vital-ws / cve-based

0 stars 0 forks source link

Update dependency express to v4 - abandoned #26

Open mend-for-github-com[bot] opened 2 years ago

mend-for-github-com[bot] commented 2 years ago

This PR contains the following updates:

Package Type Update Change
express (source) dependencies major 3.0.0 -> 4.16.0

By merging this PR, the issue #27 will be automatically resolved and closed:

Severity CVSS Score CVE
High High 7.5 CVE-2014-10064
High High 7.5 CVE-2017-16119
High High 7.5 CVE-2017-16138
High High 7.5 WS-2014-0005
High High 7.3 CVE-2014-6394
High High 7.3 CVE-2014-6394
Medium Medium 6.1 CVE-2013-7370
Medium Medium 6.1 CVE-2013-7371
Medium Medium 6.1 WS-2013-0004
Medium Medium 5.4 CVE-2018-3717
Medium Medium 5.3 CVE-2014-7191
Medium Medium 5.3 CVE-2015-8859
Medium Medium 5.3 CVE-2015-8859
Medium Medium 5.3 CVE-2017-1000048
Medium Medium 5.3 WS-2013-0003
Low Low 3.7 CVE-2014-6393

mend-for-github-com[bot] commented 1 year ago

Autoclosing Skipped

This PR has been flagged for autoclosing. However, it is being skipped due to the branch being already modified. Please close/delete it manually or report a bug if you think this is in error.

mend-for-github-com[bot] commented 1 year ago

Edited/Blocked Notification

Renovate will not automatically rebase this PR, because it does not recognize the last commit author and assumes somebody else may have edited the PR.

You can manually request rebase by checking the rebase/retry box above.

Warning: custom changes will be lost.