chore(deps): update dependency supabase to v2.8.0 #11
Security Report
❗️Scan Incomplete: The scan completed with partial failure. The integration encountered issues with one or more projects in this repository, preventing their scan. The errors occurred in the following package managers: gradle,CocoaPods. Consequently, there may be gaps in the coverage of open-source dependencies used in the repository.
Scan Details Report
gradle
/tmp/ws-scm/AutoGPT/classic/frontend/android/build.gradle
| Step | Level | Description | Details |
|---|---|---|---|
| Preparing the project for scan | ⚠Warn | One or more of the installations failed | failed running mend init script (mendDeps): NOTE: Picked up JDK_JAVA_OPTIONS: --add-opens java.base/java.util=ALL-UNNAMED --add-opens java.base/sun.reflect.generics.reflectiveObjects=ALL-UNNAMED FAILURE: Build failed with an exception. * Where: Settings file '/tmp/ws-scm/AutoGPT/classic/frontend/android/settings.gradle' line: 6 * What went wrong: A problem occurred evaluating settings 'andro... |
pip
/tmp/ws-scm/AutoGPT/classic/benchmark/agbenchmark/challenges/verticals/code/6_battleship/artifacts_in/product_requirements.txt
| Step | Level | Description | Details |
|---|---|---|---|
| Resolving the project | ⚠Warn | Some problems occurred while performing the resolution operation |
|
/tmp/ws-scm/AutoGPT/classic/original_autogpt
| Step | Level | Description | Details |
|---|---|---|---|
| Resolving the project | ⚠Warn | Some problems occurred while performing the resolution operation |
|
/tmp/ws-scm/AutoGPT/classic/original_autogpt/autogpt/app
| Step | Level | Description | Details |
|---|---|---|---|
| Resolving the project | ⚠Warn | Some problems occurred while performing the resolution operation |
|
poetry
/tmp/ws-scm/AutoGPT/classic/forge/pyproject.toml
| Step | Level | Description | Details |
|---|---|---|---|
| Resolving the project | ⚠Warn | Failed to build the dependency tree, fallback was used in the scan, results may be incomplete | Error occurred while parsing the poetry show --tree command on the /tmp/ws-scm/AutoGPT/classic/forge/pyproject.toml file |
/tmp/ws-scm/AutoGPT/classic/original_autogpt/pyproject.toml
| Step | Level | Description | Details |
|---|---|---|---|
| Resolving the project | ⚠Warn | Failed to build the dependency tree, fallback was used in the scan, results may be incomplete | Error occurred while parsing the poetry show --tree command on the /tmp/ws-scm/AutoGPT/classic/original_autogpt/pyproject.toml file |
❌ New vulnerabilities:
| Vulnerability | Severity | Vulnerable Library | Direct Library | Suggested Fix | Issue | Reachability | |
|---|---|---|---|---|---|---|---|
CVE-2026-0994Dependency Hierarchy: -> google_cloud_logging-3.11.2-py2.py3-none-any.whl (Root Library) -> google_api_core-2.19.2-py3-none-any.whl -> googleapis_common_protos-1.65.0-py2.py3-none-any.whl -> ❌ protobuf-5.28.0-cp310-abi3-win32.whl (Vulnerable Library) |
8.6 | Transitive protobuf-5.28.0-cp310-abi3-win32.whl |
google_cloud_logging-3.11.2-py2.py3-none-any.whl | None | |||
CVE-2025-4565Dependency Hierarchy: -> google_cloud_logging-3.11.2-py2.py3-none-any.whl (Root Library) -> google_api_core-2.19.2-py3-none-any.whl -> googleapis_common_protos-1.65.0-py2.py3-none-any.whl -> ❌ protobuf-5.28.0-cp310-abi3-win32.whl (Vulnerable Library) |
7.5 | Transitive protobuf-5.28.0-cp310-abi3-win32.whl |
google_cloud_logging-3.11.2-py2.py3-none-any.whl | Transitive 5.29.5 |
None |
✔️ Remediated vulnerabilities:
| Vulnerability | Vulnerable Library |
|---|---|
| CVE-2025-53643 | aiohttp-3.10.5-cp312-cp312-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2025-69226 | aiohttp-3.10.5-cp312-cp312-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2025-69223 | aiohttp-3.10.5-cp312-cp312-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2025-69224 | aiohttp-3.10.5-cp312-cp312-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2026-0994 | protobuf-5.28.0-cp38-abi3-manylinux2014_x86_64.whl |
| CVE-2025-4565 | protobuf-5.28.0-cp38-abi3-manylinux2014_x86_64.whl |
Base branch total remaining vulnerabilities: 79
Base branch commit: b74c8d4152d600b0a70b423a8ee2d3fcd7737272
Total libraries scanned: 978
Scan token: 2a1b25645bce47108ebfebec1ac56ebe