mend-bolt-for-github[bot]

Results 3332 issues of mend-bolt-for-github[bot]

## CVE-2024-35255 - Medium Severity Vulnerability Vulnerable Libraries - microsoft.identity.client.4.56.0.nupkg, azure.identity.1.10.4.nupkg microsoft.identity.client.4.56.0.nupkg This package contains the binaries of the Microsoft Authentication Library for .NET (MSAL.NET). Library home page: https://api.nuget.org/packages/microsoft.identity.client.4.56.0.nupkg Path...

Mend: dependency security vulnerability

## CVE-2024-0057 - Critical Severity Vulnerability Vulnerable Libraries - nuke.common.8.0.0.nupkg, nuget.packaging.6.7.0.nupkg nuke.common.8.0.0.nupkg The AKEless Build System for C#/.NET Signed by signpath.io from repository 'https://github.com/nuke-build/nuke' commit '011956b31c05f14f3233f6241cd6fbe038824d71' (see contained AppVeyorSettings.json file...

Mend: dependency security vulnerability

## CVE-2025-26646 - High Severity Vulnerability Vulnerable Library - microsoft.build.tasks.core.17.8.3.nupkg This package contains the Microsoft.Build.Tasks assembly which implements the commonly used tasks of MSBuild. Library home page: https://api.nuget.org/packages/microsoft.build.tasks.core.17.8.3.nupkg Path to...

Mend: dependency security vulnerability

## CVE-2024-30105 - High Severity Vulnerability Vulnerable Library - system.text.json.8.0.0.nupkg Provides high-performance and low-allocating types that serialize objects to JavaScript Object Notation (JSON) text and deserialize JSON text to objects,...

Mend: dependency security vulnerability

## CVE-2024-38095 - High Severity Vulnerability Vulnerable Libraries - nuke.common.8.0.0.nupkg, system.formats.asn1.7.0.0.nupkg nuke.common.8.0.0.nupkg The AKEless Build System for C#/.NET Signed by signpath.io from repository 'https://github.com/nuke-build/nuke' commit '011956b31c05f14f3233f6241cd6fbe038824d71' (see contained AppVeyorSettings.json file...

Mend: dependency security vulnerability

## CVE-2024-27086 - Low Severity Vulnerability Vulnerable Library - microsoft.identity.client.4.56.0.nupkg This package contains the binaries of the Microsoft Authentication Library for .NET (MSAL.NET). Library home page: https://api.nuget.org/packages/microsoft.identity.client.4.56.0.nupkg Path to dependency...

Mend: dependency security vulnerability

## CVE-2020-36604 - High Severity Vulnerability Vulnerable Library - hoek-6.1.3.tgz General purpose node utilities Library home page: https://registry.npmjs.org/hoek/-/hoek-6.1.3.tgz Path to dependency file: /Examples/OTPPasswordJSExample/package.json Path to vulnerable library: /Examples/OTPPasswordJSExample/node_modules/hoek/package.json,/Examples/WebAuthnJSExample/node_modules/hoek/package.json,/Examples/OneTimePasswordJSExample/node_modules/hoek/package.json,/Examples/RadiusServiceAccountJSExample/node_modules/hoek/package.json,/Examples/RadiusAuthorizationJSExample/node_modules/hoek/package.json,/Examples/RadiusDefaultRealmJSExample/node_modules/hoek/package.json,/Examples/LdapOtpExample/node_modules/hoek/package.json,/Examples/ConditionAccessRequestJSExample/node_modules/hoek/package.json Dependency Hierarchy:...

Mend: dependency security vulnerability

Vulnerable Library - website-0.0.0.tgz Path to dependency file: /package.json Path to vulnerable library: /package.json Found in HEAD commit: ec1fa8fe06df49cf7ec57193ad15f8c80c1d8ec1 ## Vulnerabilities | CVE | Severity | CVSS | Dependency |...

Mend: dependency security vulnerability

## CVE-2024-6531 - Medium Severity Vulnerability Vulnerable Library - bootstrap-4.6.0-2.min.js The most popular front-end framework for developing responsive, mobile first projects on the web. Library home page: https://cdnjs.cloudflare.com/ajax/libs/bootstrap-v4-rtl/4.6.0-2/js/bootstrap.min.js Path to...

Mend: dependency security vulnerability

## CVE-2020-11023 - Medium Severity Vulnerability Vulnerable Library - jquery-3.4.1.slim.min.js JavaScript library for DOM operations Library home page: https://cdnjs.cloudflare.com/ajax/libs/jquery/3.4.1/jquery.slim.min.js Path to vulnerable library: /public/static/tinyfilemanager/jquery.slim.min.js Dependency Hierarchy: - :x: **jquery-3.4.1.slim.min.js** (Vulnerable...

已经修复
Mend: dependency security vulnerability