Skip to content

Update dependencies to fix vulns.#218

Merged
dbargatz merged 2 commits intomainfrom
update-deps
Sep 19, 2024
Merged

Update dependencies to fix vulns.#218
dbargatz merged 2 commits intomainfrom
update-deps

Conversation

@dbargatz
Copy link
Copy Markdown
Contributor

@dbargatz dbargatz commented Sep 19, 2024

Uses npm audit fix to fix the 3 open vulnerabilities listed in dependabot.

Confirmed that mcode-action-examples still passes with these updates: https://github.com/ForAllSecure/mcode-action-examples/actions/runs/10943630748

@dbargatz dbargatz self-assigned this Sep 19, 2024
@dbargatz dbargatz added the dependencies Pull requests that update a dependency file label Sep 19, 2024
@github-actions
Copy link
Copy Markdown

github-actions Bot commented Sep 19, 2024

Mayhem Automated Code Testing Report

❗ 1 Defects Found

CWE Severity Defect Description
7.1 Improper Input Validation The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

Testing details found at https://app.mayhem.security/forallsecure/mcode-action/mayhemit/30

@dbargatz dbargatz merged commit fc59749 into main Sep 19, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants