-
xml2js@0.4.23 has a medium snyk issue that is fixed in version 0.5.0
https://stackoverflow.com/a/75975562/7087480
-
https://security.snyk.io/vuln/SNYK-JS-LODASHTEMPLATE-1088054
-
see: https://security.snyk.io/vuln/SNYK-DOTNET-SYSTEMTEXTREGULAREXPRESSIONS-174708
Tested 83 dependencies for known issues, found 1 issue, 3 vulnerable paths.
Log:
Issues with no direct upgrade…
-
Currently SNYK is configured to scan [red-hat-data-services](https://github.com/red-hat-data-services) org repos but move the security vulnerability fix from upstream to downstream would take long tim…
-
Hi,
we're using this Go package in MongoDB from: https://github.com/mongodb/terraform-provider-mongodbatlas/blob/master/tools/check-changelog-entry-file/main.go
We've detected a vulnerability in …
-
## 🐛 Bug Report
Lib version: 4.4.0
## Steps To Reproduce
Node.js Package: lodash ≤ 4.17.15 - Remote Prototype Pollution Vulnerability - 4.17.16
- lodash.defaults 4.2.0
- lodash.isequa…
-
# Welcome to CNCF Project Onboarding!
This is an issue created to help onboard your project into the CNCF after the TOC has voted to accept your project into the Sandbox.
We would like your project …
-
- [ ] Contact Snyk about issues
- [ ] Re-setup app
- [ ] Check Snyk access to organization and repository
- [ ] Re-initialize Snyk
-
[Project board link](https://github.com/orgs/k8ssandra/projects/8/views/1?pane=issue&itemId=35060242)
We are using cassandra-reaper version 3.3.1 in our product.
Recently we did Blackduck security sc…
-
### Problem description
Facing sca issue in below path. Could you please update this.
grpc-tools@1.12.3 > @mapbox/node-pre-gyp@1.0.5 > npmlog@4.1.2 > gauge@2.7.4 > strip-ansi@3.0.1 > ansi-regex@2.1…