blockchain / blockchain-wallet-v4-frontend

Blockchain.com's open source, non-custodial Wallet
https://login.blockchain.com
GNU Affero General Public License v3.0
750 stars 506 forks source link

Feat/v5 routing #6390

Closed CTucker-BC closed 2 weeks ago

CTucker-BC commented 2 weeks ago

Description (optional)

Add a concise explanation of the changes.

Testing Steps (optional)

Detail the steps required for the reviewer(s) to verify and test these changes.

sstephanou-bc commented 2 weeks ago

Logo Checkmarx One – Scan Summary & Details24128217-b380-4f0c-a9e1-cbd4d3756092

New Issues

Severity Issue Source File / Package Checkmarx Insight
HIGH CVE-2024-37890 Npm-ws-8.11.0 Vulnerable Package
HIGH CVE-2024-37890 Npm-ws-6.2.2 Vulnerable Package
HIGH CVE-2024-37890 Npm-ws-8.5.0 Vulnerable Package
HIGH CVE-2024-37890 Npm-ws-7.4.6 Vulnerable Package
HIGH CVE-2024-37890 Npm-ws-7.5.5 Vulnerable Package
LOW Unprotected_Cookie /packages/blockchain-wallet-v4-frontend/src/scenes/app.tsx: 465 Attack Vector
LOW Unprotected_Cookie /packages/blockchain-wallet-v4-frontend/src/scenes/app.tsx: 495 Attack Vector