Skip to content

Conversation

@snyk-io
Copy link

@snyk-io snyk-io bot commented Jan 30, 2026

snyk-top-banner

Snyk has created this PR to fix 73 vulnerabilities in the yarn dependencies of this project.

Snyk changed the following file(s):

  • packages/backend-next/package.json

Note for zero-installs users

If you are using the Yarn feature zero-installs that was introduced in Yarn V2, note that this PR does not update the .yarn/cache/ directory meaning this code cannot be pulled and immediately developed on as one would expect for a zero-install project - you will need to run yarn to update the contents of the ./yarn/cache directory.
If you are not using zero-install you can ignore this as your flow should likely be unchanged.

⚠️ Warning
Failed to update the yarn.lock, please update manually before merging.

Vulnerabilities that will be fixed with an upgrade:

Issue Score
high severity Prototype Pollution
SNYK-JS-LINKIFYREACT-11502190
  815  
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-CROSSSPAWN-8303230
  810  
high severity Denial of Service (DoS)
SNYK-JS-HTTPPROXYMIDDLEWARE-8229906
  810  
high severity Allocation of Resources Without Limits or Throttling
SNYK-JS-QS-14724253
  810  
critical severity Interpretation Conflict
SNYK-JS-NODEFORGE-14114940
  765  
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-ANSIREGEX-1583908
  750  
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-SEMVER-3247795
  750  
high severity Information Exposure Through an Error Message
SNYK-JS-BACKSTAGEBACKENDAPPAPI-6229731
  740  
high severity Uncontrolled Recursion
SNYK-JS-NODEFORGE-14125745
  735  
high severity Origin Validation Error
SNYK-JS-WEBPACKDEVSERVER-10300775
  730  
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-OCTOKITREQUEST-8730853
  720  
high severity Asymmetric Resource Consumption (Amplification)
SNYK-JS-BODYPARSER-7926860
  710  
medium severity Server-side Request Forgery (SSRF)
SNYK-JS-REQUEST-3361831
  700  
medium severity Uncontrolled Resource Consumption ('Resource Exhaustion')
SNYK-JS-TAR-6476909
  700  
critical severity Predictable Value Range from Previous Values
SNYK-JS-FORMDATA-10841150
  695  
critical severity Incomplete List of Disallowed Inputs
SNYK-JS-BABELTRAVERSE-5962462
  690  
critical severity Improper Verification of Cryptographic Signature
SNYK-JS-ELLIPTIC-8187303
  690  
critical severity Remote Code Execution (RCE)
SNYK-JS-JSONPATHPLUS-7945884
  690  
critical severity Remote Code Execution (RCE)
SNYK-JS-JSONPATHPLUS-8719585
  690  
critical severity Function Call With Incorrect Argument Type
SNYK-JS-CIPHERBASE-12084814
  680  
critical severity Improper Verification of Cryptographic Signature
SNYK-JS-ELLIPTIC-7577916
  680  
critical severity Improper Verification of Cryptographic Signature
SNYK-JS-ELLIPTIC-7577917
  680  
critical severity Improper Verification of Cryptographic Signature
SNYK-JS-ELLIPTIC-7577918
  680  
critical severity Generation of Predictable Numbers or Identifiers
SNYK-JS-PBKDF2-10495496
  680  
critical severity Function Call With Incorrect Argument Type
SNYK-JS-SHAJS-12089400
  680  
critical severity Information Exposure
SNYK-JS-ELLIPTIC-8720086
  675  
medium severity Exposed Dangerous Method or Function
SNYK-JS-WEBPACKDEVSERVER-10300777
  675  
medium severity Cross-site Scripting (XSS)
SNYK-JS-WEBPACK-7840298
  670  
high severity Prototype Pollution
SNYK-JS-LINKIFYJS-11502189
  665  
medium severity Prototype Pollution
SNYK-JS-JSYAML-13961110
  645  
medium severity Denial of Service (DoS)
SNYK-JS-GRAPHQL-5905181
  640  
medium severity Cross-site Scripting (XSS)
SNYK-JS-ROLLUP-8073097
  630  
medium severity Always-Incorrect Control Flow Implementation
SNYK-JS-HTTPPROXYMIDDLEWARE-9691387
  615  
medium severity Improper Check for Unusual or Exceptional Conditions
