simple 03-Feb-2022 09:26:24 Build FarmDoc - Core - release-1.6.1 - Default Job #2 (FD-CORE150-JOB1-2) started building on agent buildserver-1.ncsa.illinois.edu, bamboo version: 8.1.1 simple 03-Feb-2022 09:26:24 Remote agent on host buildserver-1.ncsa.illinois.edu simple 03-Feb-2022 09:26:24 Build working directory is /home/bamboo/bamboo-agent-home/xml-data/build-dir/FD-CORE150-JOB1 simple 03-Feb-2022 09:26:24 Executing build FarmDoc - Core - release-1.6.1 - Default Job #2 (FD-CORE150-JOB1-2) simple 03-Feb-2022 09:26:24 Starting task 'Checkout Default Repository' of type 'com.atlassian.bamboo.plugins.vcs:task.vcs.checkout' simple 03-Feb-2022 09:26:24 Build always requires a clean checkout simple 03-Feb-2022 09:26:24 Cleaning build directory '/home/bamboo/bamboo-agent-home/xml-data/build-dir/FD-CORE150-JOB1' simple 03-Feb-2022 09:27:33 Checking out into /home/bamboo/bamboo-agent-home/xml-data/build-dir/FD-CORE150-JOB1 simple 03-Feb-2022 09:27:33 Updating source code to revision: e41f4978e25ba2311002c391b1771ce9435017e0 simple 03-Feb-2022 09:27:33 Creating local git repository in '/home/bamboo/bamboo-agent-home/xml-data/build-dir/FD-CORE150-JOB1/.git'. simple 03-Feb-2022 09:27:33 Initialized empty Git repository in /home/bamboo/bamboo-agent-home/xml-data/build-dir/FD-CORE150-JOB1/.git/ simple 03-Feb-2022 09:27:33 Fetching 'refs/heads/release/1.6.1' from 'ssh://git@opensource.ncsa.illinois.edu:7999/fd/farmdoc.git'. Will try to do a shallow fetch. simple 03-Feb-2022 09:27:33 Warning: Permanently added '[127.0.0.1]:44083' (RSA) to the list of known hosts. simple 03-Feb-2022 09:27:35 From ssh://127.0.0.1:44083/fd/farmdoc simple 03-Feb-2022 09:27:35 * [new branch] release/1.6.1 -> release/1.6.1 simple 03-Feb-2022 09:27:35 Checking out revision e41f4978e25ba2311002c391b1771ce9435017e0. simple 03-Feb-2022 09:27:35 Switched to branch 'release/1.6.1' simple 03-Feb-2022 09:27:35 Updated source code to revision: e41f4978e25ba2311002c391b1771ce9435017e0 simple 03-Feb-2022 09:27:35 Finished task 'Checkout Default Repository' with result: Success simple 03-Feb-2022 09:27:35 Running pre-build action: Build Log Labeller Pre Build Action simple 03-Feb-2022 09:27:35 Running pre-build action: VCS Version Collector simple 03-Feb-2022 09:27:35 Starting task 'npm install' of type 'com.atlassian.bamboo.plugins.bamboo-nodejs-plugin:task.builder.npm' command 03-Feb-2022 09:27:35 Beginning to execute external process for build 'FarmDoc - Core - release-1.6.1 - Default Job #2 (FD-CORE150-JOB1-2)'\n ... running command line: \n/home/bamboo/node-v12.14.1/bin/node /home/bamboo/node-v12.14.1/bin/npm install\n ... in: /home/bamboo/bamboo-agent-home/xml-data/build-dir/FD-CORE150-JOB1\n error 03-Feb-2022 09:27:37 npm WARN read-shrinkwrap This version of npm is compatible with lockfileVersion@1, but package-lock.json was generated for lockfileVersion@2. I'll try to do my best with it! build 03-Feb-2022 09:28:50 build 03-Feb-2022 09:28:50 > node-sass@4.14.1 install /home/bamboo/bamboo-agent-home/xml-data/build-dir/FD-CORE150-JOB1/node_modules/node-sass build 03-Feb-2022 09:28:50 > node scripts/install.js build 03-Feb-2022 09:28:50 build 03-Feb-2022 09:28:52 Cached binary found at /home/bamboo/.npm/node-sass/4.14.1/linux-x64-72_binding.node build 03-Feb-2022 09:28:52 build 03-Feb-2022 09:28:52 > core-js@2.6.12 postinstall /home/bamboo/bamboo-agent-home/xml-data/build-dir/FD-CORE150-JOB1/node_modules/babel-runtime/node_modules/core-js build 03-Feb-2022 09:28:52 > node -e "try{require('./postinstall')}catch(e){}" build 03-Feb-2022 09:28:52 build 03-Feb-2022 09:28:52 Thank you for using core-js ( https://github.com/zloirock/core-js ) for polyfilling JavaScript standard library! build 03-Feb-2022 09:28:52 build 03-Feb-2022 09:28:52 The project needs your help! Please consider supporting of core-js on Open Collective or Patreon:  build 03-Feb-2022 09:28:52 > https://opencollective.com/core-js  build 03-Feb-2022 09:28:52 > https://www.patreon.com/zloirock  build 03-Feb-2022 09:28:52 build 03-Feb-2022 09:28:52 Also, the author of core-js ( https://github.com/zloirock ) is looking for a good job -) build 03-Feb-2022 09:28:52 build 03-Feb-2022 09:28:52 build 03-Feb-2022 09:28:52 > core-js@3.8.1 postinstall /home/bamboo/bamboo-agent-home/xml-data/build-dir/FD-CORE150-JOB1/node_modules/core-js build 03-Feb-2022 09:28:52 > node -e "try{require('./postinstall')}catch(e){}" build 03-Feb-2022 09:28:52 build 03-Feb-2022 09:28:52 build 03-Feb-2022 09:28:52 > core-js-pure@3.8.1 postinstall /home/bamboo/bamboo-agent-home/xml-data/build-dir/FD-CORE150-JOB1/node_modules/core-js-pure build 03-Feb-2022 09:28:52 > node -e "try{require('./postinstall')}catch(e){}" build 03-Feb-2022 09:28:52 build 03-Feb-2022 09:28:52 build 03-Feb-2022 09:28:52 > ejs@2.7.4 postinstall /home/bamboo/bamboo-agent-home/xml-data/build-dir/FD-CORE150-JOB1/node_modules/ejs build 03-Feb-2022 09:28:52 > node ./postinstall.js build 03-Feb-2022 09:28:52 build 03-Feb-2022 09:28:52 Thank you for installing EJS: built with the Jake JavaScript build tool (https://jakejs.com/) build 03-Feb-2022 09:28:52 build 03-Feb-2022 09:28:53 build 03-Feb-2022 09:28:53 > node-sass@4.14.1 postinstall /home/bamboo/bamboo-agent-home/xml-data/build-dir/FD-CORE150-JOB1/node_modules/node-sass build 03-Feb-2022 09:28:53 > node scripts/build.js build 03-Feb-2022 09:28:53 build 03-Feb-2022 09:28:53 Binary found at /home/bamboo/bamboo-agent-home/xml-data/build-dir/FD-CORE150-JOB1/node_modules/node-sass/vendor/linux-x64-72/binding.node build 03-Feb-2022 09:28:53 Testing binary build 03-Feb-2022 09:28:53 Binary is fine error 03-Feb-2022 09:28:56 npm WARN optional SKIPPING OPTIONAL DEPENDENCY: fsevents@1.2.13 (node_modules/webpack-dev-server/node_modules/fsevents): error 03-Feb-2022 09:28:56 npm WARN notsup SKIPPING OPTIONAL DEPENDENCY: Unsupported platform for fsevents@1.2.13: wanted {"os":"darwin","arch":"any"} (current: {"os":"linux","arch":"x64"}) error 03-Feb-2022 09:28:56 npm WARN optional SKIPPING OPTIONAL DEPENDENCY: fsevents@1.2.13 (node_modules/watchpack-chokidar2/node_modules/fsevents): error 03-Feb-2022 09:28:56 npm WARN notsup SKIPPING OPTIONAL DEPENDENCY: Unsupported platform for fsevents@1.2.13: wanted {"os":"darwin","arch":"any"} (current: {"os":"linux","arch":"x64"}) error 03-Feb-2022 09:28:56 npm WARN optional SKIPPING OPTIONAL DEPENDENCY: fsevents@2.2.1 (node_modules/fsevents): error 03-Feb-2022 09:28:56 npm WARN notsup SKIPPING OPTIONAL DEPENDENCY: Unsupported platform for fsevents@2.2.1: wanted {"os":"darwin","arch":"any"} (current: {"os":"linux","arch":"x64"}) error 03-Feb-2022 09:28:56 npm WARN optional SKIPPING OPTIONAL DEPENDENCY: fsevents@2.1.3 (node_modules/chokidar/node_modules/fsevents): error 03-Feb-2022 09:28:56 npm WARN notsup SKIPPING OPTIONAL DEPENDENCY: Unsupported platform for