package.json Path...

Mend: dependency security vulnerability

## CVE-2024-55565 - Medium Severity Vulnerability Vulnerable Library - nanoid-3.1.25.tgz A tiny (108 bytes), secure URL-friendly unique string ID generator Library home page: https://registry.npmjs.org/nanoid/-/nanoid-3.1.25.tgz Path to dependency file: /dmreactplugin/package.json Path...

Mend: dependency security vulnerability