Update dependency express to v4.21.1 (main) #15
Mend for GitHub.com / WhiteSource Security Check
failed
Oct 1, 2025 in 5m 53s
Security Report
You have successfully remediated 11 vulnerabilities, but introduced 1 new vulnerabilities in this branch.
❌ New vulnerabilities:
| Vulnerability | Severity | Exploit Maturity | EPSS | Vulnerable Library | Direct Library | Suggested Fix | Issue | Reachability | |
|---|---|---|---|---|---|---|---|---|---|
CVE-2024-52798Path to dependency file: /package.json Path to vulnerable library: /node_modules/path-to-regexp/package.json Dependency Hierarchy: -> express-4.21.1.tgz (Root Library) -> ❌ path-to-regexp-0.1.10.tgz (Vulnerable Library) |
7.5 | Not Defined | 0.1% | Transitive path-to-regexp-0.1.10.tgz |
express-4.21.1.tgz | Transitive 0.1.12 |
None |
✔️ Remediated vulnerabilities:
| Vulnerability | Vulnerable Library |
|---|---|
| CVE-2021-3918 | json-schema-0.2.3.tgz |
| CVE-2020-15366 | ajv-6.12.2.tgz |
| CVE-2024-43796 | express-4.16.3.tgz |
| CVE-2024-43799 | send-0.16.2.tgz |
| CVE-2024-45590 | body-parser-1.18.2.tgz |
| CVE-2024-47764 | cookie-0.3.1.tgz |
| CVE-2024-29041 | express-4.16.3.tgz |
| CVE-2022-25883 | semver-5.7.1.tgz |
| CVE-2022-24999 | qs-6.5.1.tgz |
| CVE-2024-52798 | path-to-regexp-0.1.7.tgz |
| CVE-2024-45296 | path-to-regexp-0.1.7.tgz |
Base branch total remaining vulnerabilities: 22
Base branch commit: null
Total libraries scanned: 142
Scan token: d4cc56210b354d56a08446ec5c834ffa
Loading