Skip to content

[Workspace] Add Workspace filter to saved objects management page (#6…

Mend for github.com / WhiteSource Security Check failed Apr 23, 2024 in 15m 23s

Security Report

You have successfully remediated 7 vulnerabilities, but introduced 3 new vulnerabilities in this branch.

❌ New vulnerabilities:

CVE Severity CVSS Score Vulnerable Library Suggested Fix Issue
WS-2017-3772

Vulnerable Source Files:

❌ /packages/osd-ui-framework/node_modules/underscore.string/unescapeHTML.js

High 7.5 juice-shopjuice-shop-14.0.0_node14_darwin_x64 Upgrade to version: underscore.string - 3.3.5 #4734
CVE-2023-26156

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/chromedriver/package.json

Dependency Hierarchy:

-> ❌ chromedriver-107.0.3.tgz (Vulnerable Library)

High 7.5 chromedriver-107.0.3.tgz Upgrade to version: chromedriver - 119.0.1 None
CVE-2019-20149
High 7.5 lportalliferay-ce-portal-src-7.3.5-ga6-20200930172312275 Upgrade to version: 6.0.3 #4726

✔️ Remediated vulnerabilities:

CVE Vulnerable Library
CVE-2015-9251 jquery-1.11.1.js
CVE-2019-20149 juice-shop-juice-shop-15.2.0_node16_win32_x64
WS-2017-3772 underscore.string-3.3.6
CVE-2019-11358 jquery-1.11.1.js
CVE-2020-11022 jquery-1.11.1.js
CVE-2023-28155 request-2.88.12.tgz
CVE-2020-11023 jquery-1.11.1.js

Base branch total remaining vulnerabilities: 18
Base branch commit: b117fd374d553c3382bd8a63e49bd98fb654916d


Total libraries scanned: 2517

Scan token: de6dc94041a54549b4b54c24af915359