Skip to content

Update Version - Automated Changes#958

Merged
cx-ben-alvo merged 1 commit intomainfrom
npm-version-patch
Feb 5, 2026
Merged

Update Version - Automated Changes#958
cx-ben-alvo merged 1 commit intomainfrom
npm-version-patch

Conversation

@cx-ben-alvo
Copy link
Collaborator

This is an automated PR created by GitHub Actions

@cx-ben-alvo cx-ben-alvo merged commit da9fefd into main Feb 5, 2026
@cx-ben-alvo cx-ben-alvo deleted the npm-version-patch branch February 5, 2026 14:24
@cx-ben-alvo
Copy link
Collaborator Author

Logo
Checkmarx One – Scan Summary & Detailsb2af27a3-195f-45a6-9ee4-568351087731

New Issues (2)

Checkmarx found the following issues in this Pull Request

# Severity Issue Source File / Package Checkmarx Insight
1 MEDIUM CVE-2025-13465 Npm-lodash-4.17.21
detailsRecommended version: 4.17.23
Description: Lodash versions from 4.0.0 through 4.17.22 are vulnerable to Prototype Pollution in the "_.unset" and "_.omit" functions. An attacker can pass craf...
Attack Vector: NETWORK
Attack Complexity: LOW
Vulnerable Package
2 LOW CVE-2026-24001 Npm-diff-5.0.0
detailsRecommended version: 5.2.1
Description: jsdiff is a JavaScript text differencing implementation. Prior to versions 4.0.3, 5.x prior to 5.2.1 and 6.x through 8.x prior to 8.0.3, attempting...
Attack Vector: NETWORK
Attack Complexity: LOW
Vulnerable Package

Use @Checkmarx to interact with Checkmarx PR Assistant.
Examples:
@Checkmarx how are you able to help me?
@Checkmarx rescan this PR

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants