Skip to content

Communication: Improve unread messages count view on sidebar (#9522)

Mend Bolt for GitHub / Mend Security Check failed Oct 20, 2024 in 6m 33s

Security Report

The Security Check found 2 vulnerabilities.

CVE Severity CVSS Score Vulnerable Library Suggested Fix Issue
CVE-2024-38819

Path to dependency file: /supporting_scripts/analysis-of-endpoint-connections/build.gradle

Path to vulnerable library: /home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.springframework/spring-webmvc/6.1.13/ca5f025b133c69026bfe01daa6132d0ac2e4a59f/spring-webmvc-6.1.13.jar

Dependency Hierarchy:

-> spring-boot-starter-web-3.3.4.jar (Root Library)

   -> ❌ spring-webmvc-6.1.13.jar (Vulnerable Library)

High 7.5 spring-webmvc-6.1.13.jar Upgrade to version: org.springframework:spring-webflux:6.1.14, org.springframework:spring-webmvc:6.1.14 #9531
CVE-2024-1899

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/showdown/package.json

Dependency Hierarchy:

-> ❌ showdown-2.1.0.tgz (Vulnerable Library)

Medium 5.3 showdown-2.1.0.tgz #9333

Total libraries scanned: 908
Scan token: 5651ae66ae194194ac236a4b8ec1610f