[Backport 2.17] [Manual Backport 2.x] [Workspace] Add user settings #8074
Security Report
You have successfully remediated 1 vulnerabilities, but introduced 3 new vulnerabilities in this branch.
❌ New vulnerabilities:
CVE | Severity | CVSS Score | Vulnerable Library | Suggested Fix | Issue |
---|---|---|---|---|---|
CVE-2023-26156Path to dependency file: /package.json Path to vulnerable library: /node_modules/chromedriver/package.json Dependency Hierarchy: -> ❌ chromedriver-107.0.3.tgz (Vulnerable Library) |
High | 7.5 | chromedriver-107.0.3.tgz | Upgrade to version: chromedriver - 119.0.1 | None |
Medium | 5.3 | juice-shopjuice-shop-14.0.0_node14_darwin_x64 | Upgrade to version: micromatch - 4.0.8 | #6791 | |
CVE-2024-4067Path to dependency file: /package.json Path to vulnerable library: /node_modules/micromatch/package.json Dependency Hierarchy: -> @elastic/safer-lodash-set-0.0.0.tgz (Root Library) -> dependency-check-4.1.0.tgz -> ❌ micromatch-4.0.7.tgz (Vulnerable Library) |
Medium | 5.3 | micromatch-4.0.7.tgz | Upgrade to version: micromatch - 4.0.8 | #6791 |
✔️ Remediated vulnerabilities:
CVE | Vulnerable Library |
---|---|
CVE-2023-28155 | request-2.88.12.tgz |
Base branch total remaining vulnerabilities: 16
Base branch commit: 569b70d885cec37ac83d133ef6d8ce0f6c03a02f
Total libraries scanned: 2459
Scan token: bf39ccda1d264a07aa5b93fa262bdddd