SNYK-JS-HTTPPROXYMIDDLEWARE-9691389
  615  
medium severity Integer Overflow or Wraparound
SNYK-JS-NODEFORGE-14125097
  615  
medium severity Open Redirect
SNYK-JS-EXPRESS-6474509
  605  
critical severity Generation of Predictable Numbers or Identifiers
SNYK-JS-PBKDF2-10495498
  605  
high severity Denial of Service (DoS)
SNYK-JS-WS-7266574
  600  
medium severity Improper Handling of Unicode Encoding
SNYK-JS-TAR-15038581
  595  
high severity Path Traversal
SNYK-JS-WEBPACKDEVMIDDLEWARE-6476555
  595  
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-DIFF-14917201
  590  
medium severity Use of a Cryptographic Primitive with a Risky Implementation
SNYK-JS-ELLIPTIC-14908844
  590  
high severity Improper Handling of Extra Parameters
SNYK-JS-FOLLOWREDIRECTS-6141137
  590  
medium severity Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
SNYK-JS-AZUREIDENTITY-7246760
  575  
medium severity Directory Traversal
SNYK-JS-TAR-15032660
  575  
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-BABELHELPERS-9397697
  570  
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-BABELRUNTIME-10044504
  570  
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-OCTOKITPLUGINPAGINATEREST-8730855
  570  
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-OCTOKITREQUESTERROR-8730854
  570  
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-PATHTOREGEXP-7925106
  570  
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-PATHTOREGEXP-8482416
  570  
high severity Improper Verification of Cryptographic Signature
SNYK-JS-ELLIPTIC-8172694
  565  
medium severity Resource Exhaustion
SNYK-JS-JOSE-6419224
  565  
medium severity Symlink Attack
SNYK-JS-TMP-11501554
  565  
high severity Improper Verification of Cryptographic Signature
SNYK-JS-JWS-14188253
  560  
medium severity Cross-site Scripting
SNYK-JS-EXPRESS-7926867
  555  
medium severity Information Exposure
SNYK-JS-FOLLOWREDIRECTS-6444610
  550  
medium severity Prototype Pollution
SNYK-JS-TOUGHCOOKIE-5672873
  550  
medium severity Prototype Pollution
SNYK-JS-LODASH-15053838
  545  
medium severity Missing Release of Resource after Effective Lifetime
SNYK-JS-INFLIGHT-6095116
  535  
medium severity Cross-site Scripting (XSS)
SNYK-JS-SERIALIZEJAVASCRIPT-6147607
  530  
high severity Improper Verification of Cryptographic Signature
SNYK-JS-BROWSERIFYSIGN-6037026
  525  
medium severity Directory Traversal
SNYK-JS-TAR-15127355
  510  
medium severity Uncontrolled Recursion
SNYK-JS-ESLINT-15102420
  505  
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-FASTXMLPARSER-7573289
  495  
medium severity Cross-site Scripting (XSS)
SNYK-JS-COOKIE-8163060
  465  
medium severity Improper Input Validation
SNYK-JS-NANOID-8492085
  465  
medium severity Denial of Service (DoS)
SNYK-JS-NWSAPI-2841516
  460  
medium severity Inefficient Regular Expression Complexity
SNYK-JS-MICROMATCH-6838728
  415  
medium severity Improper Input Validation
SNYK-JS-POSTCSS-5926692
  415  
low severity Arbitrary Code Injection
SNYK-JS-PRISMJS-9055448
  340  
low severity Cross-site Scripting
SNYK-JS-SEND-7926862
  255  
low severity Cross-site Scripting
SNYK-JS-SERVESTATIC-7926865
  255  

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.
  • This PR was automatically created by Snyk using the credentials of a real user.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic


Learn how to fix vulnerabilities with free interactive lessons:

🦉 Regular Expression Denial of Service (ReDoS)
🦉 Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
🦉 Information Exposure Through an Error Message
🦉 More lessons are available in Snyk Learn


EntelligenceAI PR Summary

This PR transitions backend-next package dependencies from workspace protocol references to explicit semantic versions for six Backstage packages.

