Skip to content
This repository was archived by the owner on Jul 8, 2025. It is now read-only.

Conversation

@alex-mcgovern
Copy link
Contributor

@alex-mcgovern alex-mcgovern commented Mar 17, 2025

┌────────────────┬────────────────┬──────────┬────────┬───────────────────┬─────────────────────────┬─────────────────────────────────────────────────────────────┐
│    Library     │ Vulnerability  │ Severity │ Status │ Installed Version │      Fixed Version      │                            Title                            │
├────────────────┼────────────────┼──────────┼────────┼───────────────────┼─────────────────────────┼─────────────────────────────────────────────────────────────┤
│ @babel/runtime │ CVE-2025-27789 │ MEDIUM   │ fixed  │ 7.26.0            │ 7.26.10, 8.0.0-alpha.17 │ Babel is a compiler for writing next generation JavaScript. │
│                │                │          │        │                   │                         │ When using ......                                           │
│                │                │          │        │                   │                         │ https://avd.aquasec.com/nvd/cve-2025-27789                  │
├────────────────┼────────────────┤          │        ├───────────────────┼─────────────────────────┼─────────────────────────────────────────────────────────────┤
│ prismjs        │ CVE-2024-53382 │          │        │ 1.27.0            │ 1.30.0                  │ prismjs: DOM Clobbering vulnerability within the Prism      │
│                │                │          │        │                   │                         │ library's prism-autoloader plugin                           │
│                │                │          │        │                   │                         │ https://avd.aquasec.com/nvd/cve-2024-53382                  │
│                │                │          │        ├───────────────────┤                         │                                                             │
│                │                │          │        │ 1.29.0            │                         │                                                             │
│                │                │          │        │                   │                         │                                                             │
│                │                │          │        │                   │                         │                                                             │
└────────────────┴────────────────┴──────────┴────────┴───────────────────┴─────────────────────────┴─────────────────────────────────────────────────────────────┘

@ghost
Copy link

ghost commented Mar 17, 2025

Minder Vulnerability Report ✅

Minder analyzed this PR and found it does not add any new vulnerable dependencies.

Vulnerability scan of 27727f04:

  • 🐞 vulnerable packages: 0
  • 🛠 fixes available for: 0

@coveralls
Copy link
Collaborator

coveralls commented Mar 17, 2025

Pull Request Test Coverage Report for Build 13895587926

Details

  • 0 of 0 changed or added relevant lines in 0 files are covered.
  • No unchanged relevant lines lost coverage.
  • Overall coverage increased (+0.05%) to 66.498%

Totals Coverage Status
Change from base Build 13895469654: 0.05%
Covered Lines: 896
Relevant Lines: 1276

💛 - Coveralls

@alex-mcgovern alex-mcgovern enabled auto-merge (squash) March 17, 2025 09:18
@alex-mcgovern alex-mcgovern merged commit 79041a1 into main Mar 17, 2025
8 checks passed
@alex-mcgovern alex-mcgovern deleted the fix/npm-audit-fixes branch March 17, 2025 09:18
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants