mend-bolt-for-github[bot]

Results 3408 issues of mend-bolt-for-github[bot]

## CVE-2024-6531 - Medium Severity Vulnerability Vulnerable Libraries - bootstrap-4.5.3.js, bootstrap-4.0.0.min.js, bootstrap-4.5.3.tgz, bootstrap-4.5.3.min.js bootstrap-4.5.3.js The most popular front-end framework for developing responsive, mobile first projects on the web. Library home...

Mend: dependency security vulnerability

## CVE-2024-57075 - High Severity Vulnerability Vulnerable Library - eazy-logger-3.1.0.tgz Simple cli logger Library home page: https://registry.npmjs.org/eazy-logger/-/eazy-logger-3.1.0.tgz Path to dependency file: /day60/package.json Path to vulnerable library: /day60/package.json,/day59/package.json Dependency Hierarchy: -...

Mend: dependency security vulnerability

## CVE-2024-56201 - High Severity Vulnerability Vulnerable Library - Jinja2-2.11.2-py2.py3-none-any.whl A very fast and expressive template engine. Library home page: https://files.pythonhosted.org/packages/30/9e/f663a2aa66a09d838042ae1a2c5659828bb9b41ea3a6efa20a20fd92b121/Jinja2-2.11.2-py2.py3-none-any.whl Path to dependency file: /day70/requirements.txt Path to vulnerable library:...

Mend: dependency security vulnerability

## CVE-2024-29992 - Medium Severity Vulnerability Vulnerable Library - azure.identity.1.10.4.nupkg This is the implementation of the Azure SDK Client Library for Azure Identity Library home page: https://api.nuget.org/packages/azure.identity.1.10.4.nupkg Path to dependency...

Mend: dependency security vulnerability

## CVE-2024-43485 - High Severity Vulnerability Vulnerable Library - system.text.json.8.0.0.nupkg Provides high-performance and low-allocating types that serialize objects to JavaScript Object Notation (JSON) text and deserialize JSON text to objects,...

Mend: dependency security vulnerability

## CVE-2024-35255 - Medium Severity Vulnerability Vulnerable Libraries - microsoft.identity.client.4.56.0.nupkg, azure.identity.1.10.4.nupkg microsoft.identity.client.4.56.0.nupkg This package contains the binaries of the Microsoft Authentication Library for .NET (MSAL.NET). Library home page: https://api.nuget.org/packages/microsoft.identity.client.4.56.0.nupkg Path...

Mend: dependency security vulnerability

## CVE-2024-0057 - Critical Severity Vulnerability Vulnerable Libraries - nuke.common.8.0.0.nupkg, nuget.packaging.6.7.0.nupkg nuke.common.8.0.0.nupkg The AKEless Build System for C#/.NET Signed by signpath.io from repository 'https://github.com/nuke-build/nuke' commit '011956b31c05f14f3233f6241cd6fbe038824d71' (see contained AppVeyorSettings.json file...

Mend: dependency security vulnerability

## CVE-2025-26646 - High Severity Vulnerability Vulnerable Library - microsoft.build.tasks.core.17.8.3.nupkg This package contains the Microsoft.Build.Tasks assembly which implements the commonly used tasks of MSBuild. Library home page: https://api.nuget.org/packages/microsoft.build.tasks.core.17.8.3.nupkg Path to...

Mend: dependency security vulnerability

## CVE-2024-30105 - High Severity Vulnerability Vulnerable Library - system.text.json.8.0.0.nupkg Provides high-performance and low-allocating types that serialize objects to JavaScript Object Notation (JSON) text and deserialize JSON text to objects,...

Mend: dependency security vulnerability

## CVE-2024-38095 - High Severity Vulnerability Vulnerable Libraries - nuke.common.8.0.0.nupkg, system.formats.asn1.7.0.0.nupkg nuke.common.8.0.0.nupkg The AKEless Build System for C#/.NET Signed by signpath.io from repository 'https://github.com/nuke-build/nuke' commit '011956b31c05f14f3233f6241cd6fbe038824d71' (see contained AppVeyorSettings.json file...

Mend: dependency security vulnerability