Update dependency jest to v29.2.0 #108
Security Report
You have successfully remediated 3 vulnerabilities, but introduced 7 new vulnerabilities in this branch.
❌ New vulnerabilities:
| Vulnerability | Severity | Vulnerable Library | Direct Library | Suggested Fix | Issue | Reachability | |
|---|---|---|---|---|---|---|---|
CVE-2026-26996Path to dependency file: /baak-vizualization/package.json Path to vulnerable library: /baak-vizualization/package.json Dependency Hierarchy: -> react-dev-utils-12.0.1.tgz (Root Library) -> fork-ts-checker-webpack-plugin-6.5.2.tgz -> ❌ minimatch-3.1.5.tgz (Vulnerable Library) |
7.5 | Transitive minimatch-3.1.5.tgz |
react-dev-utils-12.0.1.tgz | Transitive 10.2.1 |
#9 | ||
CVE-2026-26996Path to dependency file: /baak-vizualization/package.json Path to vulnerable library: /baak-vizualization/package.json Dependency Hierarchy: -> eslint-plugin-import-2.22.1.tgz (Root Library) -> ❌ minimatch-3.1.5.tgz (Vulnerable Library) |
7.5 | Transitive minimatch-3.1.5.tgz |
eslint-plugin-import-2.22.1.tgz | Transitive 10.2.1 |
#34 | ||
CVE-2026-26996Path to dependency file: /baak-vizualization/package.json Path to vulnerable library: /baak-vizualization/package.json Dependency Hierarchy: -> eslint-7.14.0.tgz (Root Library) -> ❌ minimatch-3.1.5.tgz (Vulnerable Library) |
7.5 | Transitive minimatch-3.1.5.tgz |
eslint-7.14.0.tgz | Transitive 10.2.1 |
#8 | ||
CVE-2026-26996Path to dependency file: /baak-vizualization/package.json Path to vulnerable library: /baak-vizualization/package.json Dependency Hierarchy: -> terser-webpack-plugin-4.2.3.tgz (Root Library) -> cacache-15.0.5.tgz -> glob-7.2.3.tgz -> ❌ minimatch-3.1.5.tgz (Vulnerable Library) |
7.5 | Transitive minimatch-3.1.5.tgz |
terser-webpack-plugin-4.2.3.tgz | Transitive 10.2.1 |
#39 | ||
CVE-2026-26996Path to dependency file: /baak-vizualization/package.json Path to vulnerable library: /baak-vizualization/package.json Dependency Hierarchy: -> babel-jest-26.6.3.tgz (Root Library) -> babel-plugin-istanbul-6.0.0.tgz -> test-exclude-6.0.0.tgz -> ❌ minimatch-3.1.5.tgz (Vulnerable Library) |
7.5 | Transitive minimatch-3.1.5.tgz |
babel-jest-26.6.3.tgz | Transitive 10.2.1 |
#7 | ||
CVE-2026-26996Path to dependency file: /baak-vizualization/package.json Path to vulnerable library: /baak-vizualization/package.json Dependency Hierarchy: -> jest-circus-29.1.2.tgz (Root Library) -> jest-runtime-29.7.0.tgz -> glob-7.2.3.tgz -> ❌ minimatch-3.1.5.tgz (Vulnerable Library) |
7.5 | Transitive minimatch-3.1.5.tgz |
jest-circus-29.1.2.tgz | Transitive 10.2.1 |
#43 | ||
CVE-2026-26996Path to dependency file: /baak-vizualization/package.json Path to vulnerable library: /baak-vizualization/package.json Dependency Hierarchy: -> workbox-webpack-plugin-6.5.3.tgz (Root Library) -> workbox-build-6.5.3.tgz -> rollup-plugin-off-main-thread-2.2.3.tgz -> ejs-3.1.8.tgz -> jake-10.8.5.tgz -> ❌ minimatch-3.1.5.tgz (Vulnerable Library) |
7.5 | Transitive minimatch-3.1.5.tgz |
workbox-webpack-plugin-6.5.3.tgz | Transitive 10.2.1 |
#28 |
✔️ Remediated vulnerabilities:
| Vulnerability | Vulnerable Library |
|---|---|
| GHSA-8x6c-cv3v-vp6g | cacheable-request-6.1.0.tgz |
| CVE-2022-25883 | semver-7.3.8.tgz |
| CVE-2022-25881 | http-cache-semantics-4.1.0.tgz |
Base branch total remaining vulnerabilities: 130
Base branch commit: 6fe0ef7fd3ca6bf6339b996c7cbdf6e38c5a74c7
Total libraries scanned: 1972
Scan token: ffa820e7377c499795e57dae911c5c2f