  • Updated @backstage/backend-defaults from workspace:^ to version 0.1.0
  • Updated @backstage/backend-tasks from workspace:^ to version 0.6.1
  • Updated @backstage/plugin-app-backend from workspace:^ to version 0.1.1
  • Updated @backstage/plugin-catalog-backend from workspace:^ to version 0.1.1
  • Updated @backstage/plugin-permission-common from workspace:^ to version 0.1.0
  • Updated @backstage/plugin-scaffolder-backend from workspace:^ to version 0.1.1
  • Changes made in packages/backend-next/package.json

The following vulnerabilities are fixed with an upgrade:
- https://snyk.io/vuln/SNYK-JS-LINKIFYREACT-11502190
- https://snyk.io/vuln/SNYK-JS-CROSSSPAWN-8303230
- https://snyk.io/vuln/SNYK-JS-HTTPPROXYMIDDLEWARE-8229906
- https://snyk.io/vuln/SNYK-JS-QS-14724253
- https://snyk.io/vuln/SNYK-JS-NODEFORGE-14114940
- https://snyk.io/vuln/SNYK-JS-ANSIREGEX-1583908
- https://snyk.io/vuln/SNYK-JS-SEMVER-3247795
- https://snyk.io/vuln/SNYK-JS-BACKSTAGEBACKENDAPPAPI-6229731
- https://snyk.io/vuln/SNYK-JS-NODEFORGE-14125745
- https://snyk.io/vuln/SNYK-JS-WEBPACKDEVSERVER-10300775
- https://snyk.io/vuln/SNYK-JS-OCTOKITREQUEST-8730853
- https://snyk.io/vuln/SNYK-JS-BODYPARSER-7926860
- https://snyk.io/vuln/SNYK-JS-REQUEST-3361831
- https://snyk.io/vuln/SNYK-JS-TAR-6476909
- https://snyk.io/vuln/SNYK-JS-FORMDATA-10841150
- https://snyk.io/vuln/SNYK-JS-BABELTRAVERSE-5962462
- https://snyk.io/vuln/SNYK-JS-ELLIPTIC-8187303
- https://snyk.io/vuln/SNYK-JS-JSONPATHPLUS-7945884
- https://snyk.io/vuln/SNYK-JS-JSONPATHPLUS-8719585
- https://snyk.io/vuln/SNYK-JS-CIPHERBASE-12084814
- https://snyk.io/vuln/SNYK-JS-ELLIPTIC-7577916
- https://snyk.io/vuln/SNYK-JS-ELLIPTIC-7577917
- https://snyk.io/vuln/SNYK-JS-ELLIPTIC-7577918
- https://snyk.io/vuln/SNYK-JS-PBKDF2-10495496
- https://snyk.io/vuln/SNYK-JS-SHAJS-12089400
- https://snyk.io/vuln/SNYK-JS-ELLIPTIC-8720086
- https://snyk.io/vuln/SNYK-JS-WEBPACKDEVSERVER-10300777
- https://snyk.io/vuln/SNYK-JS-WEBPACK-7840298
- https://snyk.io/vuln/SNYK-JS-LINKIFYJS-11502189
- https://snyk.io/vuln/SNYK-JS-JSYAML-13961110
- https://snyk.io/vuln/SNYK-JS-GRAPHQL-5905181
- https://snyk.io/vuln/SNYK-JS-ROLLUP-8073097
- https://snyk.io/vuln/SNYK-JS-HTTPPROXYMIDDLEWARE-9691387
- https://snyk.io/vuln/SNYK-JS-HTTPPROXYMIDDLEWARE-9691389
- https://snyk.io/vuln/SNYK-JS-NODEFORGE-14125097
- https://snyk.io/vuln/SNYK-JS-EXPRESS-6474509
- https://snyk.io/vuln/SNYK-JS-PBKDF2-10495498
- https://snyk.io/vuln/SNYK-JS-WS-7266574
- https://snyk.io/vuln/SNYK-JS-TAR-15038581
- https://snyk.io/vuln/SNYK-JS-WEBPACKDEVMIDDLEWARE-6476555
- https://snyk.io/vuln/SNYK-JS-DIFF-14917201
- https://snyk.io/vuln/SNYK-JS-ELLIPTIC-14908844
- https://snyk.io/vuln/SNYK-JS-FOLLOWREDIRECTS-6141137
- https://snyk.io/vuln/SNYK-JS-AZUREIDENTITY-7246760
- https://snyk.io/vuln/SNYK-JS-TAR-15032660
- https://snyk.io/vuln/SNYK-JS-BABELHELPERS-9397697
- https://snyk.io/vuln/SNYK-JS-BABELRUNTIME-10044504
- https://snyk.io/vuln/SNYK-JS-OCTOKITPLUGINPAGINATEREST-8730855
- https://snyk.io/vuln/SNYK-JS-OCTOKITREQUESTERROR-8730854
- https://snyk.io/vuln/SNYK-JS-PATHTOREGEXP-7925106
- https://snyk.io/vuln/SNYK-JS-PATHTOREGEXP-8482416
- https://snyk.io/vuln/SNYK-JS-ELLIPTIC-8172694
- https://snyk.io/vuln/SNYK-JS-JOSE-6419224
- https://snyk.io/vuln/SNYK-JS-TMP-11501554
- https://snyk.io/vuln/SNYK-JS-JWS-14188253
- https://snyk.io/vuln/SNYK-JS-EXPRESS-7926867
- https://snyk.io/vuln/SNYK-JS-FOLLOWREDIRECTS-6444610
- https://snyk.io/vuln/SNYK-JS-TOUGHCOOKIE-5672873
- https://snyk.io/vuln/SNYK-JS-LODASH-15053838
- https://snyk.io/vuln/SNYK-JS-INFLIGHT-6095116
- https://snyk.io/vuln/SNYK-JS-SERIALIZEJAVASCRIPT-6147607
- https://snyk.io/vuln/SNYK-JS-BROWSERIFYSIGN-6037026
- https://snyk.io/vuln/SNYK-JS-TAR-15127355
- https://snyk.io/vuln/SNYK-JS-ESLINT-15102420
- https://snyk.io/vuln/SNYK-JS-FASTXMLPARSER-7573289
- https://snyk.io/vuln/SNYK-JS-COOKIE-8163060
- https://snyk.io/vuln/SNYK-JS-NANOID-8492085
- https://snyk.io/vuln/SNYK-JS-NWSAPI-2841516
- https://snyk.io/vuln/SNYK-JS-MICROMATCH-6838728
- https://snyk.io/vuln/SNYK-JS-POSTCSS-5926692
- https://snyk.io/vuln/SNYK-JS-PRISMJS-9055448
- https://snyk.io/vuln/SNYK-JS-SEND-7926862
- https://snyk.io/vuln/SNYK-JS-SERVESTATIC-7926865
@codesandbox
Copy link

