Skip to content

Update dependency body-parser to v1.20.4

71b7204
Select commit
Loading
Failed to load commit list.
Open

Update dependency body-parser to v1.20.4 #38

Update dependency body-parser to v1.20.4
71b7204
Select commit
Loading
Failed to load commit list.
Dev - Mend for GitHub.com / Mend Security Check failed Feb 20, 2026 in 1m 30s

Security Report

3 new vulnerabilities were introduced in this branch.

❌ New vulnerabilities:

Vulnerability Severity CVSS Score Vulnerable Library Direct Library Suggested Fix Issue
CVE-398484-724968

Path to dependency file: /package.json

Path to vulnerable library: /package.json

Dependency Hierarchy:

-> core-7.23.2.tgz (Root Library)

   -> traverse-7.29.0.tgz

     -> debug-4.4.3.tgz

       -> ❌ ms-2.1.3.tgz (Vulnerable Library)

Critical 9.8 Transitive ms-2.1.3.tgz core-7.23.2.tgz None
CVE-289561-266276

Path to dependency file: /package.json

Path to vulnerable library: /package.json

Dependency Hierarchy:

-> body-parser-1.20.4.tgz (Root Library)

   -> raw-body-2.5.3.tgz

     -> http-errors-2.0.1.tgz

       -> ❌ inherits-2.0.4.tgz (Vulnerable Library)

Critical 9.8 Transitive inherits-2.0.4.tgz body-parser-1.20.4.tgz None
CVE-2025-26791

Path to dependency file: /package.json

Path to vulnerable library: /package.json

Dependency Hierarchy:

-> ❌ dompurify-2.5.8.tgz (Vulnerable Library)

Medium 4.5 Direct dompurify-2.5.8.tgz dompurify-2.5.8.tgz 3.2.4 None

Base branch total remaining vulnerabilities: 68
Base branch commit: 83155abda4658ac651ce8161120d08a2098f9f70


Total libraries scanned: 446

Scan token: 3788bf54268449cdaf0a82d2145d21a4