mend-for-github-com[bot]
mend-for-github-com[bot]
## CVE-2022-24773 - Medium Severity Vulnerability Vulnerable Library - node-forge-0.10.0.tgz JavaScript implementations of network transports, cryptography, ciphers, PKI, message digests, and various utilities. Library home page: https://registry.npmjs.org/node-forge/-/node-forge-0.10.0.tgz Path to dependency...
## CVE-2021-43307 - High Severity Vulnerability Vulnerable Library - semver-regex-3.1.2.tgz Regular expression for matching semver versions Library home page: https://registry.npmjs.org/semver-regex/-/semver-regex-3.1.2.tgz Path to dependency file: /src/webui/frontend/package.json Path to vulnerable library: /src/webui/frontend/node_modules/semver-regex/package.json...
## WS-2022-0008 - Medium Severity Vulnerability Vulnerable Library - node-forge-0.10.0.tgz JavaScript implementations of network transports, cryptography, ciphers, PKI, message digests, and various utilities. Library home page: https://registry.npmjs.org/node-forge/-/node-forge-0.10.0.tgz Path to dependency...
## CVE-2020-14343 - High Severity Vulnerability Vulnerable Library - PyYAML-4.2b1.tar.gz YAML parser and emitter for Python Library home page: https://files.pythonhosted.org/packages/bd/da/0a49c1a31c60634b93fd1376b3b7966c4f81f2da8263f389cad5b6bbd6e8/PyYAML-4.2b1.tar.gz Path to dependency file: /docs/requirements.txt Path to vulnerable library: /docs/requirements.txt,/docs/requirements.txt...
## CVE-2021-3664 - Medium Severity Vulnerability Vulnerable Library - url-parse-1.5.1.tgz Small footprint URL parser that works seamlessly across Node.js and browser environments Library home page: https://registry.npmjs.org/url-parse/-/url-parse-1.5.1.tgz Path to dependency file:...
## CVE-2021-33503 - High Severity Vulnerability Vulnerable Library - urllib3-1.24.2-py2.py3-none-any.whl HTTP library with thread-safe connection pooling, file post, and more. Library home page: https://files.pythonhosted.org/packages/df/1c/59cca3abf96f991f2ec3131a4ffe72ae3d9ea1f5894abe8a9c5e3c77cfee/urllib3-1.24.2-py2.py3-none-any.whl Path to dependency file: /docs/requirements.txt Path...
## CVE-2021-27290 - High Severity Vulnerability Vulnerable Libraries - ssri-6.0.1.tgz, ssri-7.1.0.tgz ssri-6.0.1.tgz Standard Subresource Integrity library -- parses, serializes, generates, and verifies integrity metadata according to the SRI spec. Library...
## CVE-2022-0512 - Medium Severity Vulnerability Vulnerable Library - url-parse-1.5.1.tgz Small footprint URL parser that works seamlessly across Node.js and browser environments Library home page: https://registry.npmjs.org/url-parse/-/url-parse-1.5.1.tgz Path to dependency file:...
## CVE-2021-33502 - High Severity Vulnerability Vulnerable Libraries - normalize-url-3.3.0.tgz, normalize-url-1.9.1.tgz normalize-url-3.3.0.tgz Normalize a URL Library home page: https://registry.npmjs.org/normalize-url/-/normalize-url-3.3.0.tgz Path to dependency file: /src/webui/frontend/package.json Path to vulnerable library: /src/webui/frontend/node_modules/postcss-normalize-url/node_modules/normalize-url/package.json Dependency...
## CVE-2020-28168 - Medium Severity Vulnerability Vulnerable Library - axios-0.20.0.tgz Promise based HTTP client for the browser and node.js Library home page: https://registry.npmjs.org/axios/-/axios-0.20.0.tgz Path to dependency file: /src/webui/frontend/package.json Path to...