Update dependency jsdom to v21 - #101
Security Report
8 new vulnerabilities were introduced in this branch.
❌ New vulnerabilities:
| Vulnerability | Severity | Vulnerable Library | Direct Library | Suggested Fix | Issue | |
|---|---|---|---|---|---|---|
CVE-2026-41907Path to dependency file: /package.json Path to vulnerable library: /package.json Dependency Hierarchy: -> aws-sdk-2.1307.0.tgz (Root Library) -> ❌ uuid-8.0.0.tgz (Vulnerable Library) |
9.8 | Transitive uuid-8.0.0.tgz |
aws-sdk-2.1307.0.tgz | Transitive https://github.com/uuidjs/uuid.git - v11.1.1,https://github.com/uuidjs/uuid.git - v12.0.1,https://github.com/uuidjs/uuid.git - v13.0.1 |
#37 | |
CVE-2026-33937Path to dependency file: /package.json Path to vulnerable library: /package.json Dependency Hierarchy: -> nodemailer-express-handlebars-5.0.0.tgz (Root Library) -> express-handlebars-6.0.7.tgz -> ❌ handlebars-4.7.7.tgz (Vulnerable Library) |
9.8 | Transitive handlebars-4.7.7.tgz |
nodemailer-express-handlebars-5.0.0.tgz | Transitive https://github.com/handlebars-lang/handlebars.js.git - v4.7.9 |
None | |
CVE-2026-33941Path to dependency file: /package.json Path to vulnerable library: /package.json Dependency Hierarchy: -> nodemailer-express-handlebars-5.0.0.tgz (Root Library) -> express-handlebars-6.0.7.tgz -> ❌ handlebars-4.7.7.tgz (Vulnerable Library) |
8.2 | Transitive handlebars-4.7.7.tgz |
nodemailer-express-handlebars-5.0.0.tgz | Transitive https://github.com/handlebars-lang/handlebars.js.git - v4.7.9 |
None | |
CVE-2026-56876Path to dependency file: /package.json Path to vulnerable library: /package.json Dependency Hierarchy: -> puppeteer-18.2.1.tgz (Root Library) -> puppeteer-core-18.2.1.tgz -> ❌ extract-zip-2.0.1.tgz (Vulnerable Library) |
8.1 | Transitive extract-zip-2.0.1.tgz |
puppeteer-18.2.1.tgz | #75 | ||
CVE-2026-33940Path to dependency file: /package.json Path to vulnerable library: /package.json Dependency Hierarchy: -> nodemailer-express-handlebars-5.0.0.tgz (Root Library) -> express-handlebars-6.0.7.tgz -> ❌ handlebars-4.7.7.tgz (Vulnerable Library) |
8.1 | Transitive handlebars-4.7.7.tgz |
nodemailer-express-handlebars-5.0.0.tgz | Transitive https://github.com/handlebars-lang/handlebars.js.git - v4.7.9 |
None | |
CVE-2026-33938Path to dependency file: /package.json Path to vulnerable library: /package.json Dependency Hierarchy: -> nodemailer-express-handlebars-5.0.0.tgz (Root Library) -> express-handlebars-6.0.7.tgz -> ❌ handlebars-4.7.7.tgz (Vulnerable Library) |
8.1 | Transitive handlebars-4.7.7.tgz |
nodemailer-express-handlebars-5.0.0.tgz | Transitive https://github.com/handlebars-lang/handlebars.js.git - v4.7.9 |
None | |
CVE-2026-33939Path to dependency file: /package.json Path to vulnerable library: /package.json Dependency Hierarchy: -> nodemailer-express-handlebars-5.0.0.tgz (Root Library) -> express-handlebars-6.0.7.tgz -> ❌ handlebars-4.7.7.tgz (Vulnerable Library) |
7.5 | Transitive handlebars-4.7.7.tgz |
nodemailer-express-handlebars-5.0.0.tgz | Transitive https://github.com/handlebars-lang/handlebars.js.git - v4.7.9 |
None | |
CVE-2026-33916Path to dependency file: /package.json Path to vulnerable library: /package.json Dependency Hierarchy: -> nodemailer-express-handlebars-5.0.0.tgz (Root Library) -> express-handlebars-6.0.7.tgz -> ❌ handlebars-4.7.7.tgz (Vulnerable Library) |
4.7 | Transitive handlebars-4.7.7.tgz |
nodemailer-express-handlebars-5.0.0.tgz | Transitive https://github.com/handlebars-lang/handlebars.js.git - v4.7.9 |
None |
Base branch total remaining vulnerabilities: 45
Base branch commit: null
Total libraries scanned: 173
Scan token: 897578cdb6304318a9616fc743985b9f