codesandbox bot commented Jan 30, 2026

Review or Edit in CodeSandbox

Open the branch in Web EditorVS CodeInsiders

Open Preview

@snyk-io
Copy link
Author

snyk-io bot commented Jan 30, 2026

Snyk checks have failed. 3 issues have been found so far.

Status Scanner Critical High Medium Low Total (3)
Open Source Security 0 2 1 0 3 issues

💻 Catch issues earlier using the plugins for VS Code, JetBrains IDEs, Visual Studio, and Eclipse.

@entelligence-ai-pr-reviews
Copy link

Walkthrough

This pull request updates the dependency management strategy for the backend-next package by replacing workspace protocol references with explicit semantic version numbers for six Backstage packages. The changes transition from monorepo-style workspace dependencies (workspace:^) to pinned published package versions, specifying exact versions for backend-defaults (0.1.0), backend-tasks (0.6.1), plugin-app-backend (0.1.1), plugin-catalog-backend (0.1.1), plugin-permission-common (0.1.0), and plugin-scaffolder-backend (0.1.1). This modification likely supports release preparation, improves dependency reproducibility, or facilitates independent package distribution outside the monorepo context.

Changes

File(s) Summary
packages/backend-next/package.json Replaced workspace protocol references (workspace:^) with explicit semantic versions for six Backstage dependencies: @backstage/backend-defaults (0.1.0), @backstage/backend-tasks (0.6.1), @backstage/plugin-app-backend (0.1.1), @backstage/plugin-catalog-backend (0.1.1), @backstage/plugin-permission-common (0.1.0), and @backstage/plugin-scaffolder-backend (0.1.1).

