Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Apiiro] GitHub OSS Vulnerabilities - High Severity · High Risk #307

Open
AhmedThebaSecurrency opened this issue Jun 19, 2024 · 0 comments

Comments

@AhmedThebaSecurrency
Copy link

Discovered on: Jun 19, 2024 05:23
Dependency: ws
Version: 7.5.9
Type: Sub dependency
Introduced through:

  • @docusaurus/core: 3.3.2 > webpack-bundle-analyzer: 4.10.2 > ws: 7.5.9

Vulnerabilities

About this package:

External dependency: ws - https://www.npmjs.com/package/ws
Package details: Simple to use, blazing fast and thoroughly tested websocket client and server for Node.js
Latest version: 8.17.0
License: MIT
Insights:

  • Adequate maintainer count - This package is maintained by at least 3 developers
  • Adequately tested - Testing practices are thoroughly followed
  • Frequent commits - New code commits are frequently being pushed
  • Current CVE - A CVE on this package has not been fixed by an official release/patch
  • Popularity - This package has many weekly downloads and high popularity scores
  • Has vulnerabilities - One or more vulnerabilities have been reported for this package
  • Public repository - This is a repository accessible by the general public

This is a sub-dependency

In order to update its version, you may need to upgrade the following top-level dependencies:

View in Apiiro

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
1 participant