Update dependency express to v4.22.0 (main) #13
Mend for GitHub.com / WhiteSource Security Check
failed
May 29, 2026 in 59s
Security Report
You have successfully remediated 9 vulnerabilities, but introduced 1 new vulnerabilities in this branch.
❌ New vulnerabilities:
| Vulnerability | Severity | Exploit Maturity | EPSS | Vulnerable Library | Direct Library | Suggested Fix | Issue | Reachability | |
|---|---|---|---|---|---|---|---|---|---|
CVE-2026-8723Path to dependency file: /package.json Path to vulnerable library: /package.json Dependency Hierarchy: -> express-4.22.0.tgz (Root Library) -> ❌ qs-6.14.2.tgz (Vulnerable Library) |
5.3 | Not Defined | 0.044% | Transitive qs-6.14.2.tgz |
express-4.22.0.tgz | Transitive 6.15.2 |
None |
✔️ Remediated vulnerabilities:
| Vulnerability | Vulnerable Library |
|---|---|
| CVE-2024-45590 | body-parser-1.18.3.tgz |
| CVE-2024-43800 | serve-static-1.13.2.tgz |
| CVE-2024-43799 | send-0.16.2.tgz |
| CVE-2024-43796 | express-4.16.4.tgz |
| CVE-2024-47764 | cookie-0.3.1.tgz |
| CVE-2024-29041 | express-4.16.4.tgz |
| CVE-2024-52798 | path-to-regexp-0.1.7.tgz |
| CVE-2024-45296 | path-to-regexp-0.1.7.tgz |
| CVE-2026-4867 | path-to-regexp-0.1.7.tgz |
Base branch total remaining vulnerabilities: 24
Base branch commit: 627eebc4eb5f37cdfcf3d44707bfd7c244d9ab68
Total libraries scanned: 132
Scan token: 4484eab42a2a4e2886fd4cee8ca50b6f
Loading