Skip to content

Update dependency workbox-webpack-plugin to v6.5.4

aef6952
Select commit
Loading
Failed to load commit list.
Open

Update dependency workbox-webpack-plugin to v6.5.4 #129

Update dependency workbox-webpack-plugin to v6.5.4
aef6952
Select commit
Loading
Failed to load commit list.
Dev - Mend for GitHub.com / Mend Security Check failed Mar 27, 2026 in 7m 31s

Security Report

You have successfully remediated 2 vulnerabilities, but introduced 48 new vulnerabilities in this branch.

❌ New vulnerabilities:

Vulnerability Severity CVSS Score Vulnerable Library Direct Library Suggested Fix Issue Reachability
CVE-2026-4867

Path to dependency file: /baak-dataload-sql/package.json

Path to vulnerable library: /baak-dataload-sql/package.json,/achilles-frontend/package.json,/baak-vizualization/package.json

Dependency Hierarchy:

-> express-4.17.1.tgz (Root Library)

   -> ❌ path-to-regexp-0.1.7.tgz (Vulnerable Library)

High 7.5 Transitive path-to-regexp-0.1.7.tgz express-4.17.1.tgz Transitive Upgrade to version path-to-regexp - 0.1.13 or greater #13

Reachable

CVE-2026-4867

Path to dependency file: /baak-dataload-sql/package.json

Path to vulnerable library: /baak-dataload-sql/package.json,/achilles-frontend/package.json,/baak-vizualization/package.json

Dependency Hierarchy:

-> webpack-dev-server-4.9.0.tgz (Root Library)

   -> express-4.18.1.tgz

     -> ❌ path-to-regexp-0.1.7.tgz (Vulnerable Library)

High 7.5 Transitive path-to-regexp-0.1.7.tgz webpack-dev-server-4.9.0.tgz Transitive Upgrade to version path-to-regexp - 0.1.13 or greater #16

Reachable

CVE-2026-33895

Path to dependency file: /achilles-frontend/package.json

Path to vulnerable library: /achilles-frontend/package.json,/baak-vizualization/package.json

Dependency Hierarchy:

-> webpack-dev-server-4.9.0.tgz (Root Library)

   -> selfsigned-2.0.1.tgz

     -> ❌ node-forge-1.3.1.tgz (Vulnerable Library)

High 7.5 Transitive node-forge-1.3.1.tgz webpack-dev-server-4.9.0.tgz Transitive Upgrade to version node-forge - 1.4.0 or greater #16

Reachable

CVE-2026-33894

Path to dependency file: /achilles-frontend/package.json

Path to vulnerable library: /achilles-frontend/package.json,/baak-vizualization/package.json

Dependency Hierarchy:

-> webpack-dev-server-4.9.0.tgz (Root Library)

   -> selfsigned-2.0.1.tgz

     -> ❌ node-forge-1.3.1.tgz (Vulnerable Library)

High 7.5 Transitive node-forge-1.3.1.tgz webpack-dev-server-4.9.0.tgz Transitive Upgrade to version node-forge - 1.4.0 or greater #16

Reachable

CVE-2026-33891

Path to dependency file: /achilles-frontend/package.json

Path to vulnerable library: /achilles-frontend/package.json,/baak-vizualization/package.json

Dependency Hierarchy:

-> webpack-dev-server-4.9.0.tgz (Root Library)

   -> selfsigned-2.0.1.tgz

     -> ❌ node-forge-1.3.1.tgz (Vulnerable Library)

High 7.5 Transitive node-forge-1.3.1.tgz webpack-dev-server-4.9.0.tgz Transitive Upgrade to version node-forge - 1.4.0 or greater #16

Reachable

CVE-2026-33671

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> eslint-webpack-plugin-2.4.0.tgz (Root Library)

   -> micromatch-4.0.5.tgz

     -> ❌ picomatch-2.3.1.tgz (Vulnerable Library)

High 7.5 Transitive picomatch-2.3.1.tgz eslint-webpack-plugin-2.4.0.tgz Transitive Upgrade to version picomatch - 4.0.4 or greater #47

Reachable

CVE-2026-33671

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> jest-circus-29.1.2.tgz (Root Library)

