[Backport 2.x] [OSCI] Remove unused tutorials #5444
Security Report
You have successfully remediated 5 vulnerabilities, but introduced 2 new vulnerabilities in this branch.
❌ New vulnerabilities:
CVE | Severity | CVSS Score | Vulnerable Library | Suggested Fix | Issue |
---|---|---|---|---|---|
WS-2017-3772Vulnerable Source Files: ❌ /packages/osd-ui-framework/node_modules/underscore.string/unescapeHTML.js |
High | 7.5 | juice-shopjuice-shop-13.3.0_node16_darwin_x64 | Upgrade to version: underscore.string - 3.3.5 | #4734 |
CVE-2023-46234Path to dependency file: /package.json Path to vulnerable library: /node_modules/browserify-sign/package.json Dependency Hierarchy: -> @osd/eslint-import-resolver-opensearch-dashboards-2.0.0.tgz (Root Library) -> eslint-import-resolver-webpack-0.11.1.tgz -> node-libs-browser-2.2.1.tgz -> crypto-browserify-3.12.0.tgz -> ❌ browserify-sign-4.2.1.tgz (Vulnerable Library) |
Medium | 6.5 | browserify-sign-4.2.1.tgz | Upgrade to version: browserify-sign - 4.2.2 | #5410 |
✔️ Remediated vulnerabilities:
CVE | Vulnerable Library |
---|---|
CVE-2015-9251 | jquery-1.11.1.js |
CVE-2020-11023 | jquery-1.11.1.js |
CVE-2019-11358 | jquery-1.11.1.js |
CVE-2020-11022 | jquery-1.11.1.js |
WS-2017-3772 | juice-shop-juice-shop-15.0.0_node16_darwin_x64 |
Base branch total remaining vulnerabilities: 25
Base branch commit: 088fc667c2ae480a007fbb0a76b96bbf9439f676
Total libraries scanned: 2530
Scan token: 410b7adbcbe8471c906356c834b236e3