Skip to content

Bump js-yaml from 3.14.1 to 3.14.2 in /web-app #1683

Bump js-yaml from 3.14.1 to 3.14.2 in /web-app

Bump js-yaml from 3.14.1 to 3.14.2 in /web-app #1683

Triggered via pull request November 17, 2025 19:55
Status Failure
Total duration 48s
Artifacts

vulncheck.yaml

on: pull_request
Matrix: React Code Has No Known Vulnerable Deps
Fit to window
Zoom out
Zoom in

Annotations

11 errors
React Code Has No Known Vulnerable Deps (1.24.x, ubuntu-latest)
Process completed with exit code 1.
Analysis
http.Target.Init calls http.Client.Do, which eventually calls url.URL.Parse
Analysis
api.Serve calls http.Server.Serve, which eventually calls url.ParseRequestURI
Analysis
http.Target.Init calls http.NewRequestWithContext, which calls url.Parse
Analysis
certs.ParsePublicCertFile calls x509.ParseCertificate, which eventually calls asn1.Unmarshal
Analysis
auth.GetTokenFromRequest calls http.Request.Cookie
Analysis
api.logoutFromIDPProvider calls http.Client.PostForm
Analysis
http.Client.Post calls http.Client.Post
Analysis
http.Client.Get calls http.Client.Get
Analysis
http.Target.Init calls http.Client.Do
Analysis
http.DrainBody calls io.Copy, which eventually calls x509.Certificate.Verify