   -> jest-util-29.1.2.tgz

     -> ❌ picomatch-2.3.1.tgz (Vulnerable Library)

High 7.5 Transitive picomatch-2.3.1.tgz jest-circus-29.1.2.tgz Transitive Upgrade to version picomatch - 4.0.4 or greater #43

Reachable

CVE-2026-33671

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> workbox-webpack-plugin-6.5.4.tgz (Root Library)

   -> workbox-build-6.5.4.tgz

     -> plugin-babel-5.3.1.tgz

       -> pluginutils-3.1.0.tgz

         -> ❌ picomatch-2.3.1.tgz (Vulnerable Library)

High 7.5 Transitive picomatch-2.3.1.tgz workbox-webpack-plugin-6.5.4.tgz Transitive Upgrade to version picomatch - 4.0.4 or greater None

Reachable

CVE-2026-33671

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> eslint-webpack-plugin-2.5.2.tgz (Root Library)

   -> micromatch-4.0.5.tgz

     -> ❌ picomatch-2.3.1.tgz (Vulnerable Library)

High 7.5 Transitive picomatch-2.3.1.tgz eslint-webpack-plugin-2.5.2.tgz Transitive Upgrade to version picomatch - 4.0.4 or greater #42

Reachable

CVE-2026-33671

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> babel-jest-26.6.3.tgz (Root Library)

   -> transform-26.6.2.tgz

     -> jest-haste-map-26.6.2.tgz

       -> anymatch-3.1.1.tgz

         -> ❌ picomatch-2.3.1.tgz (Vulnerable Library)

High 7.5 Transitive picomatch-2.3.1.tgz babel-jest-26.6.3.tgz Transitive Upgrade to version picomatch - 4.0.4 or greater #7

Reachable

CVE-2026-33671

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> jest-26.6.0.tgz (Root Library)

   -> core-26.6.3.tgz

     -> jest-haste-map-26.6.2.tgz

       -> anymatch-3.1.2.tgz

         -> ❌ picomatch-2.3.1.tgz (Vulnerable Library)

High 7.5 Transitive picomatch-2.3.1.tgz jest-26.6.0.tgz Transitive Upgrade to version picomatch - 4.0.4 or greater #38

Reachable

CVE-2026-33671

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> react-dev-utils-12.0.1.tgz (Root Library)

   -> globby-11.1.0.tgz

     -> fast-glob-3.2.11.tgz

       -> micromatch-4.0.5.tgz

         -> ❌ picomatch-2.3.1.tgz (Vulnerable Library)

High 7.5 Transitive picomatch-2.3.1.tgz react-dev-utils-12.0.1.tgz Transitive Upgrade to version picomatch - 4.0.4 or greater #9

Reachable

CVE-2026-33671

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> webpack-dev-server-4.9.0.tgz (Root Library)

   -> chokidar-3.5.3.tgz

     -> anymatch-3.1.2.tgz

       -> ❌ picomatch-2.3.1.tgz (Vulnerable Library)

High 7.5 Transitive picomatch-2.3.1.tgz webpack-dev-server-4.9.0.tgz Transitive Upgrade to version picomatch - 4.0.4 or greater #16

Reachable

CVE-2026-33671

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> jest-29.1.2.tgz (Root Library)

   -> core-29.1.2.tgz

     -> micromatch-4.0.5.tgz

       -> ❌ picomatch-2.3.1.tgz (Vulnerable Library)

High 7.5 Transitive picomatch-2.3.1.tgz jest-29.1.2.tgz Transitive Upgrade to version picomatch - 4.0.4 or greater #15

Reachable

CVE-2026-33671

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> workbox-webpack-plugin-6.5.3.tgz (Root Library)

   -> workbox-build-6.5.3.tgz

     -> plugin-babel-5.3.1.tgz

       -> pluginutils-3.1.0.tgz

         -> ❌ picomatch-2.3.1.tgz (Vulnerable Library)

High 7.5 Transitive picomatch-2.3.1.tgz workbox-webpack-plugin-6.5.3.tgz Transitive Upgrade to version picomatch - 4.0.4 or greater #28

