Update dependency jest to v24 - autoclosed #244
Closed
Mend for GitHub.com / Mend Security Check
failed
Apr 10, 2026 in 9m 39s
Security Report
You have successfully remediated 1 vulnerabilities, but introduced 1 new vulnerabilities in this branch.
❌ New vulnerabilities:
| Vulnerability | Severity | Vulnerable Library | Direct Library | Suggested Fix | Issue | Reachability | |
|---|---|---|---|---|---|---|---|
CVE-2020-7789Path to dependency file: /package.json Path to vulnerable library: /package.json Dependency Hierarchy: -> jest-24.0.0.tgz (Root Library) -> jest-cli-24.9.0.tgz -> core-24.9.0.tgz -> reporters-24.9.0.tgz -> ❌ node-notifier-5.4.5.tgz (Vulnerable Library) |
5.6 | Transitive node-notifier-5.4.5.tgz |
jest-24.0.0.tgz | Transitive node-notifier - 5.4.4,8.0.1 |
None |
✔️ Remediated vulnerabilities:
| Vulnerability | Vulnerable Library |
|---|---|
| CVE-2020-7608 | yargs-parser-8.1.0.tgz |
Base branch total remaining vulnerabilities: 293
Base branch commit: 5bd40f7bbba8f9464168ea235192b84b5c8856f3
Total libraries scanned: 1908
Scan token: 4b1c2d4dbe4a4fdabf361d8d2c0e7eb3
Loading