Dependency-Check is an open source tool performing a best effort analysis of 3rd party dependencies; false positives and false negatives may exist in the analysis performed by the tool. Use of the tool and the reporting provided constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to the analysis or its use. Any use of the tool and the reporting provided is at the user’s risk. In no event shall the copyright holder or OWASP be held liable for any damages whatsoever arising out of or in connection with the use of this tool, the analysis performed, or the resulting report.

How to read the report | Suppressing false positives | Getting Help: github issues

 Sponsor

Project: owasp-dependency-check

Scan Information (show all):

Summary

Summary of Vulnerable Dependencies (click to show all)

DependencyVulnerability IDsPackageHighest SeverityCVE CountConfidenceEvidence Count
@colors/colors:1.6.0pkg:npm/%40colors%2Fcolors@1.6.0 08
@commander-js/extra-typings:13.1.0pkg:npm/%40commander-js%2Fextra-typings@13.1.0 08
@eslint-community/eslint-utils:4.7.0pkg:npm/%40eslint-community%2Feslint-utils@4.7.0 08
@eslint-community/regexpp:4.12.1pkg:npm/%40eslint-community%2Fregexpp@4.12.1 08
@eslint/config-array:0.20.0pkg:npm/%40eslint%2Fconfig-array@0.20.0 08
@eslint/config-helpers:0.2.2pkg:npm/%40eslint%2Fconfig-helpers@0.2.2 07
@eslint/core:0.14.0pkg:npm/%40eslint%2Fcore@0.14.0 08
@eslint/eslintrc:3.3.1pkg:npm/%40eslint%2Feslintrc@3.3.1 08
@eslint/js:9.28.0pkg:npm/%40eslint%2Fjs@9.28.0 07
@eslint/object-schema:2.1.6pkg:npm/%40eslint%2Fobject-schema@2.1.6 08
@eslint/plugin-kit:0.3.1pkg:npm/%40eslint%2Fplugin-kit@0.3.1 08
@humanfs/core:0.19.1pkg:npm/%40humanfs%2Fcore@0.19.1 08
@humanfs/node:0.16.6pkg:npm/%40humanfs%2Fnode@0.16.6 08
@humanwhocodes/module-importer:1.0.1pkg:npm/%40humanwhocodes%2Fmodule-importer@1.0.1 06
@humanwhocodes/retry:0.3.1pkg:npm/%40humanwhocodes%2Fretry@0.3.1 06
@humanwhocodes/retry:0.4.2pkg:npm/%40humanwhocodes%2Fretry@0.4.2 06
@nodelib/fs.scandir:2.1.5pkg:npm/%40nodelib%2Ffs.scandir@2.1.5 05
@nodelib/fs.stat:2.0.5pkg:npm/%40nodelib%2Ffs.stat@2.0.5 05
@nodelib/fs.walk:1.2.8pkg:npm/%40nodelib%2Ffs.walk@1.2.8 05
@oxc-resolver/binding-linux-x64-gnu:11.1.0pkg:npm/%40oxc-resolver%2Fbinding-linux-x64-gnu@11.1.0 06
@oxc-resolver/binding-linux-x64-musl:11.1.0pkg:npm/%40oxc-resolver%2Fbinding-linux-x64-musl@11.1.0 06
@pkgr/core:0.2.4pkg:npm/%40pkgr%2Fcore@0.2.4 07
@sinonjs/commons:3.0.1pkg:npm/%40sinonjs%2Fcommons@3.0.1 08
@sinonjs/fake-timers:13.0.5pkg:npm/%40sinonjs%2Ffake-timers@13.0.5 09
@sinonjs/samsam:8.0.2pkg:npm/%40sinonjs%2Fsamsam@8.0.2 07
@tsconfig/node18:18.2.4pkg:npm/%40tsconfig%2Fnode18@18.2.4 05
@types/cross-spawn:6.0.6pkg:npm/%40types%2Fcross-spawn@6.0.6 06
@types/estree:1.0.7pkg:npm/%40types%2Festree@1.0.7 06