Reachable

CVE-2026-33896

Path to dependency file: /achilles-frontend/package.json

Path to vulnerable library: /achilles-frontend/package.json,/baak-vizualization/package.json

Dependency Hierarchy:

-> webpack-dev-server-4.9.0.tgz (Root Library)

   -> selfsigned-2.0.1.tgz

     -> ❌ node-forge-1.3.1.tgz (Vulnerable Library)

High 7.4 Transitive node-forge-1.3.1.tgz webpack-dev-server-4.9.0.tgz Transitive Upgrade to version node-forge - 1.4.0 or greater #16

Reachable

CVE-2026-33750

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> eslint-plugin-import-2.22.1.tgz (Root Library)

   -> minimatch-3.0.4.tgz

     -> ❌ brace-expansion-1.1.11.tgz (Vulnerable Library)

Medium 6.5 Transitive brace-expansion-1.1.11.tgz eslint-plugin-import-2.22.1.tgz Transitive Upgrade to version brace-expansion - 2.0.3 or greater #34

Reachable

CVE-2026-33750

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> react-dev-utils-12.0.1.tgz (Root Library)

   -> recursive-readdir-2.2.2.tgz

     -> minimatch-3.0.4.tgz

       -> ❌ brace-expansion-1.1.11.tgz (Vulnerable Library)

Medium 6.5 Transitive brace-expansion-1.1.11.tgz react-dev-utils-12.0.1.tgz Transitive Upgrade to version brace-expansion - 2.0.3 or greater #9

Reachable

CVE-2026-34043

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> terser-webpack-plugin-4.2.3.tgz (Root Library)

   -> ❌ serialize-javascript-5.0.1.tgz (Vulnerable Library)

Medium 5.9 Transitive serialize-javascript-5.0.1.tgz terser-webpack-plugin-4.2.3.tgz Transitive Upgrade to version serialize-javascript - 7.0.5 or greater #39

Reachable

CVE-2026-33672

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> eslint-webpack-plugin-2.4.0.tgz (Root Library)

   -> micromatch-4.0.5.tgz

     -> ❌ picomatch-2.3.1.tgz (Vulnerable Library)

Medium 5.3 Transitive picomatch-2.3.1.tgz eslint-webpack-plugin-2.4.0.tgz Transitive Upgrade to version picomatch - 3.0.2 or greater #47

Reachable

CVE-2026-33672

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> jest-circus-29.1.2.tgz (Root Library)

   -> jest-util-29.1.2.tgz

     -> ❌ picomatch-2.3.1.tgz (Vulnerable Library)

Medium 5.3 Transitive picomatch-2.3.1.tgz jest-circus-29.1.2.tgz Transitive Upgrade to version picomatch - 3.0.2 or greater #43

Reachable

CVE-2026-33672

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> workbox-webpack-plugin-6.5.4.tgz (Root Library)

   -> workbox-build-6.5.4.tgz

     -> plugin-babel-5.3.1.tgz

       -> pluginutils-3.1.0.tgz

         -> ❌ picomatch-2.3.1.tgz (Vulnerable Library)

Medium 5.3 Transitive picomatch-2.3.1.tgz workbox-webpack-plugin-6.5.4.tgz Transitive Upgrade to version picomatch - 3.0.2 or greater None

Reachable

CVE-2026-33672

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> eslint-webpack-plugin-2.5.2.tgz (Root Library)

   -> micromatch-4.0.5.tgz

     -> ❌ picomatch-2.3.1.tgz (Vulnerable Library)

Medium 5.3 Transitive picomatch-2.3.1.tgz eslint-webpack-plugin-2.5.2.tgz Transitive Upgrade to version picomatch - 3.0.2 or greater #42

Reachable

CVE-2026-33672

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> babel-jest-26.6.3.tgz (Root Library)

   -> transform-26.6.2.tgz

     -> jest-haste-map-26.6.2.tgz

       -> anymatch-3.1.1.tgz

         -> ❌ picomatch-2.3.1.tgz (Vulnerable Library)

Medium 5.3 Transitive picomatch-2.3.1.tgz babel-jest-26.6.3.tgz Transitive Upgrade to version picomatch - 3.0.2 or greater #7

