Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump cookie and browser-sync #15

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Bump cookie and browser-sync

81ca163
Select commit
Loading
Failed to load commit list.
Open

Bump cookie and browser-sync #15

Bump cookie and browser-sync
81ca163
Select commit
Loading
Failed to load commit list.
Wiz -WPP Cyber Security (40279aabd1) / Wiz Vulnerability Scanner completed Oct 11, 2024 in 8s

Wiz Vulnerability Scanner

Vulnerabilities Detected: 23

1C 13H 7M 2L 0I

View scan details in Wiz

Annotations

Check failure on line 19471 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

trim-newlines:1.0.0

Detected Vulnerabilities:
  CVE-2021-33623, Severity: High, Source: https://github.com/advisories/GHSA-7p7h-4mm5-852v
    CVSS score: 7.5, CVSS exploitability score: 3.6
    🩹 Fixed version: 3.0.1
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check failure on line 13184 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

nth-check:1.0.2

Detected Vulnerabilities:
  CVE-2021-3803, Severity: High, Source: https://github.com/advisories/GHSA-rp65-9cf3-cjxr
    CVSS score: 7.5, CVSS exploitability score: 3.6
    🩹 Fixed version: 2.0.1
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check failure on line 10101 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

html-minifier:3.5.21

Detected Vulnerabilities:
  CVE-2022-37620, Severity: High, Source: https://github.com/advisories/GHSA-pfq8-rq6v-vf5m
    CVSS score: 7.5, CVSS exploitability score: 3.6
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check failure on line 17845 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

semver-regex:2.0.0

Detected Vulnerabilities:
  CVE-2021-3795, Severity: High, Source: https://github.com/advisories/GHSA-44c6-4v22-4mhx
    CVSS score: 7.5, CVSS exploitability score: 3.6
    🩹 Fixed version: 3.1.3
    💥 Has public exploit
    🧨 Has CISA KEV exploit
  CVE-2021-43307, Severity: Low, Source: https://github.com/advisories/GHSA-4x5v-gmq8-25ch
    CVSS score: 7.5, CVSS exploitability score: 3.6
    🩹 Fixed version: 3.1.4
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check failure on line 17825 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

semver:6.3.0

Detected Vulnerabilities:
  CVE-2022-25883, Severity: High, Source: https://github.com/advisories/GHSA-c2qf-rxjj-qqgw
    CVSS score: 7.5, CVSS exploitability score: 3.6
    🩹 Fixed version: 6.3.1
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check failure on line 5072 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

decode-uri-component:0.2.0

Detected Vulnerabilities:
  CVE-2022-38900, Severity: High, Source: https://github.com/advisories/GHSA-w573-4hg7-7wgq
    CVSS score: 7.5, CVSS exploitability score: 3.6
    🩹 Fixed version: 0.2.1
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check failure on line 12575 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

minimist:1.2.5

Detected Vulnerabilities:
  CVE-2021-44906, Severity: Critical, Source: https://github.com/advisories/GHSA-xvch-5gv4-984h
    CVSS score: 9.8, CVSS exploitability score: 5.9
    🩹 Fixed version: 1.2.6
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check failure on line 10149 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

http-cache-semantics:3.8.1

Detected Vulnerabilities:
  CVE-2022-25881, Severity: High, Source: https://github.com/advisories/GHSA-rc47-6667-2j5j
    CVSS score: 7.5, CVSS exploitability score: 3.6
    🩹 Fixed version: 4.1.1
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check failure on line 9745 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

lodash.template:3.6.2

Detected Vulnerabilities:
  CVE-2021-23337, Severity: High, Source: https://github.com/advisories/GHSA-35jh-r3h4-6jhm
    CVSS score: 7.2, CVSS exploitability score: 5.9
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check failure on line 6694 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

fast-xml-parser:3.21.1

Detected Vulnerabilities:
  CVE-2023-26920, Severity: Medium, Source: https://github.com/advisories/GHSA-x3cc-x39p-42qx
    CVSS score: 6.5, CVSS exploitability score: 3.6
    🩹 Fixed version: 4.1.2
    💥 Has public exploit
    🧨 Has CISA KEV exploit
  CVE-2024-41818, Severity: High, Source: https://github.com/advisories/GHSA-mpg4-rc92-vx8v
    CVSS score: 7.5, CVSS exploitability score: 3.6
    🩹 Fixed version: 4.4.1
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check failure on line 11991 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