@types/json-schema:7.0.15pkg:npm/%40types%2Fjson-schema@7.0.15 06
@types/node:24.0.0pkg:npm/%40types%2Fnode@24.0.0 06
@types/sinon:17.0.4pkg:npm/%40types%2Fsinon@17.0.4 06
@types/sinonjs__fake-timers:8.1.5pkg:npm/%40types%2Fsinonjs__fake-timers@8.1.5 06
@types/yauzl:2.10.0pkg:npm/%40types%2Fyauzl@2.10.0 06
@typescript-eslint/eslint-plugin:8.34.0pkg:npm/%40typescript-eslint%2Feslint-plugin@8.34.0 07
@typescript-eslint/parser:8.34.0pkg:npm/%40typescript-eslint%2Fparser@8.34.0 07
@typescript-eslint/project-service:8.34.0pkg:npm/%40typescript-eslint%2Fproject-service@8.34.0 07
@typescript-eslint/scope-manager:8.34.0pkg:npm/%40typescript-eslint%2Fscope-manager@8.34.0 07
@typescript-eslint/tsconfig-utils:8.34.0pkg:npm/%40typescript-eslint%2Ftsconfig-utils@8.34.0 07
@typescript-eslint/type-utils:8.34.0pkg:npm/%40typescript-eslint%2Ftype-utils@8.34.0 07
@typescript-eslint/types:8.34.0pkg:npm/%40typescript-eslint%2Ftypes@8.34.0 07
@typescript-eslint/typescript-estree:8.34.0pkg:npm/%40typescript-eslint%2Ftypescript-estree@8.34.0 07
@typescript-eslint/utils:8.34.0pkg:npm/%40typescript-eslint%2Futils@8.34.0 07
@typescript-eslint/visitor-keys:8.34.0pkg:npm/%40typescript-eslint%2Fvisitor-keys@8.34.0 07
acorn-jsx:5.3.2pkg:npm/acorn-jsx@5.3.2 09
acorn:8.14.1pkg:npm/acorn@8.14.1 014
ajv:6.12.6cpe:2.3:a:ajv.js:ajv:6.12.6:*:*:*:*:*:*:*pkg:npm/ajv@6.12.6 0Highest8
ansi-styles:4.3.0pkg:npm/ansi-styles@4.3.0 08
argparse:2.0.1pkg:npm/argparse@2.0.1 05
async:3.2.6cpe:2.3:a:async_project:async:3.2.6:*:*:*:*:*:*:*pkg:npm/async@3.2.6 0Highest8
balanced-match:1.0.2pkg:npm/balanced-match@1.0.2 09
brace-expansion:2.0.1cpe:2.3:a:brace_expansion_project:brace_expansion:2.0.1:*:*:*:*:*:*:*pkg:npm/brace-expansion@2.0.1HIGH2Highest9
braces:3.0.3cpe:2.3:a:braces_project:braces:3.0.3:*:*:*:*:*:*:*pkg:npm/braces@3.0.3 0Highest8
buffer-crc32:0.2.13pkg:npm/buffer-crc32@0.2.13 07
callsites:3.1.0pkg:npm/callsites@3.1.0 08
chalk:4.1.2pkg:npm/chalk@4.1.2 05
color-convert:2.0.1pkg:npm/color-convert@2.0.1 06
color-name:1.1.4pkg:npm/color-name@1.1.4 08
commander:13.1.0pkg:npm/commander@13.1.0 06
commander:7.2.0pkg:npm/commander@7.2.0 06
concat-map:0.0.1pkg:npm/concat-map@0.0.1 08
cross-spawn:7.0.6pkg:npm/cross-spawn@7.0.6 07
debug:4.4.0cpe:2.3:a:debug_project:debug:4.4.0:*:*:*:*:*:*:*pkg:npm/debug@4.4.0 0Highest6
deep-is:0.1.4pkg:npm/deep-is@0.1.4 08
diff:7.0.0pkg:npm/diff@7.0.0 07
ejs:3.1.10cpe:2.3:a:ejs:ejs:3.1.10:*:*:*:*:*:*:*pkg:npm/ejs@3.1.10 0Highest8
end-of-stream:1.4.4pkg:npm/end-of-stream@1.4.4 08
escape-string-regexp:4.0.0pkg:npm/escape-string-regexp@4.0.0 08
eslint-config-prettier:10.1.5pkg:npm/eslint-config-prettier@10.1.5 07
eslint-plugin-prettier:5.4.1pkg:npm/eslint-plugin-prettier@5.4.1 07
eslint-scope:8.3.0pkg:npm/eslint-scope@8.3.0 07
eslint-visitor-keys:3.4.3pkg:npm/eslint-visitor-keys@3.4.3 08
