mend-bolt-for-github[bot]

Results 3421 issues of mend-bolt-for-github[bot]

## CVE-2025-8262 - High Severity Vulnerability Vulnerable Library - yarn-1.22.11.tgz ?? Fast, reliable, and secure dependency management. Library home page: https://registry.npmjs.org/yarn/-/yarn-1.22.11.tgz Path to dependency file: /dmreactplugin/package.json Path to vulnerable library:...

Mend: dependency security vulnerability

## CVE-2025-7783 - High Severity Vulnerability Vulnerable Library - form-data-3.0.1.tgz A library to create readable "multipart/form-data" streams. Can be used to submit forms and file uploads to other web applications....

Mend: dependency security vulnerability

## CVE-2025-5889 - Low Severity Vulnerability Vulnerable Library - brace-expansion-1.1.11.tgz Brace expansion as known from sh/bash Library home page: https://registry.npmjs.org/brace-expansion/-/brace-expansion-1.1.11.tgz Path to dependency file: /dmreactplugin/package.json Path to vulnerable library: /dmreactplugin/package.json...

Mend: dependency security vulnerability

## CVE-2025-30360 - Medium Severity Vulnerability Vulnerable Library - webpack-dev-server-3.11.1.tgz Serves a webpack app. Updates the browser on changes. Library home page: https://registry.npmjs.org/webpack-dev-server/-/webpack-dev-server-3.11.1.tgz Path to dependency file: /dmreactplugin/package.json Path to...

Mend: dependency security vulnerability

## CVE-2025-30359 - Medium Severity Vulnerability Vulnerable Library - webpack-dev-server-3.11.1.tgz Serves a webpack app. Updates the browser on changes. Library home page: https://registry.npmjs.org/webpack-dev-server/-/webpack-dev-server-3.11.1.tgz Path to dependency file: /dmreactplugin/package.json Path to...

Mend: dependency security vulnerability

## CVE-2025-6545 - Critical Severity Vulnerability Vulnerable Library - pbkdf2-3.1.2.tgz This library provides the functionality of PBKDF2 with the ability to use any supported hashing algorithm returned from crypto.getHashes() Library...

Mend: dependency security vulnerability

## CVE-2025-6547 - Medium Severity Vulnerability Vulnerable Library - pbkdf2-3.1.2.tgz This library provides the functionality of PBKDF2 with the ability to use any supported hashing algorithm returned from crypto.getHashes() Library...

Mend: dependency security vulnerability

## CVE-2025-32996 - Medium Severity Vulnerability Vulnerable Library - http-proxy-middleware-0.19.1.tgz The one-liner node.js proxy middleware for connect, express and browser-sync Library home page: https://registry.npmjs.org/http-proxy-middleware/-/http-proxy-middleware-0.19.1.tgz Path to dependency file: /dmreactplugin/package.json Path...

Mend: dependency security vulnerability

## CVE-2025-32997 - Medium Severity Vulnerability Vulnerable Library - http-proxy-middleware-0.19.1.tgz The one-liner node.js proxy middleware for connect, express and browser-sync Library home page: https://registry.npmjs.org/http-proxy-middleware/-/http-proxy-middleware-0.19.1.tgz Path to dependency file: /dmreactplugin/package.json Path...

Mend: dependency security vulnerability

## CVE-2025-58754 - High Severity Vulnerability Vulnerable Library - axios-0.21.4.tgz Promise based HTTP client for the browser and node.js Library home page: https://registry.npmjs.org/axios/-/axios-0.21.4.tgz Path to dependency file: /server/client/package.json Path to...

Mend: dependency security vulnerability