mend-for-github-com[bot]

Results 1661 issues of mend-for-github-com[bot]

## CVE-2021-38561 - High Severity Vulnerability Vulnerable Libraries - github.com/golang/text-v0.3.2, github.com/golang/text-v0.3.2, github.com/golang/text/internal/language-v0.3.2 github.com/golang/text-v0.3.2 [mirror] Go text processing support Dependency Hierarchy: - gopkg.in/couchbase/gocb.v1-v1.6.1 (Root Library) - gopkg.in/couchbase/gocbcore.v7-v7.1.13 - golang.org/x/net/http2-ca1201d0de80cfde86cb01aea620983605dfe99b - golang.org/x/net/http/httpguts-ca1201d0de80cfde86cb01aea620983605dfe99b...

security vulnerability

## CVE-2020-28852 - High Severity Vulnerability Vulnerable Libraries - github.com/golang/text-v0.3.2, github.com/golang/text/internal/language-v0.3.2 github.com/golang/text-v0.3.2 [mirror] Go text processing support Dependency Hierarchy: - gopkg.in/couchbase/gocb.v1-v1.6.1 (Root Library) - gopkg.in/couchbase/gocbcore.v7-v7.1.13 - golang.org/x/net/http2-ca1201d0de80cfde86cb01aea620983605dfe99b - golang.org/x/net/http/httpguts-ca1201d0de80cfde86cb01aea620983605dfe99b -...

security vulnerability

## CVE-2020-28851 - High Severity Vulnerability Vulnerable Libraries - github.com/golang/text-v0.3.2, github.com/golang/text/internal/language-v0.3.2 github.com/golang/text-v0.3.2 [mirror] Go text processing support Dependency Hierarchy: - gopkg.in/couchbase/gocb.v1-v1.6.1 (Root Library) - gopkg.in/couchbase/gocbcore.v7-v7.1.13 - golang.org/x/net/http2-ca1201d0de80cfde86cb01aea620983605dfe99b - golang.org/x/net/http/httpguts-ca1201d0de80cfde86cb01aea620983605dfe99b -...

security vulnerability

## CVE-2020-10673 - Medium Severity Vulnerability Vulnerable Library - jackson-databind-2.9.10.3.jar General data-binding functionality for Jackson: works on core streaming API Library home page: http://github.com/FasterXML/jackson Path to dependency file: /tmp/ws-scm/jmx2graphite/pom.xml Path...

security vulnerability

## WS-2019-0379 - Medium Severity Vulnerability Vulnerable Library - commons-codec-1.12.jar The Apache Commons Codec package contains simple encoder and decoders for various formats such as Base64 and Hexadecimal. In addition...

security vulnerability

This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [grunt](https://gruntjs.com/) ([source](https://togithub.com/gruntjs/grunt)) | dependencies | minor | [`1.3.0` -> `1.5.3`](https://renovatebot.com/diffs/npm/grunt/1.3.0/1.5.3) | By merging...

security fix

This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [geoip-lite](https://togithub.com/geoip-lite/node-geoip) | dependencies | patch | [`1.4.2` -> `1.4.3`](https://renovatebot.com/diffs/npm/geoip-lite/1.4.2/1.4.3) | By merging this...

security fix

Vulnerable Library - geoip-lite-1.4.2.tgz Path to dependency file: /package.json Path to vulnerable library: /node_modules/grunt-bower-task/node_modules/async/package.json,/node_modules/grunt-contrib-clean/node_modules/async/package.json,/node_modules/portscanner/node_modules/async/package.json,/node_modules/geoip-lite/node_modules/async/package.json,/node_modules/archiver/node_modules/async/package.json,/node_modules/grunt-contrib-watch/node_modules/async/package.json,/node_modules/grunt-contrib-less/node_modules/async/package.json Found in HEAD commit: 7c898c0839317ea7989d15935972aa4dc520b907 ## Vulnerabilities | CVE | Severity | CVSS | Exploit Maturity...

Mend: dependency security vulnerability

Vulnerable Library - swagger-boilerplate-0.1.6.tgz Path to dependency file: /package.json Path to vulnerable library: /node_modules/follow-redirects/package.json Found in HEAD commit: 7c898c0839317ea7989d15935972aa4dc520b907 ## Vulnerabilities | CVE | Severity | CVSS | Dependency |...

security vulnerability

Vulnerable Library - google-auth-library-6.1.3.tgz Path to dependency file: /package.json Path to vulnerable library: /node_modules/node-forge/package.json Found in HEAD commit: 7c898c0839317ea7989d15935972aa4dc520b907 ## Vulnerabilities | CVE | Severity | CVSS | Exploit Maturity...

Mend: dependency security vulnerability