[Backport 2.x] Fix HeaderControl not rendered if not mount in initial rendering #8366
Security Report
You have successfully remediated 2 vulnerabilities, but introduced 3 new vulnerabilities in this branch.
❌ New vulnerabilities:
CVE | Severity | Vulnerable Library | Suggested Fix | Issue | |
---|---|---|---|---|---|
WS-2017-3772Vulnerable Source Files: ❌ /packages/osd-ui-framework/node_modules/underscore.string/unescapeHTML.js |
7.5 | juice-shopjuice-shop-14.5.1_node16_darwin_x64 | Upgrade to version: underscore.string - 3.3.5 | #4734 | |
CVE-2024-45801Path to dependency file: /package.json Path to vulnerable library: /node_modules/dompurify/package.json Dependency Hierarchy: -> ❌ dompurify-3.0.11.tgz (Vulnerable Library) |
7.3 | dompurify-3.0.11.tgz | Upgrade to version: domPurify - 2.5.4,3.1.3 | None | |
CVE-2023-26156Path to dependency file: /package.json Path to vulnerable library: /node_modules/chromedriver/package.json Dependency Hierarchy: -> ❌ chromedriver-107.0.3.tgz (Vulnerable Library) |
5.6 | chromedriver-107.0.3.tgz | Upgrade to version: chromedriver - 119.0.1 | None |
✔️ Remediated vulnerabilities:
CVE | Vulnerable Library |
---|---|
CVE-2023-28155 | request-2.88.12.tgz |
WS-2017-3772 | juice-shop-juice-shop-15.3.0_node20_win32_x64 |
Base branch total remaining vulnerabilities: 16
Base branch commit: 8691010525e0c40eb5fdc1a02b6677e19b9f4b45
Total libraries scanned: 2452
Scan token: cd825e91e9c346d8bb04230087c01332