Dependency-Check is an open source tool performing a best effort analysis of 3rd party dependencies; false positives and false negatives may exist in the analysis performed by the tool. Use of the tool and the reporting provided constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to the analysis or its use. Any use of the tool and the reporting provided is at the user’s risk. In no event shall the copyright holder or OWASP be held liable for any damages whatsoever arising out of or in connection with the use of this tool, the analysis performed, or the resulting report.

How to read the report | Suppressing false positives | Getting Help: github issues

 Sponsor

Project: content-checker

Scan Information (show all):

Summary

Display: Showing Vulnerable Dependencies (click to show all)

DependencyVulnerability IDsPackageHighest SeverityCVE CountConfidenceEvidence Count
@cobalt-engine/get-cov:3.1.0pkg:npm/%40cobalt-engine%2Fget-cov@3.1.0 06
@ewizardjs/alias-resolver:1.1.3pkg:npm/%40ewizardjs%2Falias-resolver@1.1.3 06
@ewizardjs/content-types:2.2.0pkg:npm/%40ewizardjs%2Fcontent-types@2.2.0 06
@ewizardjs/settings-strategies:1.2.2pkg:npm/%40ewizardjs%2Fsettings-strategies@1.2.2 06
@ewizardjs/system-settings:3.16.1pkg:npm/%40ewizardjs%2Fsystem-settings@3.16.1 06
@ewizardjs/upath:3.0.0pkg:npm/%40ewizardjs%2Fupath@3.0.0 08
@nodelib/fs.scandir:2.1.5pkg:npm/%40nodelib%2Ffs.scandir@2.1.5 05
@nodelib/fs.stat:2.0.5pkg:npm/%40nodelib%2Ffs.stat@2.0.5 05
@nodelib/fs.walk:1.2.8pkg:npm/%40nodelib%2Ffs.walk@1.2.8 05
adm-zip:0.5.14cpe:2.3:a:adm-zip_project:adm-zip:0.5.14:*:*:*:*:*:*:*pkg:npm/adm-zip@0.5.14 0Highest9
at-least-node:1.0.0pkg:npm/at-least-node@1.0.0 08
block-navigation.js 00
braces:3.0.3cpe:2.3:a:braces_project:braces:3.0.3:*:*:*:*:*:*:*pkg:npm/braces@3.0.3 0Highest8
clone:2.1.2pkg:npm/clone@2.1.2 07
cobalt.js 00
dot-prop:4.2.1cpe:2.3:a:dot-prop_project:dot-prop:4.2.1:*:*:*:*:*:*:*pkg:npm/dot-prop@4.2.1 0Highest8
dot-prop:5.3.0cpe:2.3:a:dot-prop_project:dot-prop:5.3.0:*:*:*:*:*:*:*pkg:npm/dot-prop@5.3.0 0Highest8
dot-prop:6.0.1cpe:2.3:a:dot-prop_project:dot-prop:6.0.1:*:*:*:*:*:*:*pkg:npm/dot-prop@6.0.1 0Highest8
ewizardjs.js 00
fast-glob:3.3.2pkg:npm/fast-glob@3.3.2 07
fastq:1.17.1pkg:npm/fastq@1.17.1 08
fill-range:7.1.1pkg:npm/fill-range@7.1.1 08
frameworkList.js 00
fs-extra:10.1.0pkg:npm/fs-extra@10.1.0 07
fs-extra:7.0.1pkg:npm/fs-extra@7.0.1 07
fs-extra:9.1.0pkg:npm/fs-extra@9.1.0 07
fs-monkey:1.0.6pkg:npm/fs-monkey@1.0.6 05
glob-parent:5.1.2cpe:2.3:a:gulpjs:glob-parent:5.1.2:*:*:*:*:*:*:*pkg:npm/glob-parent@5.1.2 0Highest6
graceful-fs:4.2.11pkg:npm/graceful-fs@4.2.11 05
index.js 00
index.js 00
index.js 00
index.js 00
index.js 00
index.js 00
index.js 00
index.js 00
is-extglob:2.1.1pkg:npm/is-extglob@2.1.1 08
is-glob:4.0.3pkg:npm/is-glob@4.0.3 08
is-number:7.0.0pkg:npm/is-number@7.0.0 08
is-obj:1.0.1pkg:npm/is-obj@1.0.1 08
is-obj:2.0.0pkg:npm/is-obj@2.0.0 08
jest.config.js 00
jsonfile:4.0.0pkg:npm/jsonfile@4.0.0 06
jsonfile:6.1.0pkg:npm/jsonfile@6.1.0 06
lodash.merge:4.6.2pkg:npm/lodash.merge@4.6.2 07
memfs:3.5.3pkg:npm/memfs@3.5.3 05
merge2:1.4.1pkg:npm/merge2@1.4.1 06
micromatch:4.0.7pkg:npm/micromatch@4.0.7MEDIUM18
picomatch:2.3.1pkg:npm/picomatch@2.3.1 08
prettify.js 00
queue-microtask:1.2.3pkg:npm/queue-microtask@1.2.3 010
ramda:0.29.1cpe:2.3:a:ramdajs:ramda:0.29.1:*:*:*:*:*:*:*pkg:npm/ramda@0.29.1 0Highest7
reusify:1.0.4pkg:npm/reusify@1.0.4 08
run-parallel:1.2.0pkg:npm/run-parallel@1.2.0 010
semver-utils:1.1.4pkg:npm/semver-utils@1.1.4 07
semver:5.7.2pkg:npm/semver@5.7.2 06
semver:7.6.2pkg:npm/semver@7.6.2 06
sorter.js 00
strategiesContentResolver.js 00
strategiesList.js 00
strategiesVersionResolver.js 00
to-regex-range:5.0.1pkg:npm/to-regex-range@5.0.1 08
universalify:0.1.2pkg:npm/universalify@0.1.2 08
universalify:2.0.1pkg:npm/universalify@2.0.1 08

Dependencies (vulnerable)

@cobalt-engine/get-cov:3.1.0

License:

ISC
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/@cobalt-engine/get-cov:3.1.0

Referenced In Project/Scope: @ewizardjs/content-checker:2.5.2

Identifiers

@ewizardjs/alias-resolver:1.1.3

License:

ISC
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/@ewizardjs/system-settings:3.16.1/@ewizardjs/alias-resolver:^1.1.3

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/@ewizardjs/system-settings:3.16.1
  • @ewizardjs/content-checker:2.5.2

Identifiers

@ewizardjs/content-types:2.2.0

License:

ISC
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/@ewizardjs/system-settings:3.16.1/@ewizardjs/content-types:^2.2.0

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/@ewizardjs/system-settings:3.16.1
  • @ewizardjs/content-checker:2.5.2

Identifiers

@ewizardjs/settings-strategies:1.2.2

License:

ISC
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/@ewizardjs/system-settings:3.16.1/@ewizardjs/settings-strategies:^1.2.2

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/@ewizardjs/system-settings:3.16.1
  • @ewizardjs/content-checker:2.5.2/@ewizardjs/alias-resolver:1.1.3
  • @ewizardjs/content-checker:2.5.2

Identifiers

@ewizardjs/system-settings:3.16.1

License:

ISC
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/@ewizardjs/system-settings:3.16.1

Referenced In Project/Scope: @ewizardjs/content-checker:2.5.2

Identifiers

@ewizardjs/upath:3.0.0

Description:

A proxy to `path`, replacing `\` with `/` for all results (supports UNC paths) & new methods to normalize & join keeping leading `./` and add, change, default, trim file extensions.

