Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Snyk] Security upgrade socket.io from 3.1.2 to 4.7.0 #28

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

fix: package.json to reduce vulnerabilities

9c67d8c
Select commit
Loading
Failed to load commit list.
Open

[Snyk] Security upgrade socket.io from 3.1.2 to 4.7.0 #28

fix: package.json to reduce vulnerabilities
9c67d8c
Select commit
Loading
Failed to load commit list.
Mend Bolt for GitHub / Mend Security Check succeeded Jun 19, 2024 in 7m 47s

Security Report

✔️ 👍 You have successfully remediated 5 vulnerabilities in this branch:

CVE Vulnerable Library
CVE-2024-37890 ws-7.4.6.tgz
CVE-2023-32695 socket.io-parser-4.0.5.tgz
CVE-2024-37890 ws-8.17.0.tgz
CVE-2022-41940 engine.io-4.1.2.tgz
CVE-2024-37890 ws-8.5.0.tgz

Base branch total remaining vulnerabilities: 55
Base branch commit: b17520d49acc97f4f5e90502a4a3e6e92b092ddc


Total libraries scanned: 985

Scan token: 5177ac7d77d74967ae71a4339253b128