Security Vulnerabilities Detected in package-lock.json (npm) via Trivy Scan

Created on 9 January 2025, 3 months ago

A Trivy scan of the package-lock.json file for the Media Library Form API Element module has identified a total of 85 security vulnerabilities. These include 64 vulnerabilities of HIGH severity and 21 vulnerabilities of CRITICAL severity. These vulnerabilities pose significant security risks and must be addressed promptly to safeguard the application.

Vulnerability Breakdown:

Total vulnerabilities found: 85
High severity: 64
Critical severity: 21

πŸ’¬ Support request
Status

Active

Version

2.1

Component

Code

Created by

Live updates comments and jobs are added and updated live.
Sign in to follow issues

Comments & Activities

  • Issue created by @a.err
  • πŸ‡ΊπŸ‡ΈUnited States mark_fullmer Tucson

    I don't think this needs to be marked as critical, since these packages are not part of the distributed Drupal module; they are internal build tools only. Setting priority to "Normal."

Production build 0.71.5 2024