Reachable

CVE-2026-33672

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> jest-26.6.0.tgz (Root Library)

   -> core-26.6.3.tgz

     -> jest-haste-map-26.6.2.tgz

       -> anymatch-3.1.2.tgz

         -> ❌ picomatch-2.3.1.tgz (Vulnerable Library)

Medium 5.3 Transitive picomatch-2.3.1.tgz jest-26.6.0.tgz Transitive Upgrade to version picomatch - 3.0.2 or greater #38

Reachable

CVE-2026-33672

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> react-dev-utils-12.0.1.tgz (Root Library)

   -> globby-11.1.0.tgz

     -> fast-glob-3.2.11.tgz

       -> micromatch-4.0.5.tgz

         -> ❌ picomatch-2.3.1.tgz (Vulnerable Library)

Medium 5.3 Transitive picomatch-2.3.1.tgz react-dev-utils-12.0.1.tgz Transitive Upgrade to version picomatch - 3.0.2 or greater #9

Reachable

CVE-2026-33672

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> webpack-dev-server-4.9.0.tgz (Root Library)

   -> chokidar-3.5.3.tgz

     -> anymatch-3.1.2.tgz

       -> ❌ picomatch-2.3.1.tgz (Vulnerable Library)

Medium 5.3 Transitive picomatch-2.3.1.tgz webpack-dev-server-4.9.0.tgz Transitive Upgrade to version picomatch - 3.0.2 or greater #16

Reachable

CVE-2026-33672

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> jest-29.1.2.tgz (Root Library)

   -> core-29.1.2.tgz

     -> micromatch-4.0.5.tgz

       -> ❌ picomatch-2.3.1.tgz (Vulnerable Library)

Medium 5.3 Transitive picomatch-2.3.1.tgz jest-29.1.2.tgz Transitive Upgrade to version picomatch - 3.0.2 or greater #15

Reachable

CVE-2026-33672

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> workbox-webpack-plugin-6.5.3.tgz (Root Library)

   -> workbox-build-6.5.3.tgz

     -> plugin-babel-5.3.1.tgz

       -> pluginutils-3.1.0.tgz

         -> ❌ picomatch-2.3.1.tgz (Vulnerable Library)

Medium 5.3 Transitive picomatch-2.3.1.tgz workbox-webpack-plugin-6.5.3.tgz Transitive Upgrade to version picomatch - 3.0.2 or greater #28

Reachable

CVE-2026-33532

Path to dependency file: /achilles-frontend/package.json

Path to vulnerable library: /achilles-frontend/package.json,/baak-vizualization/package.json

Dependency Hierarchy:

-> babel-preset-react-app-10.0.0.tgz (Root Library)

   -> babel-plugin-macros-2.8.0.tgz

     -> cosmiconfig-6.0.0.tgz

       -> ❌ yaml-1.10.2.tgz (Vulnerable Library)

Medium 4.3 Transitive yaml-1.10.2.tgz babel-preset-react-app-10.0.0.tgz Transitive Upgrade to version yaml - 2.8.3 or greater None

Reachable

CVE-2026-33532

Path to dependency file: /achilles-frontend/package.json

Path to vulnerable library: /achilles-frontend/package.json,/baak-vizualization/package.json

Dependency Hierarchy:

-> webpack-6.2.1.tgz (Root Library)

   -> core-6.2.1.tgz

     -> cosmiconfig-7.0.1.tgz

       -> ❌ yaml-1.10.2.tgz (Vulnerable Library)

Medium 4.3 Transitive yaml-1.10.2.tgz webpack-6.2.1.tgz Transitive Upgrade to version yaml - 2.8.3 or greater #32

Reachable

CVE-2026-33532

Path to dependency file: /achilles-frontend/package.json

Path to vulnerable library: /achilles-frontend/package.json,/baak-vizualization/package.json

Dependency Hierarchy:

-> optimize-css-assets-webpack-plugin-6.0.1.tgz (Root Library)

   -> cssnano-5.1.9.tgz

     -> ❌ yaml-1.10.2.tgz (Vulnerable Library)