eslint-visitor-keys:4.2.0pkg:npm/eslint-visitor-keys@4.2.0 08
eslint:9.28.0pkg:npm/eslint@9.28.0 08
espree:10.3.0pkg:npm/espree@10.3.0 08
esquery:1.6.0pkg:npm/esquery@1.6.0 08
esrecurse:4.3.0pkg:npm/esrecurse@4.3.0 09
estraverse:5.3.0pkg:npm/estraverse@5.3.0 09
esutils:2.0.3pkg:npm/esutils@2.0.3 09
extract-zip:2.0.1pkg:npm/extract-zip@2.0.1 06
fast-deep-equal:3.1.3pkg:npm/fast-deep-equal@3.1.3 08
fast-diff:1.3.0pkg:npm/fast-diff@1.3.0 07
fast-glob:3.3.3pkg:npm/fast-glob@3.3.3 07
fast-json-stable-stringify:2.1.0pkg:npm/fast-json-stable-stringify@2.1.0 09
fast-levenshtein:2.0.6pkg:npm/fast-levenshtein@2.0.6 06
fastq:1.19.1pkg:npm/fastq@1.19.1 08
fd-package-json:2.0.0pkg:npm/fd-package-json@2.0.0 08
fd-slicer:1.1.0pkg:npm/fd-slicer@1.1.0 07
file-entry-cache:8.0.0pkg:npm/file-entry-cache@8.0.0 07
filelist:1.0.4pkg:npm/filelist@1.0.4 08
fill-range:7.1.1pkg:npm/fill-range@7.1.1 08
find-package:1.0.0pkg:npm/find-package@1.0.0 08
find-up:5.0.0pkg:npm/find-up@5.0.0 08
flat-cache:4.0.1pkg:npm/flat-cache@4.0.1 07
flatted:3.3.3pkg:npm/flatted@3.3.3 08
formatly:0.2.4pkg:npm/formatly@0.2.4 07
genversion:3.2.0pkg:npm/genversion@3.2.0 08
get-stream:5.2.0pkg:npm/get-stream@5.2.0 08
glob-parent:5.1.2cpe:2.3:a:gulpjs:glob-parent:5.1.2:*:*:*:*:*:*:*pkg:npm/glob-parent@5.1.2 0Highest6
glob-parent:6.0.2cpe:2.3:a:gulpjs:glob-parent:6.0.2:*:*:*:*:*:*:*pkg:npm/glob-parent@6.0.2 0Highest6
globals:14.0.0pkg:npm/globals@14.0.0 08
graphemer:1.4.0pkg:npm/graphemer@1.4.0 08
has-flag:4.0.0pkg:npm/has-flag@4.0.0 08
ignore:5.3.2pkg:npm/ignore@5.3.2 07
ignore:7.0.5pkg:npm/ignore@7.0.5 07
import-fresh:3.3.1pkg:npm/import-fresh@3.3.1 08
imurmurhash:0.1.4pkg:npm/imurmurhash@0.1.4 010
is-extglob:2.1.1pkg:npm/is-extglob@2.1.1 08
is-glob:4.0.3pkg:npm/is-glob@4.0.3 08
is-number:7.0.0pkg:npm/is-number@7.0.0 08
isexe:2.0.0pkg:npm/isexe@2.0.0 08
jake:10.9.2pkg:npm/jake@10.9.2 06
jiti:2.4.2pkg:npm/jiti@2.4.2 05
js-yaml:4.1.0cpe:2.3:a:js-yaml_project:js-yaml:4.1.0:*:*:*:*:*:*:*pkg:npm/js-yaml@4.1.0 0Highest6
json-buffer:3.0.1pkg:npm/json-buffer@3.0.1 07
json-schema-traverse:0.4.1pkg:npm/json-schema-traverse@0.4.1 08
json-stable-stringify-without-jsonify:1.0.1pkg:npm/json-stable-stringify-without-jsonify@1.0.1 09
keyv:4.5.4pkg:npm/keyv@4.5.4 08
knip:5.60.2pkg:npm/knip@5.60.2 09
levn:0.4.1pkg:npm/levn@0.4.1 08
locate-path:6.0.0pkg:npm/locate-path@6.0.0 010
lodash.get:4.4.2pkg:npm/lodash.get@4.4.2 07
lodash.merge:4.6.2pkg:npm/lodash.merge@4.6.2 07
merge2:1.4.1pkg:npm/merge2@1.4.1 06
micromatch:4.0.8pkg:npm/micromatch@4.0.8 08
minimatch:3.1.2cpe:2.3:a:minimatch_project:minimatch:3.1.2:*:*:*:*:*:*:*pkg:npm/minimatch@3.1.2 0Highest6
minimatch:5.1.6cpe:2.3:a:minimatch_project:minimatch:5.1.6:*:*:*:*:*:*:*pkg:npm/minimatch@5.1.6 0Highest6
minimatch:9.0.5cpe:2.3:a:minimatch_project:minimatch:9.0.5:*:*:*:*:*:*:*pkg:npm/minimatch@9.0.5 0Highest6