fsevents@2.1.3: wanted {"os":"darwin","arch":"any"} (current: {"os":"linux","arch":"x64"}) error 03-Feb-2022 09:28:56 build 03-Feb-2022 09:28:56 added 2180 packages from 883 contributors and audited 2185 packages in 79.129s build 03-Feb-2022 09:28:58 build 03-Feb-2022 09:28:58 125 packages are looking for funding build 03-Feb-2022 09:28:58 run `npm fund` for details build 03-Feb-2022 09:28:58 build 03-Feb-2022 09:28:58 found 103 vulnerabilities (2 low, 75 moderate, 25 high, 1 critical) build 03-Feb-2022 09:28:58 run `npm audit fix` to fix them, or `npm audit` for details simple 03-Feb-2022 09:28:58 Finished task 'npm install' with result: Success simple 03-Feb-2022 09:28:58 Starting task 'npm audit' of type 'com.atlassian.bamboo.plugins.bamboo-nodejs-plugin:task.builder.npm' command 03-Feb-2022 09:28:58 Beginning to execute external process for build 'FarmDoc - Core - release-1.6.1 - Default Job #2 (FD-CORE150-JOB1-2)'\n ... running command line: \n/home/bamboo/node-v12.14.1/bin/node /home/bamboo/node-v12.14.1/bin/npm audit --audit-level=critical\n ... in: /home/bamboo/bamboo-agent-home/xml-data/build-dir/FD-CORE150-JOB1\n build 03-Feb-2022 09:29:00 === npm audit security report === build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 # Run npm install --save-dev node-sass@7.0.1 to resolve 11 vulnerabilities build 03-Feb-2022 09:29:00 SEMVER WARNING: Recommended action is a potentially breaking change build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Inefficient Regular Expression Complexity in │ build 03-Feb-2022 09:29:00 │ │ chalk/ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ node-sass [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ node-sass > sass-graph > yargs > string-width > strip-ansi > │ build 03-Feb-2022 09:29:00 │ │ ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-93q8-gq69-wqmw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Inefficient Regular Expression Complexity in │ build 03-Feb-2022 09:29:00 │ │ chalk/ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ node-sass [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ node-sass > sass-graph > yargs > cliui > string-width > │ build 03-Feb-2022 09:29:00 │ │ strip-ansi > ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-93q8-gq69-wqmw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Inefficient Regular Expression Complexity in │ build 03-Feb-2022 09:29:00 │ │ chalk/ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ node-sass [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ node-sass > sass-graph > yargs > cliui > wrap-ansi > │ build 03-Feb-2022 09:29:00 │ │ string-width > strip-ansi > ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-93q8-gq69-wqmw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Inefficient Regular Expression Complexity in │ build 03-Feb-2022 09:29:00 │ │ chalk/ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ node-sass [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ node-sass > sass-graph > yargs > cliui > strip-ansi > │ build 03-Feb-2022 09:29:00 │ │ ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-93q8-gq69-wqmw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Inefficient Regular Expression Complexity in │ build 03-Feb-2022 09:29:00 │ │ chalk/ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ node-sass [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ node-sass > sass-graph > yargs > cliui > wrap-ansi > │ build 03-Feb-2022 09:29:00 │ │ strip-ansi > ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-93q8-gq69-wqmw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ Arbitrary File Creation/Overwrite on Windows via │ build 03-Feb-2022 09:29:00 │ │ insufficient relative path sanitization │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ tar │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ node-sass [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ node-sass > node-gyp > tar │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-5955-9wpr-37jh │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ Arbitrary File Creation/Overwrite via insufficient symlink │ build 03-Feb-2022 09:29:00 │ │ protection due to directory cache poisoning using symbolic │ build 03-Feb-2022 09:29:00 │ │ links │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ tar │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ node-sass [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ node-sass > node-gyp > tar │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-qq89-hq3f-393p │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ Arbitrary File Creation/Overwrite via insufficient symlink │ build 03-Feb-2022 09:29:00 │ │ protection due to directory cache poisoning using symbolic │ build 03-Feb-2022 09:29:00 │ │ links │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ tar │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ node-sass [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ node-sass > node-gyp > tar │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-9r2w-394v-53qc │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ Arbitrary File Creation/Overwrite due to insufficient │ build 03-Feb-2022 09:29:00 │ │ absolute path sanitization │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ tar │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ node-sass [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ node-sass > node-gyp > tar │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-3jfq-g458-7qm9 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ Arbitrary File Creation/Overwrite via insufficient symlink │ build 03-Feb-2022 09:29:00 │ │ protection due to directory cache poisoning │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ tar │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ node-sass [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ node-sass > node-gyp > tar │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-r628-mhmh-qjhw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ Regular Expression Denial of Service in trim-newlines │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ trim-newlines │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ node-sass [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ node-sass > meow > trim-newlines │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-7p7h-4mm5-852v │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 # Run npm install --save-dev react-scripts@5.0.0 to resolve 22 vulnerabilities build 03-Feb-2022 09:29:00 SEMVER WARNING: Recommended action is a potentially breaking change build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Inefficient Regular Expression Complexity in │ build 03-Feb-2022 09:29:00 │ │ chalk/ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > webpack-dev-server > yargs > cliui > │ build 