Sequence Diagram

This diagram shows the interactions between components:

sequenceDiagram
    participant Dev as Developer
    participant PM as Package Manager
    participant Registry as NPM Registry
    
    Note over Dev,Registry: Dependency Version Update Process
    
    Dev->>PM: Update package.json dependencies
    Note right of Dev: Change workspace:^ to<br/>specific versions (0.1.0, 0.1.1, 0.6.1)
    
    Dev->>PM: Run install command
    PM->>Registry: Fetch @backstage/backend-defaults@0.1.0
    Registry-->>PM: Return package
    PM->>Registry: Fetch @backstage/backend-tasks@0.6.1
    Registry-->>PM: Return package
    PM->>Registry: Fetch @backstage/plugin-app-backend@0.1.1
    Registry-->>PM: Return package
    PM->>Registry: Fetch other updated packages
    Registry-->>PM: Return packages
    
    PM->>PM: Resolve dependency tree
    PM->>PM: Install packages
    PM-->>Dev: Dependencies updated successfully
Loading

▶️AI Code Reviews for VS Code, Cursor, Windsurf
Install the extension

Note for Windsurf Please change the default marketplace provider to the following in the windsurf settings:

Marketplace Extension Gallery Service URL: https://marketplace.visualstudio.com/_apis/public/gallery

Marketplace Gallery Item URL: https://marketplace.visualstudio.com/items

Entelligence.ai can learn from your feedback. Simply add 👍 / 👎 emojis to teach it your preferences. More shortcuts below

Emoji Descriptions:

  • ⚠️ Potential Issue - May require further investigation.
  • 🔒 Security Vulnerability - Fix to ensure system safety.
  • 💻 Code Improvement - Suggestions to enhance code quality.
  • 🔨 Refactor Suggestion - Recommendations for restructuring code.
  • ℹ️ Others - General comments and information.

Interact with the Bot:

  • Send a message or request using the format:
    @entelligenceai + *your message*
Example: @entelligenceai Can you suggest improvements for this code?
  • Help the Bot learn by providing feedback on its responses.
    @entelligenceai + *feedback*
Example: @entelligenceai Do not comment on `save_auth` function !

Also you can trigger various commands with the bot by doing
@entelligenceai command

The current supported commands are

  1. config - shows the current config
  2. retrigger_review - retriggers the review

More commands to be added soon.