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/@ewizardjs/upath:3.0.0

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/@ewizardjs/settings-strategies:1.2.2
  • @ewizardjs/content-checker:2.5.2/@ewizardjs/alias-resolver:1.1.3
  • @ewizardjs/content-checker:2.5.2

Identifiers

@nodelib/fs.scandir:2.1.5

Description:

List files and directories inside the specified directory

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/@nodelib/fs.walk:1.2.8/@nodelib/fs.scandir:2.1.5

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/@nodelib/fs.walk:1.2.8
  • @ewizardjs/content-checker:2.5.2

Identifiers

@nodelib/fs.stat:2.0.5

Description:

Get the status of a file with some features

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/fast-glob:3.3.2/@nodelib/fs.stat:^2.0.2

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/@nodelib/fs.scandir:2.1.5
  • @ewizardjs/content-checker:2.5.2/fast-glob:3.3.2
  • @ewizardjs/content-checker:2.5.2

Identifiers

@nodelib/fs.walk:1.2.8

Description:

A library for efficiently walking a directory recursively

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/fast-glob:3.3.2/@nodelib/fs.walk:^1.2.3

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/fast-glob:3.3.2
  • @ewizardjs/content-checker:2.5.2

Identifiers

adm-zip:0.5.14

Description:

Javascript implementation of zip for nodejs with support for electron original-fs. Allows user to create or extract zip files both in memory or to/from disk

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/adm-zip:0.5.14

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/@ewizardjs/settings-strategies:1.2.2
  • @ewizardjs/content-checker:2.5.2

Identifiers

at-least-node:1.0.0

Description:

Lightweight Node.js version sniffing/comparison

License:

ISC
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/fs-extra:9.1.0/at-least-node:^1.0.0

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/fs-extra:9.1.0
  • @ewizardjs/content-checker:2.5.2

Identifiers

block-navigation.js

File Path: /builds/ewizardjs/core/content-checker/coverage/lcov-report/block-navigation.js
MD5: e3e16775ec854aa3ef7fadd09056943c
SHA1: 69af2888cce71c61a74d192934903ff87150d2d5
SHA256:9275634520385cbcd50c754309a719755c1adb4f61a1dbe45f9dc09381753250

Identifiers

  • None

braces:3.0.3

Description:

Bash-like brace expansion, implemented in JavaScript. Safer than other brace expansion libs, with complete support for the Bash 4.3 braces specification, without sacrificing speed.

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/micromatch:4.0.7/braces:^3.0.3

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/micromatch:4.0.7
  • @ewizardjs/content-checker:2.5.2

Identifiers

clone:2.1.2

Description:

deep cloning of objects and arrays

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/clone:2.1.2

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/@ewizardjs/alias-resolver:1.1.3
  • @ewizardjs/content-checker:2.5.2

Identifiers

cobalt.js

File Path: /builds/ewizardjs/core/content-checker/dist/modules/frameworkInfo/cobalt.js
MD5: 169b973bdbef00d14004fe98008e0ee1
SHA1: 80e80f99106f52a7ebf372c81042a5dcbc651bf9
SHA256:e5a66aeb4060ddd3972109dae772c6528852d45023057348aba25bca569dbbb8

Identifiers

  • None

dot-prop:4.2.1

Description:

Get, set, or delete a property from a nested object using a dot path

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/dot-prop:4.2.1

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2
  • @ewizardjs/content-checker:2.5.2/@cobalt-engine/get-cov:3.1.0

Identifiers

dot-prop:5.3.0

Description:

Get, set, or delete a property from a nested object using a dot path

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/dot-prop:5.3.0

Referenced In Project/Scope: @ewizardjs/content-checker:2.5.2

Identifiers

dot-prop:6.0.1

Description:

Get, set, or delete a property from a nested object using a dot path

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/dot-prop:6.0.1

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/@ewizardjs/system-settings:3.16.1
  • @ewizardjs/content-checker:2.5.2

Identifiers

ewizardjs.js

File Path: /builds/ewizardjs/core/content-checker/dist/modules/frameworkInfo/ewizardjs.js
MD5: 4bbda0d8c36b917751d69d9430b49ba4
SHA1: 4abc72d6060e7926bfd60b87f0afea4932edb4ef
SHA256:68b9c68bf695e2a543d63e6fc0ae4e5d3a17e390199d68fcf561734dc3374320

Identifiers

  • None

fast-glob:3.3.2

Description:

