chore(deps): update emailservice #89
Closed
Mend for GitHub.com / Mend Security Check
failed
Oct 6, 2023 in 6m 6s
Security Report
You have successfully remediated 7 vulnerabilities, but introduced 1 new vulnerabilities in this branch.
❌ New vulnerabilities:
CVE | Severity | CVSS Score | Vulnerable Library | Suggested Fix | Issue |
---|---|---|---|---|---|
CVE-2022-45442Path to dependency file: /src/emailservice/Gemfile.lock Path to vulnerable library: /home/wss-scanner/.gem/ruby/3.2.0/cache/sinatra-2.2.1.gem Dependency Hierarchy: -> ❌ sinatra-2.2.1.gem (Vulnerable Library) |
High | 8.8 | sinatra-2.2.1.gem | Upgrade to version: sinatra - 2.2.3,3.0.4 | None |
✔️ Remediated vulnerabilities:
CVE | Vulnerable Library |
---|---|
CVE-2022-44572 | rack-2.2.3.1.gem |
CVE-2022-44571 | rack-2.2.3.1.gem |
CVE-2023-27539 | rack-2.2.3.1.gem |
CVE-2022-44570 | rack-2.2.3.1.gem |
CVE-2023-27530 | rack-2.2.3.1.gem |
CVE-2023-40175 | puma-5.6.4.gem |
CVE-2022-45442 | sinatra-2.2.0.gem |
Base branch total remaining vulnerabilities: 27
Base branch commit: dbe873acc75992a5ca0724bd1222561d2651439d
Total libraries scanned: 978
Scan token: b884d1907de143e781d50dea678f0839
Loading