03-Feb-2022 09:29:00 │ │ strip-ansi > ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-93q8-gq69-wqmw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Inefficient Regular Expression Complexity in │ build 03-Feb-2022 09:29:00 │ │ chalk/ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > webpack-dev-server > yargs > cliui > │ build 03-Feb-2022 09:29:00 │ │ wrap-ansi > strip-ansi > ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-93q8-gq69-wqmw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Inefficient Regular Expression Complexity in nth-check │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ nth-check │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > optimize-css-assets-webpack-plugin > cssnano │ build 03-Feb-2022 09:29:00 │ │ > cssnano-preset-default > postcss-svgo > svgo > css-select │ build 03-Feb-2022 09:29:00 │ │ > nth-check │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-rp65-9cf3-cjxr │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ Prototype Pollution in immer │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ immer │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > react-dev-utils > immer │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-c36v-fmgq-m8hx │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Critical │ Prototype Pollution in immer │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ immer │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > react-dev-utils > immer │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-33f9-j839-rf8h │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > css-loader > postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-hwj9-h5mp-3pm3 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > css-loader > icss-utils > postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-hwj9-h5mp-3pm3 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > css-loader > │ build 03-Feb-2022 09:29:00 │ │ postcss-modules-local-by-default > icss-utils > postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-hwj9-h5mp-3pm3 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > optimize-css-assets-webpack-plugin > cssnano │ build 03-Feb-2022 09:29:00 │ │ > cssnano-preset-default > css-declaration-sorter > postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-hwj9-h5mp-3pm3 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > optimize-css-assets-webpack-plugin > cssnano │ build 03-Feb-2022 09:29:00 │ │ > cssnano-preset-default > postcss-merge-longhand > │ build 03-Feb-2022 09:29:00 │ │ stylehacks > postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-hwj9-h5mp-3pm3 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ Regular expression denial of service │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ glob-parent │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > webpack > watchpack > watchpack-chokidar2 > │ build 03-Feb-2022 09:29:00 │ │ chokidar > glob-parent │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-ww39-953v-wcq6 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ Regular expression denial of service │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ glob-parent │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > webpack-dev-server > chokidar > glob-parent │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-ww39-953v-wcq6 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in browserslist │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ browserslist │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > react-dev-utils > browserslist │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-w8qv-6jwh-64r5 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ Regular Expression Denial of Service (ReDoS) │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ssri │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > webpack > terser-webpack-plugin > cacache > │ build 03-Feb-2022 09:29:00 │ │ ssri │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-vx3p-948g-6vhq │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > css-loader > postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-566m-qj78-rww5 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > css-loader > icss-utils > postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-566m-qj78-rww5 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > css-loader > │ build 03-Feb-2022 09:29:00 │ │ postcss-modules-local-by-default > icss-utils > postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-566m-qj78-rww5 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > optimize-css-assets-webpack-plugin > cssnano │ build 03-Feb-2022 09:29:00 │ │ > cssnano-preset-default > css-declaration-sorter > postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-566m-qj78-rww5 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > optimize-css-assets-webpack-plugin > cssnano │ build 03-Feb-2022 09:29:00 │ │ > cssnano-preset-default > postcss-merge-longhand > │ build 03-Feb-2022 09:29:00 │ │ stylehacks > postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-566m-qj78-rww5 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Low │ Prototype Pollution in node-forge debug API. │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ node-forge │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > webpack-dev-server > selfsigned > node-forge │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-5rrq-pxf6-6jx5 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Low │ URL parsing in node-forge could lead to undesired behavior. │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ node-forge │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > webpack-dev-server > selfsigned > node-forge │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-gf8q-jrpm-jvxq │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Open Redirect in node-forge │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ node-forge │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > webpack-dev-server > selfsigned > node-forge │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-8fr3-hfg3-gpgp │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 # Run npm install chart.js@3.7.0 to resolve 1 vulnerability build 03-Feb-2022 09:29:00 SEMVER WARNING: Recommended action is a potentially breaking change build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ Prototype pollution in chart.js │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ chart.js │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ chart.js │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ chart.js │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-h68q-55jf-x68w │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 # Run npm update ansi-regex --depth 14 to resolve 11 vulnerabilities build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Inefficient