chore(deps): update dependency sqlparse to v0.5.0 #8
Mend for GitHub.com / Mend Security Check
failed
May 1, 2024 in 5m 37s
Security Report
You have successfully remediated 4 vulnerabilities, but introduced 1 new vulnerabilities in this branch.
❌ New vulnerabilities:
CVE | Severity | CVSS Score | Vulnerable Library | Suggested Fix | Issue |
---|---|---|---|---|---|
CVE-2024-4340Path to dependency file: /data-files/benchmarks/bm_django_template/requirements.txt Path to vulnerable library: /data-files/benchmarks/bm_django_template/requirements.txt Dependency Hierarchy: -> ❌ sqlparse-0.4.4-py3-none-any.whl (Vulnerable Library) |
High | 7.5 | sqlparse-0.4.4-py3-none-any.whl | Upgrade to version: sqlparse - 0.5.0 | None |
✔️ Remediated vulnerabilities:
CVE | Vulnerable Library |
---|---|
WS-2021-0369 | sqlparse-0.4.1-py3-none-any.whl |
CVE-2024-4340 | sqlparse-0.4.1-py3-none-any.whl |
CVE-2021-32839 | sqlparse-0.4.1-py3-none-any.whl |
CVE-2023-30608 | sqlparse-0.4.1-py3-none-any.whl |
Base branch total remaining vulnerabilities: 34
Base branch commit: null
Total libraries scanned: 43
Scan token: 9d07af3b97c54f2e95fa8752da630190
Loading