minimist:1.2.8cpe:2.3:a:substack:minimist:1.2.8:*:*:*:*:*:*:*pkg:npm/minimist@1.2.8 0Highest9
ms:2.1.3pkg:npm/ms@2.1.3 05
natural-compare:1.4.0pkg:npm/natural-compare@1.4.0 07
once:1.4.0pkg:npm/once@1.4.0 06
optionator:0.9.4pkg:npm/optionator@0.9.4 08
oxc-resolver:11.1.0pkg:npm/oxc-resolver@11.1.0 06
p-limit:3.1.0pkg:npm/p-limit@3.1.0 08
p-locate:5.0.0pkg:npm/p-locate@5.0.0 010
parent-module:1.0.1pkg:npm/parent-module@1.0.1 08
parents:1.0.1pkg:npm/parents@1.0.1 09
path-exists:4.0.0pkg:npm/path-exists@4.0.0 08
path-key:3.1.1pkg:npm/path-key@3.1.1 08
path-platform:0.11.15pkg:npm/path-platform@0.11.15 08
pend:1.2.0pkg:npm/pend@1.2.0 07
picocolors:1.1.1pkg:npm/picocolors@1.1.1 06
picomatch:2.3.1pkg:npm/picomatch@2.3.1 08
picomatch:4.0.2pkg:npm/picomatch@4.0.2 08
prelude-ls:1.2.1pkg:npm/prelude-ls@1.2.1 08
prettier-linter-helpers:1.0.0pkg:npm/prettier-linter-helpers@1.0.0 07
prettier:3.5.3pkg:npm/prettier@3.5.3 07
pump:3.0.0pkg:npm/pump@3.0.0 06
punycode:2.3.1pkg:npm/punycode@2.3.1 09
purify-ts:2.1.0pkg:npm/purify-ts@2.1.0 06
queue-microtask:1.2.3pkg:npm/queue-microtask@1.2.3 010
resolve-from:4.0.0pkg:npm/resolve-from@4.0.0 08
reusify:1.1.0pkg:npm/reusify@1.1.0 08
run-parallel:1.2.0pkg:npm/run-parallel@1.2.0 010
semver:7.7.2pkg:npm/semver@7.7.2 06
shebang-command:2.0.0pkg:npm/shebang-command@2.0.0 08
shebang-regex:3.0.0pkg:npm/shebang-regex@3.0.0 08
sinon:20.0.0pkg:npm/sinon@20.0.0 08
smol-toml:1.3.4pkg:npm/smol-toml@1.3.4 07
strip-json-comments:3.1.1pkg:npm/strip-json-comments@3.1.1 08
strip-json-comments:5.0.2pkg:npm/strip-json-comments@5.0.2 08
supports-color:7.2.0pkg:npm/supports-color@7.2.0 08
synckit:0.11.8pkg:npm/synckit@0.11.8 06
to-regex-range:5.0.1pkg:npm/to-regex-range@5.0.1 08
ts-api-utils:2.1.0pkg:npm/ts-api-utils@2.1.0 07
type-check:0.4.0pkg:npm/type-check@0.4.0 08
type-detect:4.0.8pkg:npm/type-detect@4.0.8 06
type-detect:4.1.0pkg:npm/type-detect@4.1.0 06
typescript-eslint:8.34.0pkg:npm/typescript-eslint@8.34.0 07
typescript:5.8.3cpe:2.3:a:microsoft:typescript:5.8.3:*:*:*:*:*:*:*pkg:npm/typescript@5.8.3 0Highest8
undici-types:7.8.0pkg:npm/undici-types@7.8.0 07
undici:7.10.0cpe:2.3:a:nodejs:undici:7.10.0:*:*:*:*:*:*:*pkg:npm/undici@7.10.0 0Highest7
uri-js:4.4.1cpe:2.3:a:garycourt:uri-js:4.4.1:*:*:*:*:*:*:*
cpe:2.3:a:uri.js_project:uri.js:4.4.1:*:*:*:*:*:*:*
pkg:npm/uri-js@4.4.1 0Highest8
walk-up-path:4.0.0pkg:npm/walk-up-path@4.0.0 06
which:2.0.2pkg:npm/which@2.0.2 06
word-wrap:1.2.5cpe:2.3:a:word-wrap_project:word-wrap:1.2.5:*:*:*:*:*:*:*pkg:npm/word-wrap@1.2.5 0Highest8
wrappy:1.0.2pkg:npm/wrappy@1.0.2 08
yauzl:2.10.0pkg:npm/yauzl@2.10.0 08
yocto-queue:0.1.0pkg:npm/yocto-queue@0.1.0 08
zod-validation-error:3.4.1pkg:npm/zod-validation-error@3.4.1 08
zod:3.24.4cpe:2.3:a:zod:zod:3.24.4:*:*:*:*:*:*:*pkg:npm/zod@3.24.4 0Highest8