Regular Expression Complexity in │ build 03-Feb-2022 09:29:00 │ │ chalk/ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ @testing-library/react [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ @testing-library/react > @testing-library/dom > │ build 03-Feb-2022 09:29:00 │ │ pretty-format > ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-93q8-gq69-wqmw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Inefficient Regular Expression Complexity in │ build 03-Feb-2022 09:29:00 │ │ chalk/ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ @testing-library/jest-dom [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ @testing-library/jest-dom > @types/testing-library__jest-dom │ build 03-Feb-2022 09:29:00 │ │ > @types/jest > pretty-format > ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-93q8-gq69-wqmw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Inefficient Regular Expression Complexity in │ build 03-Feb-2022 09:29:00 │ │ chalk/ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ @testing-library/jest-dom [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ @testing-library/jest-dom > @types/testing-library__jest-dom │ build 03-Feb-2022 09:29:00 │ │ > @types/jest > jest-diff > pretty-format > ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-93q8-gq69-wqmw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Inefficient Regular Expression Complexity in │ build 03-Feb-2022 09:29:00 │ │ chalk/ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest-circus > expect > jest-matcher-utils > │ build 03-Feb-2022 09:29:00 │ │ jest-diff > pretty-format > ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-93q8-gq69-wqmw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Inefficient Regular Expression Complexity in │ build 03-Feb-2022 09:29:00 │ │ chalk/ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest-circus > jest-snapshot > expect > │ build 03-Feb-2022 09:29:00 │ │ jest-matcher-utils > jest-diff > pretty-format > ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-93q8-gq69-wqmw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Inefficient Regular Expression Complexity in │ build 03-Feb-2022 09:29:00 │ │ chalk/ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest-circus > jest-runtime > @jest/globals > │ build 03-Feb-2022 09:29:00 │ │ expect > jest-matcher-utils > jest-diff > pretty-format > │ build 03-Feb-2022 09:29:00 │ │ ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-93q8-gq69-wqmw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Inefficient Regular Expression Complexity in │ build 03-Feb-2022 09:29:00 │ │ chalk/ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest-circus > jest-runner > jest-runtime > │ build 03-Feb-2022 09:29:00 │ │ @jest/globals > expect > jest-matcher-utils > jest-diff > │ build 03-Feb-2022 09:29:00 │ │ pretty-format > ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-93q8-gq69-wqmw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Inefficient Regular Expression Complexity in │ build 03-Feb-2022 09:29:00 │ │ chalk/ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > @jest/core > jest-runner > │ build 03-Feb-2022 09:29:00 │ │ jest-runtime > @jest/globals > expect > jest-matcher-utils > │ build 03-Feb-2022 09:29:00 │ │ jest-diff > pretty-format > ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-93q8-gq69-wqmw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Inefficient Regular Expression Complexity in │ build 03-Feb-2022 09:29:00 │ │ chalk/ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > jest-cli > @jest/core > jest-runner > │ build 03-Feb-2022 09:29:00 │ │ jest-runtime > @jest/globals > expect > jest-matcher-utils > │ build 03-Feb-2022 09:29:00 │ │ jest-diff > pretty-format > ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-93q8-gq69-wqmw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Inefficient Regular Expression Complexity in │ build 03-Feb-2022 09:29:00 │ │ chalk/ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > @jest/core > jest-config > │ build 03-Feb-2022 09:29:00 │ │ @jest/test-sequencer > jest-runner > jest-runtime > │ build 03-Feb-2022 09:29:00 │ │ @jest/globals > expect > jest-matcher-utils > jest-diff > │ build 03-Feb-2022 09:29:00 │ │ pretty-format > ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-93q8-gq69-wqmw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Inefficient Regular Expression Complexity in │ build 03-Feb-2022 09:29:00 │ │ chalk/ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > jest-cli > @jest/core > jest-config > │ build 03-Feb-2022 09:29:00 │ │ @jest/test-sequencer > jest-runner > jest-runtime > │ build 03-Feb-2022 09:29:00 │ │ @jest/globals > expect > jest-matcher-utils > jest-diff > │ build 03-Feb-2022 09:29:00 │ │ pretty-format > ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-93q8-gq69-wqmw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 # Run npm update wide-align --depth 5 to resolve 2 vulnerabilities build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Inefficient Regular Expression Complexity in │ build 03-Feb-2022 09:29:00 │ │ chalk/ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ node-sass [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ node-sass > npmlog > gauge > wide-align > string-width > │ build 03-Feb-2022 09:29:00 │ │ strip-ansi > ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-93q8-gq69-wqmw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Inefficient Regular Expression Complexity in │ build 03-Feb-2022 09:29:00 │ │ chalk/ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ node-sass [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ node-sass > node-gyp > npmlog > gauge > wide-align > │ build 03-Feb-2022 09:29:00 │ │ string-width > strip-ansi > ansi-regex │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-93q8-gq69-wqmw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 # Run npm update tmpl --depth 14 to resolve 8 vulnerabilities build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in tmpl │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ tmpl │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > babel-jest > @jest/transform > │ build 03-Feb-2022 09:29:00 │ │ jest-haste-map > walker > makeerror > tmpl │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-jgrx-mgxx-jf9v │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in tmpl │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ tmpl │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > babel-jest > @jest/transform > │ build 03-Feb-2022 09:29:00 │ │ jest-haste-map > sane > walker > makeerror > tmpl │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-jgrx-mgxx-jf9v │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in tmpl │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ tmpl │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > @jest/core > @jest/transform > │ build 03-Feb-2022 09:29:00 │ │ jest-haste-map > sane > walker > makeerror > tmpl │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-jgrx-mgxx-jf9v │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in tmpl │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ tmpl │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > @jest/core > @jest/reporters > │ build 03-Feb-2022 09:29:00 │ │ @jest/transform > jest-haste-map > sane > walker > makeerror │ build 03-Feb-2022 09:29:00 │ │ > tmpl │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-jgrx-mgxx-jf9v │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in tmpl │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ tmpl │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > @jest/core > jest-config > babel-jest │ build 03-Feb-2022 09:29:00 │ │ > @jest/transform > jest-haste-map > sane > walker > │ build 03-Feb-2022 09:29:00 │ │ makeerror > tmpl │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-jgrx-mgxx-jf9v │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in tmpl │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ tmpl │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > jest-cli > @jest/core > jest-config > │ build 03-Feb-2022 09:29:00 │ │ babel-jest > @jest/transform > jest-haste-map > sane > │ build 03-Feb-2022 09:29:00 │ │ walker > makeerror > tmpl │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-jgrx-mgxx-jf9v │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in tmpl │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ tmpl │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > jest-cli > @jest/core > jest-runner > │ build 03-Feb-2022 09:29:00 │ │ jest-config > babel-jest > @jest/transform > jest-haste-map │ build 03-Feb-2022 09:29:00 │ │ > sane > walker > makeerror > tmpl │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-jgrx-mgxx-jf9v │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in tmpl │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ tmpl │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > jest-cli > @jest/core > jest-runner > │ build 03-Feb-2022 09:29:00 │ │ jest-runtime > jest-config > babel-jest > @jest/transform > │ build 03-Feb-2022 09:29:00 │ │ jest-haste-map > sane > walker > makeerror > tmpl │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-jgrx-mgxx-jf9v │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 # Run npm update tar --depth 4 to resolve 5 vulnerabilities build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ Arbitrary File Creation/Overwrite on Windows via │ build 03-Feb-2022 09:29:00 │ │ insufficient relative path sanitization │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ tar │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > terser-webpack-plugin > cacache > tar │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-5955-9wpr-37jh │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ Arbitrary File Creation/Overwrite via insufficient symlink │ build 03-Feb-2022 09:29:00 │ │ protection due to directory cache poisoning using symbolic │ build 03-Feb-2022 09:29:00 │ │ links │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ tar │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > terser-webpack-plugin > cacache > tar │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-qq89-hq3f-393p │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ Arbitrary File Creation/Overwrite via insufficient symlink │ build 03-Feb-2022 09:29:00 │ │ protection due to directory cache poisoning using symbolic │ build 03-Feb-2022 09:29:00 │ │ links │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ tar │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > terser-webpack-plugin > cacache > tar │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-9r2w-394v-53qc │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ Arbitrary File Creation/Overwrite due to insufficient │ build 03-Feb-2022 09:29:00 │ │ absolute path sanitization │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ tar │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > terser-webpack-plugin > cacache > tar │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-3jfq-g458-7qm9 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ Arbitrary File Creation/Overwrite via insufficient symlink │ build 03-Feb-2022 09:29:00 │ │ protection due to directory cache poisoning │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ tar │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > terser-webpack-plugin > cacache > tar │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-r628-mhmh-qjhw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 # Run npm update color-string --depth 7 to resolve 1 vulnerability build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service (ReDOS) │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ color-string │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > optimize-css-assets-webpack-plugin > cssnano │ build 03-Feb-2022 09:29:00 │ │ > cssnano-preset-default > postcss-colormin > color > │ build 03-Feb-2022 09:29:00 │ │ color-string │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-257v-vj4p-3w2h │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 # Run npm update postcss --depth 3 to resolve 2 vulnerabilities build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > postcss-safe-parser > postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-hwj9-h5mp-3pm3 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > postcss-safe-parser > postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-566m-qj78-rww5 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 # Run npm update glob-parent --depth 7 to resolve 4 vulnerabilities build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ Regular expression denial of service │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ glob-parent │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > eslint > glob-parent │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-ww39-953v-wcq6 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ Regular expression denial of service │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ glob-parent │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > react-dev-utils > globby > fast-glob > │ build 03-Feb-2022 09:29:00 │ │ glob-parent │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-ww39-953v-wcq6 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ Regular expression denial of service │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ glob-parent │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > @typescript-eslint/parser > │ build 03-Feb-2022 09:29:00 │ │ @typescript-eslint/typescript-estree > globby > fast-glob > │ build 