Update dependency @vonage/video-express to v1.2.1 #20
Mend for GitHub.com / WhiteSource Security Check
failed
Apr 18, 2026 in 4m 50s
Security Report
You have successfully remediated 4 vulnerabilities, but introduced 2 new vulnerabilities in this branch.
❌ New vulnerabilities:
| Vulnerability | Severity | Vulnerable Library | Direct Library | Suggested Fix | Issue | |
|---|---|---|---|---|---|---|
CVE-2024-43800Path to dependency file: /package.json Path to vulnerable library: /package.json Dependency Hierarchy: -> express-4.17.1.tgz (Root Library) -> ❌ serve-static-1.14.1.tgz (Vulnerable Library) |
5.0 | Transitive serve-static-1.14.1.tgz |
express-4.17.1.tgz | Transitive 1.16.0 |
None | |
CVE-2024-43799Path to dependency file: /package.json Path to vulnerable library: /package.json Dependency Hierarchy: -> express-4.17.1.tgz (Root Library) -> ❌ send-0.17.1.tgz (Vulnerable Library) |
5.0 | Transitive send-0.17.1.tgz |
express-4.17.1.tgz | Transitive 0.19.0 |
None |
✔️ Remediated vulnerabilities:
| Vulnerability | Vulnerable Library |
|---|---|
| CVE-2025-13465 | lodash-es-4.17.21.tgz |
| CVE-2026-2950 | lodash-es-4.17.21.tgz |
| CVE-2026-4800 | lodash-es-4.17.21.tgz |
| CVE-2022-25927 | ua-parser-js-1.0.2.tgz |
Base branch total remaining vulnerabilities: 173
Base branch commit: null
Total libraries scanned: 1638
Scan token: 2b9ce155371f49f9afa4a23753e05005
Loading