Update dependency body-parser to v1.20.3 #27
Security Report
You have successfully remediated 5 vulnerabilities, but introduced 4 new vulnerabilities in this branch.
❌ New vulnerabilities:
| Vulnerability | Severity | Vulnerable Library | Direct Library | Suggested Fix | Issue | Reachability | |
|---|---|---|---|---|---|---|---|
CVE-2026-2391Path to dependency file: /package.json Path to vulnerable library: /package.json Dependency Hierarchy: -> body-parser-1.20.3.tgz (Root Library) -> ❌ qs-6.13.0.tgz (Vulnerable Library) |
3.7 | Transitive qs-6.13.0.tgz |
body-parser-1.20.3.tgz | Transitive 6.14.2 |
None | ||
CVE-2025-15284Path to dependency file: /package.json Path to vulnerable library: /package.json Dependency Hierarchy: -> body-parser-1.20.3.tgz (Root Library) -> ❌ qs-6.13.0.tgz (Vulnerable Library) |
3.7 | Transitive qs-6.13.0.tgz |
body-parser-1.20.3.tgz | Transitive qs - 6.14.1 |
None | ||
CVE-289561-266276Path to dependency file: /package.json Path to vulnerable library: /package.json Dependency Hierarchy: -> body-parser-1.20.3.tgz (Root Library) -> http-errors-2.0.0.tgz -> ❌ inherits-2.0.4.tgz (Vulnerable Library) |
9.8 | Transitive inherits-2.0.4.tgz |
body-parser-1.20.3.tgz | None | |||
CVE-2025-13466Path to dependency file: /package.json Path to vulnerable library: /package.json Dependency Hierarchy: -> ❌ body-parser-1.20.3.tgz (Vulnerable Library) |
5.8 | Direct body-parser-1.20.3.tgz |
body-parser-1.20.3.tgz | body-parser - 2.2.1 | None |
✔️ Remediated vulnerabilities:
| Vulnerability | Vulnerable Library |
|---|---|
| GHSA-c3m8-x3cg-qm2c | helmet-csp-1.2.2.tgz |
| GHSA-mh5c-679w-hh4r | mongodb-2.2.36.tgz |
| GHSA-7fhm-mqm4-2wp7 | minimist-1.2.0.tgz |
| GHSA-7fhm-mqm4-2wp7 | minimist-0.0.10.tgz |
| GHSA-7fhm-mqm4-2wp7 | minimist-0.0.8.tgz |
Base branch total remaining vulnerabilities: 75
Base branch commit: 38d9a31911b1bfc50b3204e1150ed6ed3d242abc
Total libraries scanned: 414
Scan token: 0ef94a45975f4ac19079a6c1d964db31