[Snyk] Security upgrade express from 4.18.2 to 4.21.0 #12
DryRunSecurity / Sensitive Files Analyzer
succeeded
Sep 12, 2024 in 1s
DryRun Security
Details
Sensitive Files Analyzer Findings: 2 detected
⚠️ Potential Sensitive File package-lock.json (click for details)
Type | Potential Sensitive File |
Description | Node.js/ExpressJS/Next.js applications manage their dependencies through package.json and package-lock.json files. A change in these files may indicate an addition of a library/dependency which could introduce additional risk to the application either through vulnerable code, expansion of the application's attack surface via additional routes, or malicious code. |
Filename | package-lock.json |
CodeLink | k8s-custom-resource-demo/package-lock.json Lines 19 to 25 in 042f0ba |
⚠️ Potential Sensitive File package.json (click for details)
Type | Potential Sensitive File |
Description | Node.js/ExpressJS/Next.js applications manage their dependencies through package.json and package-lock.json files. A change in these files may indicate an addition of a library/dependency which could introduce additional risk to the application either through vulnerable code, expansion of the application's attack surface via additional routes, or malicious code. |
Filename | package.json |
CodeLink | k8s-custom-resource-demo/package.json Lines 25 to 31 in 042f0ba |
Loading