It's a very fast and efficient glob library for Node.js

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/fast-glob:3.3.2

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/@ewizardjs/settings-strategies:1.2.2
  • @ewizardjs/content-checker:2.5.2/@ewizardjs/alias-resolver:1.1.3
  • @ewizardjs/content-checker:2.5.2

Identifiers

fastq:1.17.1

Description:

Fast, in memory work queue

License:

ISC
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/fastq:1.17.1

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/@nodelib/fs.walk:1.2.8
  • @ewizardjs/content-checker:2.5.2

Identifiers

fill-range:7.1.1

Description:

Fill in a range of numbers or letters, optionally passing an increment or `step` to use, or create a regex-compatible range with `options.toRegex`

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/fill-range:7.1.1

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2
  • @ewizardjs/content-checker:2.5.2/braces:3.0.3

Identifiers

frameworkList.js

File Path: /builds/ewizardjs/core/content-checker/dist/enums/frameworkList.js
MD5: 53150e90da83c859f6c510dca7df2ee6
SHA1: c4c78bba6a3ed317f63429599b63e005cbe1bd95
SHA256:8bef002e111ee89575879c7dcc285d886c93cb2aac0d2c8b7f7d28a8ca1162a5

Identifiers

  • None

fs-extra:10.1.0

Description:

fs-extra contains methods that aren't included in the vanilla Node.js fs package. Such as recursive mkdir, copy, and remove.

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/fs-extra:10.1.0

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/@ewizardjs/settings-strategies:1.2.2
  • @ewizardjs/content-checker:2.5.2

Identifiers

fs-extra:7.0.1

Description:

fs-extra contains methods that aren't included in the vanilla Node.js fs package. Such as mkdir -p, cp -r, and rm -rf.

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/fs-extra:7.0.1

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2
  • @ewizardjs/content-checker:2.5.2/@cobalt-engine/get-cov:3.1.0

Identifiers

fs-extra:9.1.0

Description:

fs-extra contains methods that aren't included in the vanilla Node.js fs package. Such as recursive mkdir, copy, and remove.

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/fs-extra:9.1.0

Referenced In Project/Scope: @ewizardjs/content-checker:2.5.2

Identifiers

fs-monkey:1.0.6

Description:

Monkey patches for file system related things.

License:

Unlicense
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/memfs:3.5.3/fs-monkey:^1.0.4

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/memfs:3.5.3
  • @ewizardjs/content-checker:2.5.2

Identifiers

glob-parent:5.1.2

Description:

Extract the non-magic parent path from a glob string.

License:

ISC
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/glob-parent:5.1.2

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/fast-glob:3.3.2
  • @ewizardjs/content-checker:2.5.2

Identifiers

graceful-fs:4.2.11

Description:

A drop-in replacement for fs, making various improvements.

License:

ISC
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/graceful-fs:4.2.11

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/fs-extra:10.1.0
  • @ewizardjs/content-checker:2.5.2/fs-extra:9.1.0
  • @ewizardjs/content-checker:2.5.2/fs-extra:7.0.1
  • @ewizardjs/content-checker:2.5.2

Identifiers

index.js

File Path: /builds/ewizardjs/core/content-checker/dist/index.js
MD5: cf6d21bd7c7a62be52e72bfb4bb20fb0
SHA1: 36c4026edf35c1d7fb7cca5d89b43711f58c9e12
SHA256:ec0d04c874f68c4b95346905d057b0fb9536d672de1097a3675b7b18ced68ae1

Identifiers

  • None

index.js

File Path: /builds/ewizardjs/core/content-checker/dist/interfaces/index.js
MD5: 44f563df0ac933d2621ef2a305a1acdc
SHA1: 8bc44dc4f3b2a694bc0a63b5e9bc7416a3e9d81d
SHA256:fc9c6096246805c2075c83ab1b96082eda2fc98c240a2502caa82f1966096b71

Identifiers

  • None

index.js

File Path: /builds/ewizardjs/core/content-checker/dist/modules/EditorError/index.js
MD5: 0534aee4abf91fc89479d8cba794ce84
SHA1: 6cdedb5b98f57d92e1e7846531775360845a2780
SHA256:7e0d369cd73d7e570bb3ba42daac9cd800a9a5348e54b77c6d4979723f7013a6