03-Feb-2022 09:29:00 │ │ glob-parent │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-ww39-953v-wcq6 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ Regular expression denial of service │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ glob-parent │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > @typescript-eslint/eslint-plugin > │ build 03-Feb-2022 09:29:00 │ │ @typescript-eslint/experimental-utils > │ build 03-Feb-2022 09:29:00 │ │ @typescript-eslint/typescript-estree > globby > fast-glob > │ build 03-Feb-2022 09:29:00 │ │ glob-parent │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-ww39-953v-wcq6 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 # Run npm update ws --depth 10 to resolve 5 vulnerabilities build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ ReDoS in Sec-Websocket-Protocol header │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ws │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ webpack-bundle-analyzer [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ webpack-bundle-analyzer > ws │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-6fc8-4gx4-v693 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ ReDoS in Sec-Websocket-Protocol header │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ws │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > @jest/core > jest-config > │ build 03-Feb-2022 09:29:00 │ │ jest-environment-jsdom > jsdom > ws │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-6fc8-4gx4-v693 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ ReDoS in Sec-Websocket-Protocol header │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ws │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > jest-cli > @jest/core > jest-config > │ build 03-Feb-2022 09:29:00 │ │ jest-environment-jsdom > jsdom > ws │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-6fc8-4gx4-v693 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ ReDoS in Sec-Websocket-Protocol header │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ws │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > jest-cli > @jest/core > jest-runner > │ build 03-Feb-2022 09:29:00 │ │ jest-config > jest-environment-jsdom > jsdom > ws │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-6fc8-4gx4-v693 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ ReDoS in Sec-Websocket-Protocol header │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ws │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > jest-cli > @jest/core > jest-runner > │ build 03-Feb-2022 09:29:00 │ │ jest-runtime > jest-config > jest-environment-jsdom > jsdom │ build 03-Feb-2022 09:29:00 │ │ > ws │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-6fc8-4gx4-v693 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 # Run npm update browserslist --depth 7 to resolve 5 vulnerabilities build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in browserslist │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ browserslist │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > postcss-normalize > browserslist │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-w8qv-6jwh-64r5 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in browserslist │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ browserslist │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > postcss-preset-env > autoprefixer > │ build 03-Feb-2022 09:29:00 │ │ browserslist │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-w8qv-6jwh-64r5 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in browserslist │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ browserslist │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > @svgr/webpack > @babel/preset-env > │ build 03-Feb-2022 09:29:00 │ │ @babel/helper-compilation-targets > browserslist │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-w8qv-6jwh-64r5 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in browserslist │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ browserslist │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > workbox-webpack-plugin > workbox-build > │ build 03-Feb-2022 09:29:00 │ │ @babel/preset-env > @babel/helper-compilation-targets > │ build 03-Feb-2022 09:29:00 │ │ browserslist │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-w8qv-6jwh-64r5 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in browserslist │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ browserslist │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > optimize-css-assets-webpack-plugin > cssnano │ build 03-Feb-2022 09:29:00 │ │ > cssnano-preset-default > postcss-merge-longhand > │ build 03-Feb-2022 09:29:00 │ │ stylehacks > browserslist │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-w8qv-6jwh-64r5 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 # Run npm update ssri --depth 4 to resolve 1 vulnerability build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ Regular Expression Denial of Service (ReDoS) │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ssri │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > terser-webpack-plugin > cacache > ssri │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-vx3p-948g-6vhq │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 # Run npm update hosted-git-info --depth 13 to resolve 8 vulnerabilities build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in hosted-git-info │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ hosted-git-info │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ node-sass [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ node-sass > meow > normalize-package-data > hosted-git-info │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-43f8-2h32-f4cj │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in hosted-git-info │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ hosted-git-info │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ node-sass [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ node-sass > meow > read-pkg-up > read-pkg > │ build 03-Feb-2022 09:29:00 │ │ normalize-package-data > hosted-git-info │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-43f8-2h32-f4cj │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in hosted-git-info │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ hosted-git-info │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest-circus > jest-runner > jest-resolve > │ build 03-Feb-2022 09:29:00 │ │ read-pkg-up > read-pkg > normalize-package-data > │ build 03-Feb-2022 09:29:00 │ │ hosted-git-info │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-43f8-2h32-f4cj │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in hosted-git-info │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ hosted-git-info │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > @jest/core > @jest/reporters > │ build 03-Feb-2022 09:29:00 │ │ jest-resolve > read-pkg-up > read-pkg > │ build 03-Feb-2022 09:29:00 │ │ normalize-package-data > hosted-git-info │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-43f8-2h32-f4cj │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in hosted-git-info │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ hosted-git-info │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > jest-cli > @jest/core > │ build 03-Feb-2022 09:29:00 │ │ @jest/reporters > jest-resolve > read-pkg-up > read-pkg > │ build 03-Feb-2022 09:29:00 │ │ normalize-package-data > hosted-git-info │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-43f8-2h32-f4cj │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in hosted-git-info │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ hosted-git-info │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > @jest/core > jest-config > │ build 03-Feb-2022 09:29:00 │ │ @jest/test-sequencer > jest-runner > jest-resolve > │ build 03-Feb-2022 09:29:00 │ │ read-pkg-up > read-pkg > normalize-package-data > │ build 03-Feb-2022 09:29:00 │ │ hosted-git-info │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-43f8-2h32-f4cj │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in hosted-git-info │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ hosted-git-info │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > jest-cli > @jest/core > jest-config > │ build 03-Feb-2022 09:29:00 │ │ @jest/test-sequencer > jest-runner > jest-resolve > │ build 03-Feb-2022 09:29:00 │ │ read-pkg-up > read-pkg > normalize-package-data > │ build 03-Feb-2022 09:29:00 │ │ hosted-git-info │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-43f8-2h32-f4cj │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in hosted-git-info │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ hosted-git-info │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > jest-cli > @jest/core > jest-runner > │ build 03-Feb-2022 09:29:00 │ │ jest-config > @jest/test-sequencer > jest-runner > │ build 03-Feb-2022 09:29:00 │ │ jest-resolve > read-pkg-up > read-pkg > │ build 03-Feb-2022 09:29:00 │ │ normalize-package-data > hosted-git-info │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-43f8-2h32-f4cj │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 # Run npm update cssnano --depth 3 to resolve 2 vulnerabilities build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ Regular Expression Denial of Service (ReDoS) │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ is-svg │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > optimize-css-assets-webpack-plugin > cssnano │ build 03-Feb-2022 09:29:00 │ │ > cssnano-preset-default > postcss-svgo > is-svg │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-7r28-3m3f-r2pr │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ ReDOS in IS-SVG │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ is-svg │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > optimize-css-assets-webpack-plugin > cssnano │ build 03-Feb-2022 09:29:00 │ │ > cssnano-preset-default > postcss-svgo > is-svg │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-r8j5-h5cx-65gg │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 # Run npm update elliptic --depth 6 to resolve 1 vulnerability build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Use of a Broken or Risky Cryptographic Algorithm │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ elliptic │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > webpack > node-libs-browser > │ build 03-Feb-2022 09:29:00 │ │ crypto-browserify > browserify-sign > elliptic │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-r9p9-mrjm-926w │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 # Run npm update node-notifier --depth 6 to resolve 2 vulnerabilities build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ OS Command Injection in node-notifier │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ node-notifier │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > @jest/core > @jest/reporters > │ build 03-Feb-2022 09:29:00 │ │ node-notifier │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-5fw9-fq32-wv5p │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ OS Command Injection in node-notifier │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ node-notifier │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > jest-cli > @jest/core > │ build 03-Feb-2022 09:29:00 │ │ @jest/reporters > node-notifier │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-5fw9-fq32-wv5p │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 # Run npm update jsprim --depth 5 to resolve 2 vulnerabilities build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ json-schema is vulnerable to Prototype Pollution │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ json-schema │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ node-sass [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ node-sass > request > http-signature > jsprim > json-schema │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-896r-f27r-55mw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ json-schema is vulnerable to Prototype Pollution │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ json-schema │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ node-sass [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ node-sass > node-gyp > request > http-signature > jsprim > │ build 03-Feb-2022 09:29:00 │ │ json-schema │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-896r-f27r-55mw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 # Run npm update jsdom --depth 9 to resolve 4 vulnerabilities build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ json-schema is vulnerable to Prototype Pollution │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ json-schema │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > @jest/core > jest-config > │ build 03-Feb-2022 09:29:00 │ │ jest-environment-jsdom > jsdom > request > http-signature > │ build 03-Feb-2022 09:29:00 │ │ jsprim > json-schema │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-896r-f27r-55mw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ json-schema is vulnerable to Prototype Pollution │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ json-schema │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > jest-cli > @jest/core > jest-config > │ build 03-Feb-2022 09:29:00 │ │ jest-environment-jsdom > jsdom > request > http-signature > │ build 03-Feb-2022 09:29:00 │ │ jsprim > json-schema │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-896r-f27r-55mw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ json-schema is vulnerable to Prototype Pollution │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ json-schema │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > jest-cli > @jest/core > jest-runner > │ build 03-Feb-2022 09:29:00 │ │ jest-config > jest-environment-jsdom > jsdom > request > │ build 03-Feb-2022 09:29:00 │ │ http-signature > jsprim > json-schema │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-896r-f27r-55mw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ json-schema is vulnerable to Prototype Pollution │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ json-schema │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > jest > jest-cli > @jest/core > jest-runner > │ build 03-Feb-2022 09:29:00 │ │ jest-runtime > jest-config > jest-environment-jsdom > jsdom │ build 03-Feb-2022 09:29:00 │ │ > request > http-signature > jsprim > json-schema │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-896r-f27r-55mw │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 # Run npm update follow-redirects --depth 5 to resolve 1 vulnerability build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ Exposure of sensitive information in follow-redirects │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ follow-redirects │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > webpack-dev-server > http-proxy-middleware > │ build 03-Feb-2022 09:29:00 │ │ http-proxy > follow-redirects │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-74fj-2j2h-c42q │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 # Run npm update nanoid --depth 4 to resolve 1 vulnerability build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Exposure of Sensitive Information to an Unauthorized Actor │ build 03-Feb-2022 09:29:00 │ │ in nanoid │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ nanoid │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > postcss-safe-parser > postcss > nanoid │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-qrpm-p2h7-hrv2 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 build 03-Feb-2022 09:29:00 ┌──────────────────────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Manual Review │ build 03-Feb-2022 09:29:00 │ Some vulnerabilities require your attention to resolve │ build 03-Feb-2022 09:29:00 │ │ build 03-Feb-2022 09:29:00 │ Visit https://go.npm.me/audit-guide for additional guidance │ build 03-Feb-2022 09:29:00 └──────────────────────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Inefficient Regular Expression Complexity in nth-check │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ nth-check │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Patched in │ >=2.0.1 │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > @svgr/webpack > @svgr/plugin-svgo > svgo > │ build 03-Feb-2022 09:29:00 │ │ css-select > nth-check │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-rp65-9cf3-cjxr │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ High │ Uncontrolled Resource Consumption in ansi-html │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ ansi-html │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Patched in │ No patch available │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > @pmmmwh/react-refresh-webpack-plugin > │ build 03-Feb-2022 09:29:00 │ │ ansi-html │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-whgm-jr23-g3j9 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Patched in │ >=7.0.36 │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > resolve-url-loader > postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-hwj9-h5mp-3pm3 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 ┌───────────────┬──────────────────────────────────────────────────────────────┐ build 03-Feb-2022 09:29:00 │ Moderate │ Regular Expression Denial of Service in postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Package │ postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Patched in │ >=8.2.13 │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Dependency of │ react-scripts [dev] │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ Path │ react-scripts > resolve-url-loader > postcss │ build 03-Feb-2022 09:29:00 ├───────────────┼──────────────────────────────────────────────────────────────┤ build 03-Feb-2022 09:29:00 │ More info │ https://github.com/advisories/GHSA-566m-qj78-rww5 │ build 03-Feb-2022 09:29:00 └───────────────┴──────────────────────────────────────────────────────────────┘ build 03-Feb-2022 09:29:00 found 103 vulnerabilities (2 low, 75 moderate, 25 high, 1 critical) in 2185 scanned packages build 03-Feb-2022 09:29:00 run `npm audit fix` to fix 65 of them. build 03-Feb-2022 09:29:00 34 vulnerabilities require semver-major dependency updates. build 03-Feb-2022 09:29:00 4 vulnerabilities require manual review. See the full report for details. simple 03-Feb-2022 09:29:00 Failing task since return code of [/home/bamboo/node-v12.14.1/bin/node /home/bamboo/node-v12.14.1/bin/npm audit --audit-level=critical] was 1 while expected 0 simple 03-Feb-2022 09:29:00 Finished task 'npm audit' with result: Failed simple 03-Feb-2022 09:29:00 Running post build plugin 'Docker Container Cleanup' simple 03-Feb-2022 09:29:00 Running post build plugin 'NCover Results Collector' simple 03-Feb-2022 09:29:00 Running post build plugin 'Build Results Label Collector' simple 03-Feb-2022 09:29:00 Running post build plugin 'Clover Results Collector' simple 03-Feb-2022 09:29:00 Running post build plugin 'npm Cache Cleanup' simple 03-Feb-2022 09:29:00 Running post build plugin 'Artifact Copier' simple 03-Feb-2022 09:29:00 Publishing an artifact: farmdoc-web error 03-Feb-2022 09:29:00 Unable to publish artifact [farmdoc-web]: the source directory /home/bamboo/bamboo-agent-home/xml-data/build-dir/FD-CORE150-JOB1/build does not exist. simple 03-Feb-2022 09:29:00 The artifact hasn't been successfully published after 382.4 μs simple 03-Feb-2022 09:29:00 Finalising the build... simple 03-Feb-2022 09:29:00 Stopping timer. simple 03-Feb-2022 09:29:00 Build FD-CORE150-JOB1-2 completed. simple 03-Feb-2022 09:29:00 Running on server: post build plugin 'NCover Results Collector' simple 03-Feb-2022 09:29:00 Running on server: post build plugin 'Build Hanging Detection Configuration' simple 03-Feb-2022 09:29:00 Running on server: post build plugin 'Build Labeller' simple 03-Feb-2022 09:29:01 Running on server: post build plugin 'Clover Delta Calculator' simple 03-Feb-2022 09:29:01 Running on server: post build plugin 'Maven Dependencies Postprocessor' simple 03-Feb-2022 09:29:01 All post build plugins have finished simple 03-Feb-2022 09:29:01 Generating build results summary... simple 03-Feb-2022 09:29:01 Saving build results to disk... simple 03-Feb-2022 09:29:01 Store variable context... simple 03-Feb-2022 09:29:01 Indexing build results... simple 03-Feb-2022 09:29:01 Finished building FD-CORE150-JOB1-2.