Medium 4.3 Transitive yaml-1.10.2.tgz optimize-css-assets-webpack-plugin-6.0.1.tgz Transitive Upgrade to version yaml - 2.8.3 or greater None

Reachable

CVE-2026-33750

Path to dependency file: /achilles-frontend/package.json

Path to vulnerable library: /achilles-frontend/package.json,/baak-vizualization/package.json

Dependency Hierarchy:

-> workbox-webpack-plugin-6.5.4.tgz (Root Library)

   -> workbox-build-6.5.4.tgz

     -> rollup-plugin-off-main-thread-2.2.3.tgz

       -> ejs-3.1.8.tgz

         -> jake-10.8.5.tgz

           -> filelist-1.0.4.tgz

             -> minimatch-5.1.0.tgz

               -> ❌ brace-expansion-2.0.1.tgz (Vulnerable Library)

Medium 6.5 Transitive brace-expansion-2.0.1.tgz workbox-webpack-plugin-6.5.4.tgz Transitive Upgrade to version brace-expansion - 2.0.3 or greater None

Unreachable

CVE-2026-33750

Path to dependency file: /achilles-frontend/package.json

Path to vulnerable library: /achilles-frontend/package.json,/baak-vizualization/package.json

Dependency Hierarchy:

-> workbox-webpack-plugin-6.5.3.tgz (Root Library)

   -> workbox-build-6.5.3.tgz

     -> rollup-plugin-off-main-thread-2.2.3.tgz

       -> ejs-3.1.8.tgz

         -> jake-10.8.5.tgz

           -> filelist-1.0.4.tgz

             -> minimatch-5.1.0.tgz

               -> ❌ brace-expansion-2.0.1.tgz (Vulnerable Library)

Medium 6.5 Transitive brace-expansion-2.0.1.tgz workbox-webpack-plugin-6.5.3.tgz Transitive Upgrade to version brace-expansion - 2.0.3 or greater #28

Unreachable

CVE-2026-34043

Path to dependency file: /achilles-frontend/package.json

Path to vulnerable library: /achilles-frontend/package.json,/baak-vizualization/package.json

Dependency Hierarchy:

-> workbox-webpack-plugin-6.5.4.tgz (Root Library)

   -> workbox-build-6.5.4.tgz

     -> rollup-plugin-terser-7.0.2.tgz

       -> ❌ serialize-javascript-4.0.0.tgz (Vulnerable Library)

Medium 5.9 Transitive serialize-javascript-4.0.0.tgz workbox-webpack-plugin-6.5.4.tgz Transitive Upgrade to version serialize-javascript - 7.0.5 or greater None

Unreachable

CVE-2026-34043

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> webpack-5.72.1.tgz (Root Library)

   -> terser-webpack-plugin-5.3.1.tgz

     -> ❌ serialize-javascript-6.0.0.tgz (Vulnerable Library)

Medium 5.9 Transitive serialize-javascript-6.0.0.tgz webpack-5.72.1.tgz Transitive Upgrade to version serialize-javascript - 7.0.5 or greater #5

Unreachable

CVE-2026-34043

Path to dependency file: /achilles-frontend/package.json

Path to vulnerable library: /achilles-frontend/package.json,/baak-vizualization/package.json

Dependency Hierarchy:

-> workbox-webpack-plugin-6.5.3.tgz (Root Library)

   -> workbox-build-6.5.3.tgz

     -> rollup-plugin-terser-7.0.2.tgz

       -> ❌ serialize-javascript-4.0.0.tgz (Vulnerable Library)

Medium 5.9 Transitive serialize-javascript-4.0.0.tgz workbox-webpack-plugin-6.5.3.tgz Transitive Upgrade to version serialize-javascript - 7.0.5 or greater #28

Unreachable

CVE-607537-903744

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> eslint-7.22.0.tgz (Root Library)

   -> ❌ ajv-6.12.6.tgz (Vulnerable Library)

Critical 9.8 Transitive ajv-6.12.6.tgz eslint-7.22.0.tgz #46
CVE-607537-903744

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> css-loader-4.3.0.tgz (Root Library)

