sonatype-depshield[bot]

Results 541 issues of sonatype-depshield[bot]

**Vulnerabilities** DepShield reports that this application's usage of [lodash.isfinite:3.3.2](https://ossindex.sonatype.org/component/pkg:npm/[email protected]) results in the following vulnerability(s): - (CVSS **7.4**) [CWE-471: Modification of Assumed-Immutable Data (MAID)](https://ossindex.sonatype.org/vuln/0f23ff35-235f-404f-8118-bc1580673fd0) - (CVSS **6.5**) [[CVE-2018-3721] lodash node module...

**Vulnerabilities** DepShield reports that this application's usage of [atob:1.1.3](https://ossindex.sonatype.org/component/pkg:npm/[email protected]) results in the following vulnerability(s): - (CVSS **6.5**) [CWE-125: Out-of-bounds Read](https://ossindex.sonatype.org/vuln/e391a58d-4a81-448b-8ffc-e19016807d73) **Occurrences** atob:1.1.3 is a transitive dependency introduced by the following...

**Vulnerabilities** DepShield reports that this application's usage of [lodash._root:3.0.1](https://ossindex.sonatype.org/component/pkg:npm/[email protected]) results in the following vulnerability(s): - (CVSS **7.4**) [CWE-471: Modification of Assumed-Immutable Data (MAID)](https://ossindex.sonatype.org/vuln/0f23ff35-235f-404f-8118-bc1580673fd0) **Occurrences** lodash._root:3.0.1 is a transitive dependency introduced...

**Vulnerabilities** DepShield reports that this application's usage of [lodash.isarray:3.0.4](https://ossindex.sonatype.org/component/pkg:npm/[email protected]) results in the following vulnerability(s): - (CVSS **7.4**) [CWE-471: Modification of Assumed-Immutable Data (MAID)](https://ossindex.sonatype.org/vuln/0f23ff35-235f-404f-8118-bc1580673fd0) **Occurrences** lodash.isarray:3.0.4 is a transitive dependency introduced...

**Vulnerabilities** DepShield reports that this application's usage of [lodash.escape:3.2.0](https://ossindex.sonatype.org/component/pkg:npm/[email protected]) results in the following vulnerability(s): - (CVSS **7.4**) [CWE-471: Modification of Assumed-Immutable Data (MAID)](https://ossindex.sonatype.org/vuln/0f23ff35-235f-404f-8118-bc1580673fd0) **Occurrences** lodash.escape:3.2.0 is a transitive dependency introduced...

**Vulnerabilities** DepShield reports that this application's usage of [hoek:2.16.3](https://ossindex.sonatype.org/component/pkg:npm/[email protected]) results in the following vulnerability(s): - (CVSS **6.5**) [[CVE-2018-3728] Improper Access Control](https://ossindex.sonatype.org/vuln/f83875d9-0fe3-492a-a1c1-e0ed39e74001) **Occurrences** hoek:2.16.3 is a transitive dependency introduced by the...

**Vulnerabilities** DepShield reports that this application's usage of [lodash.isarguments:3.1.0](https://ossindex.sonatype.org/component/pkg:npm/[email protected]) results in the following vulnerability(s): - (CVSS **7.4**) [CWE-471: Modification of Assumed-Immutable Data (MAID)](https://ossindex.sonatype.org/vuln/0f23ff35-235f-404f-8118-bc1580673fd0) **Occurrences** lodash.isarguments:3.1.0 is a transitive dependency introduced...

**Vulnerabilities** DepShield reports that this application's usage of [lodash.isstring:4.0.1](https://ossindex.sonatype.org/component/pkg:npm/[email protected]) results in the following vulnerability(s): - (CVSS **7.4**) [CWE-471: Modification of Assumed-Immutable Data (MAID)](https://ossindex.sonatype.org/vuln/0f23ff35-235f-404f-8118-bc1580673fd0) - (CVSS **6.5**) [[CVE-2018-3721] lodash node module...

**Vulnerabilities** DepShield reports that this application's usage of [deep-extend:0.4.2](https://ossindex.sonatype.org/component/pkg:npm/[email protected]) results in the following vulnerability(s): - (CVSS **9.8**) [[CVE-2018-3750] Improper Input Validation](https://ossindex.sonatype.org/vuln/d4f49abf-792e-44c1-b04e-b8c812e554ec) - (CVSS **7.4**) [CWE-471: Modification of Assumed-Immutable Data (MAID)](https://ossindex.sonatype.org/vuln/3185f948-ca5a-48d5-9201-ff7a86a60761)...

**Vulnerabilities** DepShield reports that this application's usage of [lodash.keys:3.1.2](https://ossindex.sonatype.org/component/pkg:npm/[email protected]) results in the following vulnerability(s): - (CVSS **7.4**) [CWE-471: Modification of Assumed-Immutable Data (MAID)](https://ossindex.sonatype.org/vuln/0f23ff35-235f-404f-8118-bc1580673fd0) **Occurrences** lodash.keys:3.1.2 is a transitive dependency introduced...