Dependencies (vulnerable)

@colors/colors:1.6.0

Description:

get colors in your node.js console

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/@colors/colors:1.6.0

Referenced In Project/Scope: owasp-dependency-check:0.6.2

Identifiers

@commander-js/extra-typings:13.1.0

Description:

Infer strong typings for commander options and action handlers

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/@commander-js/extra-typings:13.1.0

Referenced In Project/Scope: owasp-dependency-check:0.6.2

Identifiers

@eslint-community/eslint-utils:4.7.0

Description:

Utilities for ESLint plugins.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?eslint:9.28.0/@eslint-community/eslint-utils:^4.2.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@typescript-eslint/utils:8.34.0
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

@eslint-community/regexpp:4.12.1

Description:

Regular expression parser for ECMAScript.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?eslint:9.28.0/@eslint-community/regexpp:^4.12.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@typescript-eslint/eslint-plugin:8.34.0
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

@eslint/config-array:0.20.0

Description:

General purpose glob-based configuration matching.

License:

Apache-2.0
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?eslint:9.28.0/@eslint/config-array:^0.20.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

@eslint/config-helpers:0.2.2

Description:

Helper utilities for creating ESLint configuration

License:

Apache-2.0
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?eslint:9.28.0/@eslint/config-helpers:^0.2.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

@eslint/core:0.14.0

Description:

Runtime-agnostic core of ESLint

License:

Apache-2.0
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?eslint:9.28.0/@eslint/core:^0.14.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@eslint/plugin-kit:0.3.1
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

@eslint/eslintrc:3.3.1

Description:

The legacy ESLintRC config file format for ESLint

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?eslint:9.28.0/@eslint/eslintrc:^3.3.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

@eslint/js:9.28.0

Description:

ESLint JavaScript language implementation

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?eslint:9.28.0/@eslint/js:9.28.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

@eslint/object-schema:2.1.6

Description:

An object schema merger/validator

License:

Apache-2.0
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/@eslint/object-schema:2.1.6

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@eslint/config-array:0.20.0
  • owasp-dependency-check:0.6.2

Identifiers

@eslint/plugin-kit:0.3.1

Description:

Utilities for building ESLint plugins.

License:

Apache-2.0
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?eslint:9.28.0/@eslint/plugin-kit:^0.3.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

@humanfs/core:0.19.1

Description:

The core of the humanfs library.

License:

Apache-2.0
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?@humanfs/node:0.16.6/@humanfs/core:^0.19.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@humanfs/node:0.16.6
  • owasp-dependency-check:0.6.2

Identifiers

@humanfs/node:0.16.6

Description:

The Node.js bindings of the humanfs library.

License:

Apache-2.0
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?eslint:9.28.0/@humanfs/node:^0.16.6

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

@humanwhocodes/module-importer:1.0.1

Description:

Universal module importer for Node.js

License:

Apache-2.0
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?eslint:9.28.0/@humanwhocodes/module-importer:^1.0.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

@humanwhocodes/retry:0.3.1

Description:

A utility to retry failed async methods.

License:

Apache-2.0
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/@humanwhocodes/retry:0.3.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@humanfs/node:0.16.6
  • owasp-dependency-check:0.6.2

Identifiers

@humanwhocodes/retry:0.4.2

Description:

A utility to retry failed async methods.

License:

Apache-2.0
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?eslint:9.28.0/@humanwhocodes/retry:^0.4.2

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

@nodelib/fs.scandir:2.1.5

Description:

List files and directories inside the specified directory

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?@nodelib/fs.walk:1.2.8/@nodelib/fs.scandir:2.1.5

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@nodelib/fs.walk:1.2.8
  • owasp-dependency-check:0.6.2

Identifiers

@nodelib/fs.stat:2.0.5

Description:

Get the status of a file with some features

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?fast-glob:3.3.3/@nodelib/fs.stat:^2.0.2

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/fast-glob:3.3.3
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/@nodelib/fs.scandir:2.1.5

Identifiers

@nodelib/fs.walk:1.2.8

Description:

A library for efficiently walking a directory recursively

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?knip:5.60.2/@nodelib/fs.walk:^1.2.3

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/fast-glob:3.3.3
  • owasp-dependency-check:0.6.2/knip:5.60.2
  • owasp-dependency-check:0.6.2

Identifiers

@oxc-resolver/binding-linux-x64-gnu:11.1.0

Description:

Oxc Resolver Node API

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/@oxc-resolver/binding-linux-x64-gnu:11.1.0

Referenced In Project/Scope: owasp-dependency-check:0.6.2

Identifiers

@oxc-resolver/binding-linux-x64-musl:11.1.0

Description:

Oxc Resolver Node API

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/@oxc-resolver/binding-linux-x64-musl:11.1.0

Referenced In Project/Scope: owasp-dependency-check:0.6.2

Identifiers

@pkgr/core:0.2.4

Description:

Shared core module for `@pkgr` packages or any package else

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?synckit:0.11.8/@pkgr/core:^0.2.4

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/synckit:0.11.8
  • owasp-dependency-check:0.6.2

Identifiers

@sinonjs/commons:3.0.1

Description:

Simple functions shared among the sinon end user libraries

License:

BSD-3-Clause
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?sinon:20.0.0/@sinonjs/commons:^3.0.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/sinon:20.0.0
  • owasp-dependency-check:0.6.2/@sinonjs/fake-timers:13.0.5
  • owasp-dependency-check:0.6.2/@sinonjs/samsam:8.0.2
  • owasp-dependency-check:0.6.2

Identifiers

@sinonjs/fake-timers:13.0.5

Description:

Fake JavaScript timers

License:

BSD-3-Clause
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?sinon:20.0.0/@sinonjs/fake-timers:^13.0.5

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/sinon:20.0.0
  • owasp-dependency-check:0.6.2