The following vulnerabilities are fixed with an upgrade:
- https://snyk.io/vuln/SNYK-JS-JSONPATHPLUS-8719585
- https://snyk.io/vuln/SNYK-JS-JSONPATHPLUS-7945884
- https://snyk.io/vuln/SNYK-JS-LINKIFYREACT-11502190
- https://snyk.io/vuln/SNYK-JS-NODEFORGE-14114940
- https://snyk.io/vuln/SNYK-JS-BACKSTAGEBACKENDAPPAPI-6229731
- https://snyk.io/vuln/SNYK-JS-QS-14724253
- https://snyk.io/vuln/SNYK-JS-SEMVER-3247795
- https://snyk.io/vuln/SNYK-JS-ANSIREGEX-1583908
- https://snyk.io/vuln/SNYK-JS-HTTPPROXYMIDDLEWARE-8229906
- https://snyk.io/vuln/SNYK-JS-CROSSSPAWN-8303230
- https://snyk.io/vuln/SNYK-JS-CIPHERBASE-12084814
- https://snyk.io/vuln/SNYK-JS-PBKDF2-10495496
- https://snyk.io/vuln/SNYK-JS-SHAJS-12089400
- https://snyk.io/vuln/SNYK-JS-ELLIPTIC-8720086
- https://snyk.io/vuln/SNYK-JS-FORMDATA-10841150
- https://snyk.io/vuln/SNYK-JS-WEBPACK-7840298
- https://snyk.io/vuln/SNYK-JS-WEBPACKDEVSERVER-10300775
- https://snyk.io/vuln/SNYK-JS-ELLIPTIC-8187303
- https://snyk.io/vuln/SNYK-JS-LINKIFYJS-11502189
- https://snyk.io/vuln/SNYK-JS-TAR-6476909
- https://snyk.io/vuln/SNYK-JS-BABELTRAVERSE-5962462
- https://snyk.io/vuln/SNYK-JS-ELLIPTIC-7577917
- https://snyk.io/vuln/SNYK-JS-WEBPACKDEVSERVER-10300777
- https://snyk.io/vuln/SNYK-JS-ELLIPTIC-7577916
- https://snyk.io/vuln/SNYK-JS-ELLIPTIC-7577918
- https://snyk.io/vuln/SNYK-JS-TAR-15038581
- https://snyk.io/vuln/SNYK-JS-NODEFORGE-14125745
- https://snyk.io/vuln/SNYK-JS-PBKDF2-10495498
- https://snyk.io/vuln/SNYK-JS-REQUEST-3361831
- https://snyk.io/vuln/SNYK-JS-BODYPARSER-7926860
- https://snyk.io/vuln/SNYK-JS-ROLLUP-8073097
- https://snyk.io/vuln/SNYK-JS-WS-7266574
- https://snyk.io/vuln/SNYK-JS-WEBPACKDEVMIDDLEWARE-6476555
- https://snyk.io/vuln/SNYK-JS-FOLLOWREDIRECTS-6444610
- https://snyk.io/vuln/SNYK-JS-FOLLOWREDIRECTS-6141137
- https://snyk.io/vuln/SNYK-JS-TAR-15032660
- https://snyk.io/vuln/SNYK-JS-ELLIPTIC-14908844
- https://snyk.io/vuln/SNYK-JS-BABELHELPERS-9397697
- https://snyk.io/vuln/SNYK-JS-BABELRUNTIME-10044504
- https://snyk.io/vuln/SNYK-JS-INFLIGHT-6095116
- https://snyk.io/vuln/SNYK-JS-TMP-11501554
- https://snyk.io/vuln/SNYK-JS-TAR-15127355
- https://snyk.io/vuln/SNYK-JS-AZUREIDENTITY-7246760
- https://snyk.io/vuln/SNYK-JS-TOUGHCOOKIE-5672873
- https://snyk.io/vuln/SNYK-JS-ELLIPTIC-8172694
- https://snyk.io/vuln/SNYK-JS-EXPRESS-7926867
- https://snyk.io/vuln/SNYK-JS-BROWSERIFYSIGN-6037026
- https://snyk.io/vuln/SNYK-JS-OCTOKITREQUEST-8730853
- https://snyk.io/vuln/SNYK-JS-EXPRESS-6474509
- https://snyk.io/vuln/SNYK-JS-JWS-14188253
- https://snyk.io/vuln/SNYK-JS-PRISMJS-9055448
- https://snyk.io/vuln/SNYK-JS-GRAPHQL-5905181
- https://snyk.io/vuln/SNYK-JS-SERIALIZEJAVASCRIPT-6147607
- https://snyk.io/vuln/SNYK-JS-LODASH-15053838
- https://snyk.io/vuln/SNYK-JS-NWSAPI-2841516
- https://snyk.io/vuln/SNYK-JS-JSYAML-13961110
- https://snyk.io/vuln/SNYK-JS-JOSE-6419224
- https://snyk.io/vuln/SNYK-JS-HTTPPROXYMIDDLEWARE-9691387
- https://snyk.io/vuln/SNYK-JS-HTTPPROXYMIDDLEWARE-9691389
- https://snyk.io/vuln/SNYK-JS-NODEFORGE-14125097
- https://snyk.io/vuln/SNYK-JS-SERVESTATIC-7926865
- https://snyk.io/vuln/SNYK-JS-SEND-7926862
- https://snyk.io/vuln/SNYK-JS-OCTOKITPLUGINPAGINATEREST-8730855
- https://snyk.io/vuln/SNYK-JS-OCTOKITREQUESTERROR-8730854
- https://snyk.io/vuln/SNYK-JS-PATHTOREGEXP-7925106
- https://snyk.io/vuln/SNYK-JS-PATHTOREGEXP-8482416
- https://snyk.io/vuln/SNYK-JS-DIFF-14917201
- https://snyk.io/vuln/SNYK-JS-ESLINT-15102420
- https://snyk.io/vuln/SNYK-JS-FASTXMLPARSER-7573289
- https://snyk.io/vuln/SNYK-JS-MICROMATCH-6838728
- https://snyk.io/vuln/SNYK-JS-POSTCSS-5926692
- https://snyk.io/vuln/SNYK-JS-COOKIE-8163060
- https://snyk.io/vuln/SNYK-JS-NANOID-8492085
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant