Closed
Description
This action's dependencies introduces 1 critical CVE and 2 High CVEs. These are not issues within scope of your bug bounty, however, they should likely be updated.
[CRITICAL] tough-cookie-4.0.0 introduces 1 vulnerability
Issue : [C]CVE-2023-26136
Advice : Change to version 4.1.3
[HIGH] @babel/traverse-7.20.5 introduces 1 vulnerability
Issue : [H]CVE-2023-45133
Advice : Change to version 7.23.2
[HIGH] word-wrap-1.2.3 introduces 1 vulnerability
Issue : [H]CVE-2023-26115
Metadata
Metadata
Assignees
Labels
No labels