Identifiers

@sinonjs/samsam:8.0.2

Description:

Value identification and comparison functions

License:

BSD-3-Clause
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?sinon:20.0.0/@sinonjs/samsam:^8.0.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/sinon:20.0.0
  • owasp-dependency-check:0.6.2

Identifiers

@tsconfig/node18:18.2.4

Description:

A base TSConfig for working with Node 18.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/@tsconfig/node18:18.2.4

Referenced In Project/Scope: owasp-dependency-check:0.6.2

Identifiers

@types/cross-spawn:6.0.6

Description:

TypeScript definitions for cross-spawn

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/@types/cross-spawn:6.0.6

Referenced In Project/Scope: owasp-dependency-check:0.6.2

Identifiers

@types/estree:1.0.7

Description:

TypeScript definitions for estree

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?eslint:9.28.0/@types/estree:^1.0.6

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

@types/json-schema:7.0.15

Description:

TypeScript definitions for json-schema

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?purify-ts:2.1.0/@types/json-schema:7.0.15

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/purify-ts:2.1.0
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2/@eslint/core:0.14.0
  • owasp-dependency-check:0.6.2

Identifiers

@types/node:24.0.0

Description:

TypeScript definitions for node

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?@types/yauzl:2.10.0/@types/node:*

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@types/yauzl:2.10.0
  • owasp-dependency-check:0.6.2/@types/cross-spawn:6.0.6
  • owasp-dependency-check:0.6.2

Identifiers

@types/sinon:17.0.4

Description:

TypeScript definitions for sinon

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/@types/sinon:17.0.4

Referenced In Project/Scope: owasp-dependency-check:0.6.2

Identifiers

@types/sinonjs__fake-timers:8.1.5

Description:

TypeScript definitions for @sinonjs/fake-timers

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/@types/sinonjs__fake-timers:8.1.5

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@types/sinon:17.0.4
  • owasp-dependency-check:0.6.2

Identifiers

@types/yauzl:2.10.0

Description:

TypeScript definitions for yauzl

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/@types/yauzl:2.10.0

Referenced In Project/Scope: owasp-dependency-check:0.6.2

Identifiers

@typescript-eslint/eslint-plugin:8.34.0

Description:

TypeScript plugin for ESLint

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?typescript-eslint:8.34.0/@typescript-eslint/eslint-plugin:8.34.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/typescript-eslint:8.34.0

Identifiers

@typescript-eslint/parser:8.34.0

Description:

An ESLint custom parser which leverages TypeScript ESTree

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?typescript-eslint:8.34.0/@typescript-eslint/parser:8.34.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/typescript-eslint:8.34.0

Identifiers

@typescript-eslint/project-service:8.34.0

Description:

Standalone TypeScript project service wrapper for linting.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?@typescript-eslint/typescript-estree:8.34.0/@typescript-eslint/project-service:8.34.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@typescript-eslint/typescript-estree:8.34.0
  • owasp-dependency-check:0.6.2

Identifiers

@typescript-eslint/scope-manager:8.34.0

Description:

TypeScript scope analyser for ESLint

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?@typescript-eslint/utils:8.34.0/@typescript-eslint/scope-manager:8.34.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@typescript-eslint/utils:8.34.0
  • owasp-dependency-check:0.6.2/@typescript-eslint/parser:8.34.0
  • owasp-dependency-check:0.6.2/@typescript-eslint/eslint-plugin:8.34.0
  • owasp-dependency-check:0.6.2

Identifiers

@typescript-eslint/tsconfig-utils:8.34.0

Description:

Utilities for collecting TSConfigs for linting scenarios.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?@typescript-eslint/typescript-estree:8.34.0/@typescript-eslint/tsconfig-utils:8.34.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@typescript-eslint/typescript-estree:8.34.0
  • owasp-dependency-check:0.6.2/@typescript-eslint/project-service:8.34.0
  • owasp-dependency-check:0.6.2

Identifiers

@typescript-eslint/type-utils:8.34.0

Description:

Type utilities for working with TypeScript + ESLint together

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/@typescript-eslint/type-utils:8.34.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@typescript-eslint/eslint-plugin:8.34.0
  • owasp-dependency-check:0.6.2

Identifiers

@typescript-eslint/types:8.34.0

Description:

Types for the TypeScript-ESTree AST spec

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?@typescript-eslint/visitor-keys:8.34.0/@typescript-eslint/types:8.34.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@typescript-eslint/utils:8.34.0
  • owasp-dependency-check:0.6.2/@typescript-eslint/typescript-estree:8.34.0
  • owasp-dependency-check:0.6.2/@typescript-eslint/parser:8.34.0
  • owasp-dependency-check:0.6.2/@typescript-eslint/scope-manager:8.34.0
  • owasp-dependency-check:0.6.2/@typescript-eslint/project-service:8.34.0
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/@typescript-eslint/visitor-keys:8.34.0

Identifiers

@typescript-eslint/typescript-estree:8.34.0

Description:

A parser that converts TypeScript source code into an ESTree compatible form

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?@typescript-eslint/utils:8.34.0/@typescript-eslint/typescript-estree:8.34.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@typescript-eslint/utils:8.34.0
  • owasp-dependency-check:0.6.2/@typescript-eslint/parser:8.34.0
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/@typescript-eslint/type-utils:8.34.0

Identifiers

@typescript-eslint/utils:8.34.0

Description:

Utilities for working with TypeScript + ESLint together

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?typescript-eslint:8.34.0/@typescript-eslint/utils:8.34.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@typescript-eslint/eslint-plugin:8.34.0
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/@typescript-eslint/type-utils:8.34.0
  • owasp-dependency-check:0.6.2/typescript-eslint:8.34.0

Identifiers

@typescript-eslint/visitor-keys:8.34.0

Description:

Visitor keys used to help traverse the TypeScript-ESTree AST

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/@typescript-eslint/visitor-keys:8.34.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@typescript-eslint/typescript-estree:8.34.0
  • owasp-dependency-check:0.6.2/@typescript-eslint/parser:8.34.0
  • owasp-dependency-check:0.6.2/@typescript-eslint/eslint-plugin:8.34.0
  • owasp-dependency-check:0.6.2/@typescript-eslint/scope-manager:8.34.0
  • owasp-dependency-check:0.6.2

Identifiers

acorn-jsx:5.3.2

Description:

Modern, fast React.js JSX parser

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?espree:10.3.0/acorn-jsx:^5.3.2

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/espree:10.3.0
  • owasp-dependency-check:0.6.2

Identifiers

acorn:8.14.1

Description:

ECMAScript parser

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?espree:10.3.0/acorn:^8.14.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/espree:10.3.0
  • owasp-dependency-check:0.6.2

Identifiers

ajv:6.12.6

Description:

Another JSON Schema Validator

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?eslint:9.28.0/ajv:^6.12.4

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/@eslint/eslintrc:3.3.1

Identifiers

ansi-styles:4.3.0

Description:

ANSI escape codes for styling strings in the terminal

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/ansi-styles:4.3.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/chalk:4.1.2
  • owasp-dependency-check:0.6.2

Identifiers

argparse:2.0.1

Description:

CLI arguments parser. Native port of python's argparse.

License:

Python-2.0
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?js-yaml:4.1.0/argparse:^2.0.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/js-yaml:4.1.0
  • owasp-dependency-check:0.6.2

Identifiers

async:3.2.6

Description:

Higher-order functions and common patterns for asynchronous code

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?jake:10.9.2/async:^3.2.3

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/jake:10.9.2

Identifiers

balanced-match:1.0.2

Description:

Match balanced character pairs, like "{" and "}"

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?brace-expansion:1.1.11/balanced-match:^1.0.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/brace-expansion:1.1.11
  • owasp-dependency-check:0.6.2/brace-expansion:2.0.1
  • owasp-dependency-check:0.6.2

Identifiers

brace-expansion:2.0.1

Description:

Brace expansion as known from sh/bash

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?minimatch:5.1.6/brace-expansion:^2.0.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/minimatch:5.1.6
  • owasp-dependency-check:0.6.2/minimatch:3.1.2
  • owasp-dependency-check:0.6.2/minimatch:9.0.5
  • owasp-dependency-check:0.6.2

Identifiers

CVE-2025-5889 (OSSINDEX)  

A vulnerability was found in juliangruber brace-expansion up to 1.1.11/2.0.1/3.0.0/4.0.0. It has been rated as problematic. Affected by this issue is the function expand of the file index.js. The manipulation leads to inefficient regular expression complexity. The attack may be launched remotely. The complexity of an attack is rather high. The exploitation is known to be difficult. The exploit has been disclosed to the public and may be used. Upgrading to version 1.1.12, 2.0.2, 3.0.1 and 4.0.1 is able to address this issue. The name of the patch is a5b98a4f30d7813266b221435e1eaaf25a1b0ac5. It is recommended to upgrade the affected component.
CWE-1333 Inefficient Regular Expression Complexity

CVSSv2:
  • Base Score: HIGH (7.099999904632568)
  • Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N

References:

Vulnerable Software & Versions (OSSINDEX):

  • cpe:2.3:a:*:brace-expansion:2.0.1:*:*:*:*:*:*:*

GHSA-v6h2-p8h4-qcjw (NPM)  

A vulnerability was found in juliangruber brace-expansion up to 1.1.11. It has been rated as problematic. Affected by this issue is the function expand of the file index.js. The manipulation leads to inefficient regular expression complexity. The attack may be launched remotely. The complexity of an attack is rather high. The exploitation is known to be difficult. The exploit has been disclosed to the public and may be used. The name of the patch is a5b98a4f30d7813266b221435e1eaaf25a1b0ac5. It is recommended to apply a patch to fix this issue.
CWE-400 Uncontrolled Resource Consumption