Identifiers

  • None

index.js

File Path: /builds/ewizardjs/core/content-checker/dist/modules/frameworkInfo/index.js
MD5: f0f557c49024cad1342b5a7570cf38e2
SHA1: fb044831f3068a1cc62d34b2e68ccef68ae951a8
SHA256:dd1a4472d46bff50b870031b11372b55410b166003b2e57666a538a81872b4b1

Identifiers

  • None

index.js

File Path: /builds/ewizardjs/core/content-checker/dist/modules/strategiesResolver/index.js
MD5: f72fa51b821af7a12214b3673e3094db
SHA1: a67e7b55e41c158ee1fd7f2e518ae04072df3989
SHA256:008f8577f4dfa59a103f0852c9412dec65053a4d4b2b1c245e20f08c85f84acf

Identifiers

  • None

index.js

File Path: /builds/ewizardjs/core/content-checker/dist/modules/system-settings/index.js
MD5: 2dcc3d9b21358a17bf9ffb02447f1c32
SHA1: 107bf9beb259a9e8d86c9edf283ba0488ed497bf
SHA256:bbbd7e45c2038306b492eba59eeb27b300cafbb08b52023bf1a0133654c81a68

Identifiers

  • None

index.js

File Path: /builds/ewizardjs/core/content-checker/dist/modules/validateContentType/index.js
MD5: db6e42082eb8d7c3b69cb3dd536a1e43
SHA1: d4ed3d7d4aa9de7c2f0fcbf095a05579e129bc19
SHA256:3e4ab67969d047f2ef23a547b53cdb62d1bcbcb56824c7715b2eb11278890c75

Identifiers

  • None

index.js

File Path: /builds/ewizardjs/core/content-checker/dist/utils/index.js
MD5: 1d1ed6134870b7327065cd50261c4f00
SHA1: edf6b7c99d61fbceb4b6ee24dcba51b75621388f
SHA256:16b652e8a061328acb98c138b3ed857eaaa14aa4832e1677cf5e9b3e7bce73c0

Identifiers

  • None

is-extglob:2.1.1

Description:

Returns true if a string has an extglob.

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/is-glob:4.0.3/is-extglob:^2.1.1

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/is-glob:4.0.3
  • @ewizardjs/content-checker:2.5.2

Identifiers

is-glob:4.0.3

Description:

Returns `true` if the given string looks like a glob pattern or an extglob pattern. This makes it easy to create code that only uses external modules like node-glob when necessary, resulting in much faster code execution and initialization time, and a better user experience.

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/is-glob:4.0.3

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/glob-parent:5.1.2
  • @ewizardjs/content-checker:2.5.2

Identifiers

is-number:7.0.0

Description:

Returns true if a number or string value is a finite number. Useful for regex matches, parsing, user input, etc.

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/to-regex-range:5.0.1/is-number:^7.0.0

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/to-regex-range:5.0.1
  • @ewizardjs/content-checker:2.5.2

Identifiers

is-obj:1.0.1

Description:

Check if a value is an object

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/is-obj:1.0.1

Referenced In Project/Scope: @ewizardjs/content-checker:2.5.2

Identifiers

is-obj:2.0.0

Description:

Check if a value is an object

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/is-obj:2.0.0

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/dot-prop:6.0.1
  • @ewizardjs/content-checker:2.5.2/dot-prop:5.3.0
  • @ewizardjs/content-checker:2.5.2/dot-prop:4.2.1
  • @ewizardjs/content-checker:2.5.2

Identifiers

jest.config.js

File Path: /builds/ewizardjs/core/content-checker/jest.config.js
MD5: 3167b5fa8993038d5655bcfd6eb33ab9
SHA1: 3260a842877fdfd2aa77157a3073800c27066923
SHA256:a398a500eb3c934b8788c151833b297a3bbf459d447fcd24a52f533c60ca7cf2

Identifiers

  • None

jsonfile:4.0.0

Description:

Easily read/write JSON files.

