Skip to content

Bump qs and express

04283f3
Select commit
Loading
Failed to load commit list.
Open

Bump qs and express #224

Bump qs and express
04283f3
Select commit
Loading
Failed to load commit list.
Debricked / Vulnerability analysis completed May 23, 2026 in 27s

An automation triggered a pipeline warning

Found 6 vulnerabilities. An additional 0 vulnerabilities have been marked as unaffected.

Output from Automations

4 rules were checked:


If a new dependency is added where the license risk is at least medium

then notify all users in the group admins by email

✔️ The rule did not trigger. Manage rule



If there is a dependency where the license risk is at least high

then send a pipeline warning

✔️ The rule did not trigger. Manage rule



If a dependency contains a vulnerability which has not been marked as unaffected and which has not triggered this rule for this dependency before

then notify all users in the group admins by email

📤 The rule triggered for the following vulnerabilities, causing an email notification. Manage rule

Vulnerability CVSS2 CVSS3 CVSS4 Dependency Dependency Licenses
CVE-2026-39363 N/A 7.5 8.2 vite (npm) MIT
CVE-2026-39365 N/A 5.3 6.3 vite (npm) MIT
CVE-2026-41305 N/A 6.1 N/A postcss (npm) MIT


If a dependency contains a vulnerability which has not been marked as unaffected

then send a pipeline warning

⚠️ The rule triggered for the following vulnerabilities, causing a pipeline warning. Manage rule

Vulnerability CVSS2 CVSS3 CVSS4 Dependency Dependency Licenses
CVE-2026-39363 N/A 7.5 8.2 vite (npm) MIT
CVE-2026-4867 N/A 7.5 N/A path-to-regexp (npm) MIT
CVE-2026-33671 N/A 7.5 N/A picomatch (npm) MIT
CVE-2026-39365 N/A 5.3 6.3 vite (npm) MIT
CVE-2026-41305 N/A 6.1 N/A postcss (npm) MIT
CVE-2026-33672 N/A 5.3 N/A picomatch (npm) MIT