synopsys-sig / synopsys-action

Synopsys Action consuming Synopsys scanning tools
Apache License 2.0
24 stars 18 forks source link

Sigint 2349 2 #272

Open lsynopsys opened 2 days ago

github-actions[bot] commented 2 days ago

Automated PR Comment From Black Duck SCA

### ❌ Found dependencies violating policy! | Policies Violated | Dependency | License(s) | Vulnerabilities | Short Term Recommended Upgrade | Long Term Recommended Upgrade | Resolved / Filtered Out | |-------------------|------------|------------|-----------------|--------------------------------|-------------------------------|-------------------------| | Critical_With Overall_Score_GE 7 | typed-rest-client | N/A | ❌   [CVE-2023-30846](https://saastest.app.blackduck.com/api/vulnerabilities/CVE-2023-30846) HIGH CVSS 7.5 | 1.8.11 (0 known vulnerabilities) | 2.1.0 (0 known vulnerabilities) | :white_check_mark: | | Critical_With Overall_Score_GE 7 | jQuery | N/A | ❌   [BDSA-2014-0063](https://saastest.app.blackduck.com/api/vulnerabilities/BDSA-2014-0063) HIGH CVSS 8.6
❌   [BDSA-2019-1138](https://saastest.app.blackduck.com/api/vulnerabilities/BDSA-2019-1138) HIGH CVSS 8.3
❌   [BDSA-2020-0964](https://saastest.app.blackduck.com/api/vulnerabilities/BDSA-2020-0964) HIGH CVSS 8.6
❌   [BDSA-2017-2930](https://saastest.app.blackduck.com/api/vulnerabilities/BDSA-2017-2930) HIGH CVSS 8.1
❌   [BDSA-2020-0686](https://saastest.app.blackduck.com/api/vulnerabilities/BDSA-2020-0686) HIGH CVSS 8.6 | | 3.7.1 (0 known vulnerabilities) | :white_check_mark: |