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/jsonfile:4.0.0

Referenced In Project/Scope: @ewizardjs/content-checker:2.5.2

Identifiers

jsonfile:6.1.0

Description:

Easily read/write JSON files.

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/jsonfile:6.1.0

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/fs-extra:10.1.0
  • @ewizardjs/content-checker:2.5.2/fs-extra:9.1.0
  • @ewizardjs/content-checker:2.5.2/fs-extra:7.0.1
  • @ewizardjs/content-checker:2.5.2

Identifiers

lodash.merge:4.6.2

Description:

The Lodash method `_.merge` exported as a module.

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/lodash.merge:4.6.2

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/@ewizardjs/system-settings:3.16.1
  • @ewizardjs/content-checker:2.5.2

Identifiers

memfs:3.5.3

Description:

In-memory file-system with Node's fs API.

License:

Unlicense
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/memfs:3.5.3

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/@ewizardjs/alias-resolver:1.1.3
  • @ewizardjs/content-checker:2.5.2

Identifiers

merge2:1.4.1

Description:

Merge multiple streams into one stream in sequence or parallel.

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/merge2:1.4.1

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/fast-glob:3.3.2
  • @ewizardjs/content-checker:2.5.2

Identifiers

micromatch:4.0.7

Description:

Glob matching for javascript/node.js. A replacement and faster alternative to minimatch and multimatch.

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/micromatch:4.0.7

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/fast-glob:3.3.2
  • @ewizardjs/content-checker:2.5.2

Identifiers

CVE-2024-4067 (OSSINDEX)  

The NPM package `micromatch` is vulnerable to Regular Expression Denial of Service (ReDoS). The vulnerability occurs in `micromatch.braces()` in `index.js` because the pattern `.*` will greedily match anything. By passing a malicious payload, the pattern matching will keep backtracking to the input while it doesn't find the closing bracket. As the input size increases, the consumption time will also increase until it causes the application to hang or slow down. There was a merged fix but further testing shows the issue persists. This issue should be mitigated by using a safe pattern that won't start backtracking the regular expression due to greedy matching.
CWE-1333 Inefficient Regular Expression Complexity

CVSSv3:
  • Base Score: MEDIUM (5.300000190734863)
  • Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

References:

Vulnerable Software & Versions (OSSINDEX):

  • cpe:2.3:a:*:micromatch:4.0.7:*:*:*:*:*:*:*

picomatch:2.3.1

Description:

Blazing fast and accurate glob matcher written in JavaScript, with no dependencies and full support for standard and extended Bash glob features, including braces, extglobs, POSIX brackets, and regular expressions.

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/picomatch:2.3.1

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/micromatch:4.0.7
  • @ewizardjs/content-checker:2.5.2

Identifiers

prettify.js

File Path: /builds/ewizardjs/core/content-checker/coverage/lcov-report/prettify.js
MD5: 6051903a2f7363ee232a01bd32f60b6a
SHA1: c5da667a2551890ac47513d4f160f478d2f565f0
SHA256:fa1b1e1b906ddcfa08b46f161c0f924f506e1a31b4f3e09b8caaa2463ef52c18

Identifiers

  • None

queue-microtask:1.2.3

Description:

fast, tiny `queueMicrotask` shim for modern engines

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/run-parallel:1.2.0/queue-microtask:^1.2.2

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/run-parallel:1.2.0
  • @ewizardjs/content-checker:2.5.2

Identifiers

ramda:0.29.1

Description:

A practical functional library for JavaScript programmers.

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/ramda:0.29.1

Referenced In Project/Scope: @ewizardjs/content-checker:2.5.2

Identifiers

reusify:1.0.4

Description:

Reuse objects and functions with style

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/reusify:1.0.4

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/fastq:1.17.1
  • @ewizardjs/content-checker:2.5.2

Identifiers

run-parallel:1.2.0

Description:

Run an array of functions in parallel

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/run-parallel:1.2.0

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/@nodelib/fs.scandir:2.1.5
  • @ewizardjs/content-checker:2.5.2

Identifiers

semver-utils:1.1.4

Description:

Tools for manipulating semver strings and objects

License:

APACHEv2
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/semver-utils:1.1.4

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2
  • @ewizardjs/content-checker:2.5.2/@cobalt-engine/get-cov:3.1.0

Identifiers

semver:5.7.2

Description:

The semantic version parser used by npm.

