mend-for-github-com[bot]

Results 1661 issues of mend-for-github-com[bot]

This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [npm-run-all2](https://redirect.github.com/bcomnes/npm-run-all2) | dependencies | major | [`6.2.2` -> `7.0.2`](https://renovatebot.com/diffs/npm/npm-run-all2/6.2.2/7.0.2) | --- ### Release...

dependencies

Vulnerable Library - npm-run-all2-6.2.2.tgz ## Vulnerabilities | CVE | Severity | CVSS | Dependency | Type | Fixed in (npm-run-all2 version) | Remediation Possible** | Reachability | | ------------- |...

Mend: dependency security vulnerability

This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [body-parser](https://redirect.github.com/expressjs/body-parser) | dependencies | minor | [`~1.19.0` -> `~1.20.3`](https://renovatebot.com/diffs/npm/body-parser/1.19.0/1.20.3) | By merging this...

security fix

This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [express](https://expressjs.com/) ([source](https://redirect.github.com/expressjs/express)) | dependencies | minor | [`~4.19.0` -> `~4.21.1`](https://renovatebot.com/diffs/npm/express/4.19.0/4.21.1) | By merging...

security fix

## ci.yml - Ensure top-level permissions are not set to write-all Violation detected in /.github/workflows/ci.yml:[0-1] :page_with_curl: File Type: github_actions :no_entry: Details - Ensure top-level permissions are not set to write-all

Mend: IaC violation

## codecov.yml - Ensure top-level permissions are not set to write-all Violation detected in /.github/workflows/codecov.yml:[0-1] :page_with_curl: File Type: github_actions :no_entry: Details - Ensure top-level permissions are not set to write-all

Mend: IaC violation

Vulnerable Library - android-test-plugin-host-coverage-31.6.0.jar Path to dependency file: /Basic-VoIP-Call-Java/app/build.gradle Path to vulnerable library: /tmp/containerbase/cache/.gradle/caches/modules-2/files-2.1/com.google.protobuf/protobuf-java/3.22.3/fdee98b8f6abab73f146a4edb4c09e56f8278d03/protobuf-java-3.22.3.jar Found in HEAD commit: 635471db6a1a8ba1142ad56d96a9a26f4ce94af5 ## Vulnerabilities | Vulnerability | Severity | CVSS | Exploit Maturity...

Mend: dependency security vulnerability

Vulnerable Library - android-device-provider-ddmlib-31.6.0.jar Path to dependency file: /Basic-VoIP-Call-Java/app/build.gradle Path to vulnerable library: /tmp/containerbase/cache/.gradle/caches/modules-2/files-2.1/com.google.protobuf/protobuf-java/3.22.3/fdee98b8f6abab73f146a4edb4c09e56f8278d03/protobuf-java-3.22.3.jar Found in HEAD commit: 635471db6a1a8ba1142ad56d96a9a26f4ce94af5 ## Vulnerabilities | Vulnerability | Severity | CVSS | Exploit Maturity...

Mend: dependency security vulnerability

Vulnerable Library - android-test-plugin-host-logcat-31.6.0.jar Path to dependency file: /Basic-VoIP-Call-Java/app/build.gradle Path to vulnerable library: /tmp/containerbase/cache/.gradle/caches/modules-2/files-2.1/com.google.protobuf/protobuf-java/3.22.3/fdee98b8f6abab73f146a4edb4c09e56f8278d03/protobuf-java-3.22.3.jar Found in HEAD commit: 635471db6a1a8ba1142ad56d96a9a26f4ce94af5 ## Vulnerabilities | Vulnerability | Severity | CVSS | Exploit Maturity...

Mend: dependency security vulnerability

Vulnerable Library - android-test-plugin-host-apk-installer-31.6.0.jar Path to dependency file: /Basic-VoIP-Call-Java/app/build.gradle Path to vulnerable library: /tmp/containerbase/cache/.gradle/caches/modules-2/files-2.1/com.google.protobuf/protobuf-java/3.22.3/fdee98b8f6abab73f146a4edb4c09e56f8278d03/protobuf-java-3.22.3.jar Found in HEAD commit: 635471db6a1a8ba1142ad56d96a9a26f4ce94af5 ## Vulnerabilities | Vulnerability | Severity | CVSS | Exploit Maturity...

Mend: dependency security vulnerability