Skip to content

fix(deps): update dependency autoprefixer to v10.4.27

b099f0d
Select commit
Loading
Failed to load commit list.
Open

fix(deps): update dependency autoprefixer to v10.4.27 #44

fix(deps): update dependency autoprefixer to v10.4.27
b099f0d
Select commit
Loading
Failed to load commit list.
Mend Bolt for GitHub / Mend Security Check failed Feb 25, 2026 in 10m 41s

Security Report

33 new vulnerabilities were introduced in this branch.

❌ New vulnerabilities:

Vulnerability Severity CVSS Score Vulnerable Library Direct Library Suggested Fix Issue
CVE-2025-29927

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/next/package.json

Dependency Hierarchy:

-> ❌ next-13.4.3.tgz (Vulnerable Library)

Critical 9.1 Direct next-13.4.3.tgz next-13.4.3.tgz 13.5.9 None
CVE-2026-26996

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/minimatch/package.json

Dependency Hierarchy:

-> eslint-config-next-13.4.2.tgz (Root Library)

   -> eslint-plugin-next-13.4.2.tgz

     -> glob-7.1.7.tgz

       -> ❌ minimatch-3.1.2.tgz (Vulnerable Library)

High 7.5 Transitive minimatch-3.1.2.tgz eslint-config-next-13.4.2.tgz Transitive 10.2.1 None
CVE-2026-26996

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/sucrase/node_modules/minimatch/package.json

Dependency Hierarchy:

-> tailwindcss-3.3.2.tgz (Root Library)

   -> sucrase-3.35.0.tgz

     -> glob-10.4.2.tgz

       -> ❌ minimatch-9.0.5.tgz (Vulnerable Library)

High 7.5 Transitive minimatch-9.0.5.tgz tailwindcss-3.3.2.tgz Transitive 10.2.1 None
CVE-2026-26996

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/minimatch/package.json

Dependency Hierarchy:

-> eslint-8.40.0.tgz (Root Library)

   -> ❌ minimatch-3.1.2.tgz (Vulnerable Library)

High 7.5 Transitive minimatch-3.1.2.tgz eslint-8.40.0.tgz Transitive 10.2.1 None
CVE-2025-64756

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/sucrase/node_modules/glob/package.json

Dependency Hierarchy:

-> tailwindcss-3.3.2.tgz (Root Library)

   -> sucrase-3.35.0.tgz

     -> ❌ glob-10.4.2.tgz (Vulnerable Library)

High 7.5 Transitive glob-10.4.2.tgz tailwindcss-3.3.2.tgz Transitive 10.5.0 None
CVE-2024-51479

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/next/package.json

Dependency Hierarchy:

-> ❌ next-13.4.3.tgz (Vulnerable Library)

High 7.5 Direct next-13.4.3.tgz next-13.4.3.tgz 13.5.8 None
CVE-2024-39693

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/next/package.json

Dependency Hierarchy:

-> ❌ next-13.4.3.tgz (Vulnerable Library)

High 7.5 Direct next-13.4.3.tgz next-13.4.3.tgz 13.5.0 None
CVE-2024-34351

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/next/package.json

Dependency Hierarchy:

-> ❌ next-13.4.3.tgz (Vulnerable Library)

High 7.5 Direct next-13.4.3.tgz next-13.4.3.tgz 13.5.7 None
CVE-2024-34350

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/next/package.json

Dependency Hierarchy:

-> ❌ next-13.4.3.tgz (Vulnerable Library)

High 7.5 Direct next-13.4.3.tgz next-13.4.3.tgz 13.5.1-canary.0 None
CVE-2024-21538

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/cross-spawn/package.json

Dependency Hierarchy:

-> tailwindcss-3.3.2.tgz (Root Library)

   -> sucrase-3.35.0.tgz

     -> glob-10.4.2.tgz

       -> foreground-child-3.2.1.tgz

         -> ❌ cross-spawn-7.0.3.tgz (Vulnerable Library)

High 7.5 Transitive cross-spawn-7.0.3.tgz tailwindcss-3.3.2.tgz Transitive 7.0.5 None
CVE-2024-21538