   -> schema-utils-2.7.1.tgz

     -> ❌ ajv-6.12.6.tgz (Vulnerable Library)

Critical 9.8 Transitive ajv-6.12.6.tgz css-loader-4.3.0.tgz #11
CVE-607537-903744

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> eslint-7.14.0.tgz (Root Library)

   -> ❌ ajv-6.12.6.tgz (Vulnerable Library)

Critical 9.8 Transitive ajv-6.12.6.tgz eslint-7.14.0.tgz #8
CVE-607537-903744

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> jest-26.6.0.tgz (Root Library)

   -> core-26.6.3.tgz

     -> jest-config-26.6.3.tgz

       -> jest-environment-jsdom-26.6.2.tgz

         -> jsdom-16.5.1.tgz

           -> request-2.88.2.tgz

             -> har-validator-5.1.5.tgz

               -> ❌ ajv-6.12.6.tgz (Vulnerable Library)

Critical 9.8 Transitive ajv-6.12.6.tgz jest-26.6.0.tgz #38
CVE-607537-903744

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> webpack-5.72.1.tgz (Root Library)

   -> terser-webpack-plugin-5.3.1.tgz

     -> schema-utils-3.1.1.tgz

       -> ❌ ajv-6.12.6.tgz (Vulnerable Library)

Critical 9.8 Transitive ajv-6.12.6.tgz webpack-5.72.1.tgz #5
CVE-607537-903744

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> mini-css-extract-plugin-0.11.3.tgz (Root Library)

   -> schema-utils-1.0.0.tgz

     -> ❌ ajv-6.12.6.tgz (Vulnerable Library)

Critical 9.8 Transitive ajv-6.12.6.tgz mini-css-extract-plugin-0.11.3.tgz #3
CVE-607537-903744

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> sass-loader-8.0.2.tgz (Root Library)

   -> schema-utils-2.7.1.tgz

     -> ❌ ajv-6.12.6.tgz (Vulnerable Library)

Critical 9.8 Transitive ajv-6.12.6.tgz sass-loader-8.0.2.tgz #35
CVE-607537-903744

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> style-loader-1.3.0.tgz (Root Library)

   -> schema-utils-2.7.1.tgz

     -> ❌ ajv-6.12.6.tgz (Vulnerable Library)

Critical 9.8 Transitive ajv-6.12.6.tgz style-loader-1.3.0.tgz #36
CVE-607537-903744

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> babel-loader-8.1.0.tgz (Root Library)

   -> schema-utils-2.7.1.tgz

     -> ❌ ajv-6.12.6.tgz (Vulnerable Library)

Critical 9.8 Transitive ajv-6.12.6.tgz babel-loader-8.1.0.tgz #10
CVE-607537-903744

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> react-dev-utils-12.0.1.tgz (Root Library)

   -> fork-ts-checker-webpack-plugin-6.5.2.tgz

     -> schema-utils-2.7.0.tgz

       -> ❌ ajv-6.12.6.tgz (Vulnerable Library)

Critical 9.8 Transitive ajv-6.12.6.tgz react-dev-utils-12.0.1.tgz #9
CVE-607537-903744

Path to dependency file: /baak-vizualization/package.json

Path to vulnerable library: /baak-vizualization/package.json,/achilles-frontend/package.json

Dependency Hierarchy:

-> react-refresh-webpack-plugin-0.5.7.tgz (Root Library)

   -> schema-utils-3.1.1.tgz

     -> ❌ ajv-6.12.6.tgz (Vulnerable Library)

Critical 9.8 Transitive ajv-6.12.6.tgz react-refresh-webpack-plugin-0.5.7.tgz #29

✔️ Remediated vulnerabilities:

Vulnerability Vulnerable Library
GHSA-8x6c-cv3v-vp6g cacheable-request-6.1.0.tgz
CVE-2022-25881 http-cache-semantics-4.1.0.tgz

Base branch total remaining vulnerabilities: 106
Base branch commit: 6fe0ef7fd3ca6bf6339b996c7cbdf6e38c5a74c7


Total libraries scanned: 1937

Scan token: cf3a38fb6eb14aad888a3c14ea49112d