Skip to content

fix: package.json to reduce vulnerabilities

74b4b13
Select commit
Loading
Failed to load commit list.
Open

[Snyk] Fix for 1 vulnerabilities #18

fix: package.json to reduce vulnerabilities
74b4b13
Select commit
Loading
Failed to load commit list.
Debricked / Vulnerability analysis completed Jul 11, 2025 in 1m 33s

An automation triggered a pipeline warning

Found 108 vulnerabilities. An additional 0 vulnerabilities have been marked as unaffected.

Output from Automations

4 rules were checked:


If a new dependency is added where the license risk is at least medium

then notify all users in the group admins by email

✔️ The rule did not trigger. Manage rule



If a dependency contains a vulnerability which has not been marked as unaffected and which has not triggered this rule for this dependency before

then notify all users in the group admins by email

✔️ The rule did not trigger. Manage rule



If there is a dependency where the license risk is at least high

then send a pipeline warning

✔️ The rule did not trigger. Manage rule



If a dependency contains a vulnerability which has not been marked as unaffected

then send a pipeline warning

⚠️ The rule triggered for the following vulnerabilities, causing a pipeline warning. Manage rule

Vulnerability CVSS2 CVSS3 Dependency Dependency Licenses
CVE-2024-41110 N/A 9.9 github.com/docker/docker (Go) Apache-2.0
CVE-2021-42576 7.5 9.8 github.com/microcosm-cc/bluemonday (Go) BSD-3-Clause
CVE-2025-21613 N/A 9.8 github.com/go-git/go-git/v5 (Go) Apache-2.0
CVE-2024-27304 N/A 9.8 github.com/jackc/pgproto3/v2 (Go) MIT
CVE-2024-23653 N/A 9.8 github.com/moby/buildkit (Go) Apache-2.0
CVE-2024-27304 N/A 9.8 github.com/jackc/pgx/v4 (Go) MIT
CVE-2023-49569 N/A 9.8 github.com/go-git/go-git/v5 (Go) Apache-2.0
CVE-2022-40083 N/A 9.6 github.com/labstack/echo/v4 (Go) MIT
CVE-2024-23652 N/A 9.1 github.com/moby/buildkit (Go) Apache-2.0
CVE-2024-45337 N/A 9.1 golang.org/x/crypto (Go) BSD-3-Clause
CVE-2019-25211 N/A 9.1 github.com/gin-gonic/gin (Go) MIT
CVE-2024-12224 N/A 8.8 idna (Cargo) Apache-2.0, MIT
CVE-2023-28840 N/A 8.7 github.com/docker/docker (Go) Apache-2.0
CVE-2024-27289 N/A 8.1 github.com/jackc/pgx/v4 (Go) MIT
CVE-2024-24557 N/A 7.8 github.com/docker/docker (Go) Apache-2.0
CVE-2023-39325 N/A 7.5 golang.org/x/net (Go) BSD-3-Clause
CVE-2023-44487 N/A 7.5 golang.org/x/net (Go) BSD-3-Clause
CVE-2025-22869 N/A 7.5 golang.org/x/crypto (Go) BSD-3-Clause
CVE-2024-24786 N/A 7.5 google.golang.org/protobuf (Go) BSD-3-Clause
CVE-2020-36567 N/A 7.5 github.com/gin-gonic/gin (Go) MIT
CVE-2024-27308 N/A 7.5 mio (Cargo) MIT
CVE-2024-37298 N/A 7.5 github.com/gorilla/schema (Go) BSD-3-Clause
CVE-2024-29018 N/A 7.5 github.com/docker/docker (Go) Apache-2.0
CVE-2023-49568 N/A 7.5 github.com/go-git/go-git/v5 (Go) Apache-2.0
CVE-2022-28948 5 7.5 gopkg.in/yaml.v3 (Go) Apache-2.0, MIT
CVE-2025-30204 N/A 7.5 github.com/golang-jwt/jwt/v4 (Go) MIT
CVE-2025-21614 N/A 7.5 github.com/go-git/go-git/v5 (Go) Apache-2.0
CVE-2023-45288 N/A 7.5 golang.org/x/net (Go) BSD-3-Clause
CVE-2022-30636 N/A 7.5 golang.org/x/crypto (Go) BSD-3-Clause
CVE-2021-44716 5 7.5 golang.org/x/net (Go) BSD-3-Clause
CVE-2022-27664 N/A 7.5 golang.org/x/net (Go) BSD-3-Clause
CVE-2020-26160 5 7.5 github.com/dgrijalva/jwt-go (Go) MIT
CVE-2021-43565 N/A 7.5 golang.org/x/crypto (Go) BSD-3-Clause
CVE-2022-32149 N/A 7.5 golang.org/x/text (Go) BSD-3-Clause
CVE-2021-38561 N/A 7.5 golang.org/x/text (Go) BSD-3-Clause
CVE-2020-27813 5 7.5 github.com/gorilla/websocket (Go) BSD-2-Clause
CVE-2022-21221 5 7.5 github.com/valyala/fasthttp (Go) MIT
CVE-2022-21680 5 7.5 marked (npm) MIT
CVE-9999-0001 N/A 7.5 github.com/gin-gonic/gin (Go) MIT
CVE-2022-27191 4.3 7.5 golang.org/x/crypto (Go) BSD-3-Clause
CVE-2021-23382 5 7.5 postcss (npm) MIT
