Skip to content

fix: client/package.json & client/package-lock.json to reduce vulnera…

b67cc12
Select commit
Loading
Failed to load commit list.
Open

[Snyk] Fix for 1 vulnerabilities #41

fix: client/package.json & client/package-lock.json to reduce vulnera…
b67cc12
Select commit
Loading
Failed to load commit list.
Codacy Production / Codacy Static Code Analysis required action Jul 19, 2025 in 0s

7 new issues (0 max.) of at least minor severity.

Annotations

Check warning on line 11131 in client/package-lock.json

See this annotation in the file changed.

@codacy-production codacy-production / Codacy Static Code Analysis

client/package-lock.json#L11131

Insecure dependency npm/brace-expansion@2.0.1 (CVE-2025-5889: brace-expansion: juliangruber brace-expansion index.js expand redos) (update to 2.0.2)

Check failure on line 16330 in client/package-lock.json

See this annotation in the file changed.

@codacy-production codacy-production / Codacy Static Code Analysis

client/package-lock.json#L16330

Insecure dependency npm/nth-check@1.0.2 (CVE-2021-3803: nodejs-nth-check: inefficient regular expression complexity) (update to 2.0.1)

Check failure on line 18457 in client/package-lock.json

See this annotation in the file changed.

@codacy-production codacy-production / Codacy Static Code Analysis

client/package-lock.json#L18457

Insecure dependency npm/protobufjs@6.11.2 (CVE-2023-36665: protobufjs: prototype pollution using user-controlled protobuf message) (update to 6.11.4)

Check warning on line 20349 in client/package-lock.json

See this annotation in the file changed.

@codacy-production codacy-production / Codacy Static Code Analysis

client/package-lock.json#L20349

Insecure dependency npm/postcss@7.0.39 (CVE-2023-44270: PostCSS: Improper input validation in PostCSS) (update to 8.4.31)

Check failure on line 20436 in client/package-lock.json

See this annotation in the file changed.

@codacy-production codacy-production / Codacy Static Code Analysis

client/package-lock.json#L20436

Insecure dependency npm/rollup@0.25.8 (CVE-2024-47068: rollup: DOM Clobbering Gadget found in rollup bundled scripts that leads to XSS) (update to 2.79.2)

Check failure on line 20759 in client/package-lock.json

See this annotation in the file changed.

@codacy-production codacy-production / Codacy Static Code Analysis

client/package-lock.json#L20759

Insecure dependency npm/semver@6.3.0 (CVE-2022-25883: nodejs-semver: Regular expression denial of service) (update to 6.3.1)

Check warning on line 22947 in client/package-lock.json

See this annotation in the file changed.

@codacy-production codacy-production / Codacy Static Code Analysis

client/package-lock.json#L22947

Insecure dependency npm/webpack-dev-server@4.15.2 (CVE-2025-30359: webpack-dev-server: webpack-dev-server information exposure) (update to 5.2.1)