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/cross-spawn/package.json

Dependency Hierarchy:

-> eslint-8.40.0.tgz (Root Library)

   -> ❌ cross-spawn-7.0.3.tgz (Vulnerable Library)

High 7.5 Transitive cross-spawn-7.0.3.tgz eslint-8.40.0.tgz Transitive 7.0.5 None
CVE-2023-4316

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/zod/package.json

Dependency Hierarchy:

-> next-13.4.3.tgz (Root Library)

   -> ❌ zod-3.21.4.tgz (Vulnerable Library)

High 7.5 Transitive zod-3.21.4.tgz next-13.4.3.tgz Transitive zod - 3.22.3 None
CVE-2025-13465

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/lodash/package.json

Dependency Hierarchy:

-> concurrently-8.2.2.tgz (Root Library)

   -> ❌ lodash-4.17.21.tgz (Vulnerable Library)

High 7.2 Transitive lodash-4.17.21.tgz concurrently-8.2.2.tgz Transitive lodash-amd - 4.17.23,lodash - 4.17.23,lodash-es - 4.17.23 None
CVE-2025-57822

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/next/package.json

Dependency Hierarchy:

-> ❌ next-13.4.3.tgz (Vulnerable Library)

Medium 6.5 Direct next-13.4.3.tgz next-13.4.3.tgz 14.2.32 None
CVE-2025-57752

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/next/package.json

Dependency Hierarchy:

-> ❌ next-13.4.3.tgz (Vulnerable Library)

Medium 6.2 Direct next-13.4.3.tgz next-13.4.3.tgz 14.2.31 None
CVE-2025-27789

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/@babel/runtime/package.json

Dependency Hierarchy:

-> concurrently-8.2.2.tgz (Root Library)

   -> date-fns-2.30.0.tgz

     -> ❌ runtime-7.24.7.tgz (Vulnerable Library)

Medium 6.2 Transitive runtime-7.24.7.tgz concurrently-8.2.2.tgz Transitive 7.26.10 None
CVE-2025-59471

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/next/package.json

Dependency Hierarchy:

-> ❌ next-13.4.3.tgz (Vulnerable Library)

Medium 5.9 Direct next-13.4.3.tgz next-13.4.3.tgz next - 15.5.10,next - 16.1.5 None
CVE-2024-47831

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/next/package.json

Dependency Hierarchy:

-> ❌ next-13.4.3.tgz (Vulnerable Library)

Medium 5.9 Direct next-13.4.3.tgz next-13.4.3.tgz 13.5.8 None
CVE-2025-50537

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/eslint/package.json

Dependency Hierarchy:

-> ❌ eslint-8.40.0.tgz (Vulnerable Library)

Medium 5.5 Direct eslint-8.40.0.tgz eslint-8.40.0.tgz 9.26.0 None
CVE-2025-64718

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/js-yaml/package.json

Dependency Hierarchy:

-> eslint-8.40.0.tgz (Root Library)

   -> ❌ js-yaml-4.1.0.tgz (Vulnerable Library)

Medium 5.3 Transitive js-yaml-4.1.0.tgz eslint-8.40.0.tgz Transitive js-yaml - 4.1.1,js-yaml - 3.14.2 None
CVE-2024-56332

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/next/package.json

Dependency Hierarchy:

-> ❌ next-13.4.3.tgz (Vulnerable Library)

Medium 5.3 Direct next-13.4.3.tgz next-13.4.3.tgz 13.5.7-canary.9 None
CVE-2024-4067

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/micromatch/package.json

Dependency Hierarchy:

-> tailwindcss-3.3.2.tgz (Root Library)

   -> ❌ micromatch-4.0.7.tgz (Vulnerable Library)

Medium 5.3 Transitive micromatch-4.0.7.tgz tailwindcss-3.3.2.tgz Transitive 4.0.8 None
CVE-2023-44270

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/postcss/package.json

Dependency Hierarchy:

-> ❌ postcss-8.4.23.tgz (Vulnerable Library)

