FlatFilers / flatfile-plugins

Library of open-source plugins for developing with the Flatfile Platform
5 stars 6 forks source link

Vulnerabilities Dashboard - Dependencies #563

Open flatfile-nullify[bot] opened 2 months ago

flatfile-nullify[bot] commented 2 months ago

Severity Threshold: šŸ”µ MEDIUM

Repository Summary

šŸ”“ CRITICAL šŸŸ” HIGH šŸ”µ MEDIUM āšŖ LOW
0 1 4 0

package.json

šŸ”“ CRITICAL šŸŸ” HIGH šŸ”µ MEDIUM āšŖ LOW
0 1 4 0

ID: 01J2FH227ZATT05H2CVA4DG1JP Package: ws Version: 6.0.0 - 6.2.2 || 7.0.0 - 7.5.9 Vulnerabilities: 1 Type: Transitive

View Vulnerabilities (CVEs) | CVE | Severity | Issue | Current Version | Introduced in | Fixed in | Priority | |-|-|-|-|-|-|-| | N/A | HIGH | [ws affected by a DoS when handling a request with many HTTP headers](https://github.com/advisories/GHSA-3h5v-q93c-6h6q) | 6.0.0 - 6.2.2 || 7.0.0 - 7.5.9 | 6.0.0 - 6.2.2 || 7.0.0 - 7.5.9 | 8.18.0 | N/A |

# ID: 01J2FH227ZATT05H2CV22RQXX4 Package: @azure/identity Version: <4.2.1 Vulnerabilities: 1 Type: Transitive

View Vulnerabilities (CVEs) | CVE | Severity | Issue | Current Version | Introduced in | Fixed in | Priority | |-|-|-|-|-|-|-| | N/A | MEDIUM | [Azure Identity Libraries and Microsoft Authentication Library Elevation of Privilege Vulnerability](https://github.com/advisories/GHSA-m5vv-6r4h-3vj9) | <4.2.1 | <4.2.1 | N/A | N/A |

# ID: 01J2FH227ZATT05H2CV430KF9R Package: @azure/msal-node Version: 2.7.0 - 2.9.1 Vulnerabilities: 1 Type: Transitive

View Vulnerabilities (CVEs) | CVE | Severity | Issue | Current Version | Introduced in | Fixed in | Priority | |-|-|-|-|-|-|-| | N/A | MEDIUM | [Azure Identity Libraries and Microsoft Authentication Library Elevation of Privilege Vulnerability](https://github.com/advisories/GHSA-m5vv-6r4h-3vj9) | 2.7.0 - 2.9.1 | 2.7.0 - 2.9.1 | 2.11.1 | N/A |

# ID: 01J2FH227ZATT05H2CV6NJVZZ9 Package: mssql Version: 7.2.1 - 10.0.4 Vulnerabilities: 1 Type: Direct

View Vulnerabilities (CVEs) | CVE | Severity | Issue | Current Version | Introduced in | Fixed in | Priority | |-|-|-|-|-|-|-| | N/A | MEDIUM | Vulnerability found in package mssql | 7.2.1 - 10.0.4 | 7.2.1 - 10.0.4 | N/A | N/A |

# ID: 01J2FH227ZATT05H2CV6NZS4MX Package: tedious Version: 11.0.9 - 18.2.0 Vulnerabilities: 1 Type: Transitive

View Vulnerabilities (CVEs) | CVE | Severity | Issue | Current Version | Introduced in | Fixed in | Priority | |-|-|-|-|-|-|-| | N/A | MEDIUM | Vulnerability found in package tedious | 11.0.9 - 18.2.0 | 11.0.9 - 18.2.0 | N/A | N/A |

Reply with /nullify to interact with me like another developer