CVE-2022-41723 N/A 7.5 golang.org/x/net (Go) BSD-3-Clause
CVE-2022-21681 5 7.5 marked (npm) MIT
CVE-2023-26964 N/A 7.5 h2 (Cargo) MIT
CVE-2022-31394 N/A 7.5 hyper (Cargo) MIT
CVE-2022-37315 N/A 7.5 github.com/graphql-go/graphql (Go) MIT
CVE-2022-41721 N/A 7.5 golang.org/x/net (Go) BSD-3-Clause
CVE-2024-23651 N/A 7.4 github.com/moby/buildkit (Go) Apache-2.0
CVE-2023-26125 N/A 7.3 github.com/gin-gonic/gin (Go) MIT
CVE-2020-28483 5.8 7.1 github.com/gin-gonic/gin (Go) MIT
CVE-2024-45339 N/A 7.1 github.com/golang/glog (Go) Apache-2.0
CVE-2023-28841 N/A 6.8 github.com/docker/docker (Go) Apache-2.0
CVE-2023-28842 N/A 6.8 github.com/docker/docker (Go) Apache-2.0
CVE-2024-36621 N/A 6.5 github.com/docker/docker (Go) Apache-2.0
CVE-2025-22872 N/A 6.5 golang.org/x/net (Go) BSD-3-Clause
CVE-2024-43806 N/A 6.5 rustix (Cargo) Apache-2.0, MIT
CVE-2023-2253 N/A 6.5 github.com/docker/distribution (Go) Apache-2.0
CVE-2023-26054 N/A 6.5 github.com/moby/buildkit (Go) Apache-2.0
CVE-2023-3978 N/A 6.1 golang.org/x/net (Go) BSD-3-Clause
CVE-2021-29272 4.3 6.1 github.com/microcosm-cc/bluemonday (Go) BSD-3-Clause
CVE-2023-45683 N/A 6.1 github.com/crewjam/saml (Go) BSD-2-Clause
CVE-2023-48795 N/A 5.9 golang.org/x/crypto (Go) BSD-3-Clause
CVE-2024-35222 N/A 5.9 tauri (Cargo) Apache-2.0, MIT
CVE-2021-4235 N/A 5.5 gopkg.in/yaml.v3 (Go) Apache-2.0, MIT
CVE-2024-6104 N/A 5.5 github.com/hashicorp/go-retryablehttp (Go) MPL-2.0
CVE-2023-22466 N/A 5.4 tokio (Cargo) MIT
CVE-2023-40577 N/A 5.4 github.com/prometheus/alertmanager (Go) Apache-2.0
CVE-2022-29526 5 5.3 golang.org/x/sys (Go) BSD-3-Clause
CVE-2020-36565 N/A 5.3 github.com/labstack/echo/v4 (Go) MIT
CVE-2022-41717 N/A 5.3 golang.org/x/net (Go) BSD-3-Clause
CVE-2024-45338 N/A 5.3 golang.org/x/net (Go) BSD-3-Clause
CVE-2024-23650 N/A 5.3 github.com/moby/buildkit (Go) Apache-2.0
CVE-2023-44270 N/A 5.3 postcss (npm) MIT
CVE-2025-22870 N/A 4.4 golang.org/x/net (Go) BSD-3-Clause
CVE-2023-29401 N/A 4.3 github.com/gin-gonic/gin (Go) MIT
CVE-2025-5889 2.1 3.1 brace-expansion (npm) MIT, Unknown License
CVE-2024-51744 N/A 3.1 github.com/golang-jwt/jwt/v4 (Go) MIT
CVE-2025-24898 N/A N/A openssl (Cargo) Apache-2.0
CVE-2025-32395 N/A N/A vite (npm) MIT
debricked-294796 N/A N/A openssl (Cargo) Apache-2.0
debricked-295045 N/A N/A tokio (Cargo) MIT
debricked-280562 N/A N/A glib (Cargo) MIT
debricked-235157 N/A N/A github.com/docker/distribution (Go) Apache-2.0
CVE-2025-32014 N/A N/A estree-util-value-to-estree (npm) MIT
CVE-2025-24358 N/A N/A github.com/gorilla/csrf (Go) BSD-3-Clause
CVE-2025-48387 N/A N/A tar-fs (npm) MIT
debricked-249512 N/A N/A h2 (Cargo) MIT
debricked-290587 N/A N/A protobuf (Cargo) MIT
debricked-231203 N/A N/A rustix (Cargo) Apache-2.0, MIT
debricked-207936 N/A N/A bumpalo (Cargo) Apache-2.0, MIT
debricked-217331 N/A N/A tokio (Cargo) MIT
debricked-217353 N/A N/A remove_dir_all (Cargo) MIT
debricked-221856 N/A N/A atty (Cargo) MIT
debricked-167785 N/A N/A github.com/labstack/echo/v4 (Go) MIT
debricked-182577 N/A N/A github.com/docker/distribution (Go) Apache-2.0
debricked-167784 N/A N/A gopkg.in/yaml.v3 (Go) Apache-2.0, MIT
debricked-231653 N/A N/A google.golang.org/grpc (Go) Apache-2.0
debricked-236907 N/A N/A github.com/docker/docker (Go) Apache-2.0
CVE-2024-53261 N/A N/A @sveltejs/kit (npm) MIT
debricked-236904 N/A N/A openssl (Cargo) Apache-2.0
debricked-249408 N/A N/A golang.org/x/net (Go) BSD-3-Clause
debricked-241668 N/A N/A h2 (Cargo) MIT
debricked-245787 N/A N/A github.com/jackc/pgproto3/v2 (Go) MIT
debricked-235213 N/A N/A golang.org/x/net (Go) BSD-3-Clause
debricked-263614 N/A N/A openssl (Cargo) Apache-2.0
debricked-286515 N/A N/A esbuild (npm) MIT
CVE-2024-47764 N/A N/A cookie (npm) MIT
CVE-2024-53262 N/A N/A @sveltejs/kit (npm) MIT
CVE-2025-46565 N/A N/A vite (npm) MIT