Medium 5.3 Direct postcss-8.4.23.tgz postcss-8.4.23.tgz 8.4.31 None
CVE-2023-44270

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/next/node_modules/postcss/package.json

Dependency Hierarchy:

-> next-13.4.3.tgz (Root Library)

   -> ❌ postcss-8.4.14.tgz (Vulnerable Library)

Medium 5.3 Transitive postcss-8.4.14.tgz next-13.4.3.tgz Transitive 8.4.31 None
CVE-2026-27205

Path to dependency file: /requirements.txt

Path to vulnerable library: /tmp/ws-ua_20260225214055_CWRGZF/python_HRYLYL/202602252141071/env/lib/python3.9/site-packages/flask-3.0.3.dist-info

Dependency Hierarchy:

-> ❌ flask-3.0.3-py3-none-any.whl (Vulnerable Library)

Medium 4.3 Direct flask-3.0.3-py3-none-any.whl flask-3.0.3-py3-none-any.whl https://github.com/pallets/flask.git - 3.1.3 None
CVE-2025-55173

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/next/package.json

Dependency Hierarchy:

-> ❌ next-13.4.3.tgz (Vulnerable Library)

Medium 4.3 Direct next-13.4.3.tgz next-13.4.3.tgz 14.2.31 None
CVE-2025-48068

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/next/package.json

Dependency Hierarchy:

-> ❌ next-13.4.3.tgz (Vulnerable Library)

Medium 4.3 Direct next-13.4.3.tgz next-13.4.3.tgz 14.2.30 None
CVE-2024-55565

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/nanoid/package.json

Dependency Hierarchy:

-> postcss-8.4.23.tgz (Root Library)

   -> ❌ nanoid-3.3.7.tgz (Vulnerable Library)

Medium 4.3 Transitive nanoid-3.3.7.tgz postcss-8.4.23.tgz Transitive 3.3.8 None
CVE-2024-55565

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/nanoid/package.json

Dependency Hierarchy:

-> next-13.4.3.tgz (Root Library)

   -> postcss-8.4.14.tgz

     -> ❌ nanoid-3.3.7.tgz (Vulnerable Library)

Medium 4.3 Transitive nanoid-3.3.7.tgz next-13.4.3.tgz Transitive 3.3.8 None
CVE-2025-32421

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/next/package.json

Dependency Hierarchy:

-> ❌ next-13.4.3.tgz (Vulnerable Library)

Low 3.7 Direct next-13.4.3.tgz next-13.4.3.tgz 14.2.24 None
CVE-2025-5889

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/sucrase/node_modules/brace-expansion/package.json

Dependency Hierarchy:

-> tailwindcss-3.3.2.tgz (Root Library)

   -> sucrase-3.35.0.tgz

     -> glob-10.4.2.tgz

       -> minimatch-9.0.5.tgz

         -> ❌ brace-expansion-2.0.1.tgz (Vulnerable Library)

Low 3.1 Transitive brace-expansion-2.0.1.tgz tailwindcss-3.3.2.tgz Transitive 2.0.2 None
CVE-2025-5889

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/brace-expansion/package.json

Dependency Hierarchy:

-> eslint-8.40.0.tgz (Root Library)

   -> minimatch-3.1.2.tgz

     -> ❌ brace-expansion-1.1.11.tgz (Vulnerable Library)

Low 3.1 Transitive brace-expansion-1.1.11.tgz eslint-8.40.0.tgz Transitive 1.1.12 None
CVE-2025-69873

Path to dependency file: /package.json

Path to vulnerable library: /node_modules/ajv/package.json

Dependency Hierarchy:

-> eslint-8.40.0.tgz (Root Library)

   -> ❌ ajv-6.12.6.tgz (Vulnerable Library)

Low 2.9 Transitive ajv-6.12.6.tgz eslint-8.40.0.tgz Transitive https://github.com/ajv-validator/ajv.git - v8.18.0,https://github.com/ajv-validator/ajv.git - v6.14.0 None

Base branch total remaining vulnerabilities: 0
Base branch commit: null


Total libraries scanned: 392

Scan token: c9708670d0cc4b1d9ec72efa29e9e966