mend-bolt-for-github[bot]

Results 3421 issues of mend-bolt-for-github[bot]

## CVE-2019-8331 - Medium Severity Vulnerability Vulnerable Library - bootstrap-4.0.0.min.js The most popular front-end framework for developing responsive, mobile first projects on the web. Library home page: https://cdnjs.cloudflare.com/ajax/libs/twitter-bootstrap/4.0.0/js/bootstrap.min.js Path to...

Mend: dependency security vulnerability

## CVE-2020-28503 - High Severity Vulnerability Vulnerable Library - copy-props-2.0.4.tgz Copy properties deeply between two objects. Library home page: https://registry.npmjs.org/copy-props/-/copy-props-2.0.4.tgz Path to dependency file: /day60/package.json Path to vulnerable library: /day60/package.json,/day59/package.json...

Mend: dependency security vulnerability

## CVE-2021-43138 - High Severity Vulnerability Vulnerable Library - async-1.5.2.tgz Higher-order functions and common patterns for asynchronous code Library home page: https://registry.npmjs.org/async/-/async-1.5.2.tgz Dependency Hierarchy: - browser-sync-2.26.13.tgz (Root Library) - portscanner-2.1.1.tgz...

security vulnerability

## CVE-2021-23343 - Medium Severity Vulnerability Vulnerable Library - path-parse-1.0.6.tgz Node.js path.parse() ponyfill Library home page: https://registry.npmjs.org/path-parse/-/path-parse-1.0.6.tgz Path to dependency file: /day60/package.json Path to vulnerable library: /day60/package.json,/day59/package.json Dependency Hierarchy: -...

Mend: dependency security vulnerability

## CVE-2020-7788 - High Severity Vulnerability Vulnerable Library - ini-1.3.5.tgz An ini encoder/decoder for node Library home page: https://registry.npmjs.org/ini/-/ini-1.3.5.tgz Path to dependency file: /day60/package.json Path to vulnerable library: /day60/package.json,/day59/package.json Dependency...

Mend: dependency security vulnerability

## CVE-2018-19827 - Medium Severity Vulnerability Vulnerable Library - node-sass-4.14.1.tgz Wrapper around libsass Library home page: https://registry.npmjs.org/node-sass/-/node-sass-4.14.1.tgz Path to dependency file: /day59/package.json Path to vulnerable library: /day59/package.json,/day60/package.json Dependency Hierarchy: -...

Mend: dependency security vulnerability

## CVE-2021-23337 - High Severity Vulnerability Vulnerable Library - lodash-4.17.20.tgz Lodash modular utilities. Library home page: https://registry.npmjs.org/lodash/-/lodash-4.17.20.tgz Path to dependency file: /day59/package.json Path to vulnerable library: /day59/package.json,/day60/package.json Dependency Hierarchy: -...

Mend: dependency security vulnerability

## CVE-2020-7774 - High Severity Vulnerability Vulnerable Libraries - y18n-3.2.1.tgz, y18n-4.0.0.tgz y18n-3.2.1.tgz the bare-bones internationalization library used by yargs Library home page: https://registry.npmjs.org/y18n/-/y18n-3.2.1.tgz Path to dependency file: /day60/package.json Path to...

Mend: dependency security vulnerability

## CVE-2018-11694 - Medium Severity Vulnerability Vulnerable Library - node-sass-4.14.1.tgz Wrapper around libsass Library home page: https://registry.npmjs.org/node-sass/-/node-sass-4.14.1.tgz Path to dependency file: /day59/package.json Path to vulnerable library: /day59/package.json,/day60/package.json Dependency Hierarchy: -...

Mend: dependency security vulnerability

## CVE-2018-11698 - High Severity Vulnerability Vulnerable Library - node-sass-4.14.1.tgz Wrapper around libsass Library home page: https://registry.npmjs.org/node-sass/-/node-sass-4.14.1.tgz Dependency Hierarchy: - gulp-sass-4.1.0.tgz (Root Library) - :x: **node-sass-4.14.1.tgz** (Vulnerable Library) Found in...

security vulnerability