lodash.template:4.5.0

Detected Vulnerabilities:
  CVE-2021-23337, Severity: High, Source: https://github.com/advisories/GHSA-35jh-r3h4-6jhm
    CVSS score: 7.2, CVSS exploitability score: 5.9
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check failure on line 2893 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

semver:5.7.1

Detected Vulnerabilities:
  CVE-2022-25883, Severity: High, Source: https://github.com/advisories/GHSA-c2qf-rxjj-qqgw
    CVSS score: 7.5, CVSS exploitability score: 3.6
    🩹 Fixed version: 5.7.2
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check failure on line 3149 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

braces:3.0.2

Detected Vulnerabilities:
  CVE-2024-4068, Severity: High, Source: https://github.com/advisories/GHSA-grv7-fg5c-xmjg
    🩹 Fixed version: 3.0.3
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check failure on line 6873 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

braces:2.3.2

Detected Vulnerabilities:
  CVE-2024-4068, Severity: High, Source: https://github.com/advisories/GHSA-grv7-fg5c-xmjg
    🩹 Fixed version: 3.0.3
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check warning on line 12491 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

micromatch:4.0.4

Detected Vulnerabilities:
  CVE-2024-4067, Severity: Medium, Source: https://github.com/advisories/GHSA-952p-6rrq-rcjv
    🩹 Fixed version: 4.0.8
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check warning on line 3127 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

bootstrap:4.6.1

Detected Vulnerabilities:
  CVE-2024-6531, Severity: Medium, Source: https://github.com/advisories/GHSA-vc8w-jr9v-vj7f
    🩹 Fixed version: 5.0.0
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check warning on line 6975 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

micromatch:3.1.10

Detected Vulnerabilities:
  CVE-2024-4067, Severity: Medium, Source: https://github.com/advisories/GHSA-952p-6rrq-rcjv
    🩹 Fixed version: 4.0.8
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check warning on line 12925 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

node-notifier:5.4.5

Detected Vulnerabilities:
  CVE-2020-7789, Severity: Medium, Source: https://github.com/advisories/GHSA-5fw9-fq32-wv5p
    CVSS score: 5.6, CVSS exploitability score: 3.4
    🩹 Fixed version: 8.0.1
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check warning on line 2969 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

got:8.3.2

Detected Vulnerabilities:
  CVE-2022-33987, Severity: Medium, Source: https://github.com/advisories/GHSA-pfrx-2q88-qq97
    CVSS score: 5.3, CVSS exploitability score: 1.4
    🩹 Fixed version: 11.8.5
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check warning on line 8507 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

got:7.1.0

Detected Vulnerabilities:
  CVE-2022-33987, Severity: Medium, Source: https://github.com/advisories/GHSA-pfrx-2q88-qq97
    CVSS score: 5.3, CVSS exploitability score: 1.4
    🩹 Fixed version: 11.8.5
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check notice on line 5893 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

es5-ext:0.10.53

Detected Vulnerabilities:
  CVE-2024-27088, Severity: Low, Source: https://github.com/advisories/GHSA-4gmj-3p3h-gm8h
    🩹 Fixed version: 0.10.63
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check failure on line 6873 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

braces:2.3.2

Detected Vulnerabilities:
  CVE-2024-4068, Severity: High, Source: https://github.com/advisories/GHSA-grv7-fg5c-xmjg
    🩹 Fixed version: 3.0.3
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check failure on line 5072 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

decode-uri-component:0.2.0

Detected Vulnerabilities:
  CVE-2022-38900, Severity: High, Source: https://github.com/advisories/GHSA-w573-4hg7-7wgq
    CVSS score: 7.5, CVSS exploitability score: 3.6
    🩹 Fixed version: 0.2.1
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check failure on line 3149 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

braces:3.0.2

Detected Vulnerabilities:
  CVE-2024-4068, Severity: High, Source: https://github.com/advisories/GHSA-grv7-fg5c-xmjg
    🩹 Fixed version: 3.0.3
    💥 Has public exploit
    🧨 Has CISA KEV exploit

Check failure on line 2893 in package-lock.json

See this annotation in the file changed.

@wiz-wpp-cyber-security-40279aabd1 wiz-wpp-cyber-security-40279aabd1 / Wiz Vulnerability Scanner

semver:5.7.1

Detected Vulnerabilities:
  CVE-2022-25883, Severity: High, Source: https://github.com/advisories/GHSA-c2qf-rxjj-qqgw
    CVSS score: 7.5, CVSS exploitability score: 3.6
    🩹 Fixed version: 5.7.2
    💥 Has public exploit
    🧨 Has CISA KEV exploit