License:

ISC
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/semver:5.7.2

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2
  • @ewizardjs/content-checker:2.5.2/@cobalt-engine/get-cov:3.1.0

Identifiers

semver:7.6.2

Description:

The semantic version parser used by npm.

License:

ISC
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/semver:7.6.2

Referenced In Project/Scope: @ewizardjs/content-checker:2.5.2

Identifiers

sorter.js

File Path: /builds/ewizardjs/core/content-checker/coverage/lcov-report/sorter.js
MD5: 24cab317b3dc4f1852a276d6152ac6fe
SHA1: 4417af4be8267ab1522e1a6551bb52193b919511
SHA256:bf39f120c5542c3a6e2c5ae8473bbb5083abf97fecb4edbab94b56abc2fd04eb

Identifiers

  • None

strategiesContentResolver.js

File Path: /builds/ewizardjs/core/content-checker/dist/modules/strategiesResolver/strategiesContentResolver.js
MD5: f5f6bb7a4edea7ef4d892131217c084a
SHA1: 3799d16498aea687d44bd7d17e8e0f93879d45d1
SHA256:133f5199c8605bdcb8f0483969aa0a5f8f83b28a7318b7ec487cd8659cf96634

Identifiers

  • None

strategiesList.js

File Path: /builds/ewizardjs/core/content-checker/dist/enums/strategiesList.js
MD5: 2f659bd9b35dd1ffa01b18668bef5ec0
SHA1: 7a6906cfcc2506bb271e7fc5bebfe573e01a6f4c
SHA256:22f25a4e4b1ad087ff3f4fcc174a03f079522777995e18070b9787239e3c1f7f

Identifiers

  • None

strategiesVersionResolver.js

File Path: /builds/ewizardjs/core/content-checker/dist/modules/strategiesResolver/strategiesVersionResolver.js
MD5: c845d5e5834055ca9c673e8f7e46e353
SHA1: b86e0c07848c33ad65e07d35f6e4208675406611
SHA256:7be1d96cdb96218f9dcb42da61619a1e9901072e3e792fd806920cf857e166e8

Identifiers

  • None

to-regex-range:5.0.1

Description:

Pass two numbers, get a regex-compatible source string for matching ranges. Validated against more than 2.78 million test assertions.

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/to-regex-range:5.0.1

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/fill-range:7.1.1
  • @ewizardjs/content-checker:2.5.2

Identifiers

universalify:0.1.2

Description:

Make a callback- or promise-based function support both promises and callbacks.

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/universalify:0.1.2

Referenced In Project/Scope: @ewizardjs/content-checker:2.5.2

Identifiers

universalify:2.0.1

Description:

Make a callback- or promise-based function support both promises and callbacks.

License:

MIT
File Path: /builds/ewizardjs/core/content-checker/package-lock.json?content-checker:2.5.2/universalify:2.0.1

Referenced In Projects/Scopes:
  • @ewizardjs/content-checker:2.5.2/jsonfile:6.1.0
  • @ewizardjs/content-checker:2.5.2/fs-extra:10.1.0
  • @ewizardjs/content-checker:2.5.2/fs-extra:9.1.0
  • @ewizardjs/content-checker:2.5.2/fs-extra:7.0.1
  • @ewizardjs/content-checker:2.5.2

Identifiers



This report contains data retrieved from the National Vulnerability Database.
This report may contain data retrieved from the CISA Known Exploited Vulnerability Catalog.
This report may contain data retrieved from the Github Advisory Database (via NPM Audit API).
This report may contain data retrieved from RetireJS.
This report may contain data retrieved from the Sonatype OSS Index.