CVSSv3:
  • Base Score: LOW (3.0999999046325684)
  • Vector: CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L
Unscored:
  • Severity: low

References:

Vulnerable Software & Versions (NPM):

  • cpe:2.3:a:*:brace-expansion:\>\=2.0.1\<\=4.0.0:*:*:*:*:*:*:*

braces:3.0.3

Description:

Bash-like brace expansion, implemented in JavaScript. Safer than other brace expansion libs, with complete support for the Bash 4.3 braces specification, without sacrificing speed.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?micromatch:4.0.8/braces:^3.0.3

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/micromatch:4.0.8
  • owasp-dependency-check:0.6.2

Identifiers

buffer-crc32:0.2.13

Description:

A pure javascript CRC32 algorithm that plays nice with binary data

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?yauzl:2.10.0/buffer-crc32:~0.2.3

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/yauzl:2.10.0
  • owasp-dependency-check:0.6.2

Identifiers

callsites:3.1.0

Description:

Get callsites from the V8 stack trace API

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?parent-module:1.0.1/callsites:^3.0.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/parent-module:1.0.1
  • owasp-dependency-check:0.6.2

Identifiers

chalk:4.1.2

Description:

Terminal string styling done right

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?jake:10.9.2/chalk:^4.0.2

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/jake:10.9.2

Identifiers

color-convert:2.0.1

Description:

Plain color conversion functions

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/color-convert:2.0.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/ansi-styles:4.3.0
  • owasp-dependency-check:0.6.2

Identifiers

color-name:1.1.4

Description:

A list of color names and its values

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/color-name:1.1.4

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/color-convert:2.0.1
  • owasp-dependency-check:0.6.2

Identifiers

commander:13.1.0

Description:

the complete solution for node.js command-line programs

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/commander:13.1.0

Referenced In Project/Scope: owasp-dependency-check:0.6.2

Identifiers

commander:7.2.0

Description:

the complete solution for node.js command-line programs

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/commander:7.2.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/genversion:3.2.0
  • owasp-dependency-check:0.6.2

Identifiers

concat-map:0.0.1

Description:

concatenative mapdashery

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?brace-expansion:1.1.11/concat-map:0.0.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/brace-expansion:1.1.11
  • owasp-dependency-check:0.6.2

Identifiers

cross-spawn:7.0.6

Description:

Cross platform child_process#spawn and child_process#spawnSync

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?eslint:9.28.0/cross-spawn:^7.0.6

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

debug:4.4.0

Description:

Lightweight debugging utility for Node.js and the browser

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?extract-zip:2.0.1/debug:^4.1.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@eslint/config-array:0.20.0
  • owasp-dependency-check:0.6.2/@typescript-eslint/typescript-estree:8.34.0
  • owasp-dependency-check:0.6.2/extract-zip:2.0.1
  • owasp-dependency-check:0.6.2/@typescript-eslint/parser:8.34.0
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2/@typescript-eslint/project-service:8.34.0
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/@typescript-eslint/type-utils:8.34.0
  • owasp-dependency-check:0.6.2/@eslint/eslintrc:3.3.1

Identifiers

deep-is:0.1.4

Description:

node's assert.deepEqual algorithm except for NaN being equal to NaN

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?optionator:0.9.4/deep-is:^0.1.3

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/optionator:0.9.4
  • owasp-dependency-check:0.6.2

Identifiers

diff:7.0.0

Description:

A JavaScript text diff implementation.

License:

BSD-3-Clause
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?sinon:20.0.0/diff:^7.0.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/sinon:20.0.0
  • owasp-dependency-check:0.6.2

Identifiers

ejs:3.1.10

Description:

Embedded JavaScript templates

License:

Apache-2.0
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?genversion:3.2.0/ejs:^3.1.9

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/genversion:3.2.0
  • owasp-dependency-check:0.6.2

Identifiers

end-of-stream:1.4.4

Description:

Call a callback when a readable/writable/duplex stream has completed or failed.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?pump:3.0.0/end-of-stream:^1.1.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/pump:3.0.0
  • owasp-dependency-check:0.6.2

Identifiers

escape-string-regexp:4.0.0

Description:

Escape RegExp special characters

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/escape-string-regexp:4.0.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

eslint-config-prettier:10.1.5

Description:

Turns off all rules that are unnecessary or might conflict with Prettier.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/eslint-config-prettier:10.1.5

Referenced In Project/Scope: owasp-dependency-check:0.6.2

Identifiers

eslint-plugin-prettier:5.4.1

Description:

Runs prettier as an eslint rule

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/eslint-plugin-prettier:5.4.1

Referenced In Project/Scope: owasp-dependency-check:0.6.2

Identifiers

eslint-scope:8.3.0

Description:

ECMAScript scope analyzer for ESLint

License:

BSD-2-Clause
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/eslint-scope:8.3.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

eslint-visitor-keys:3.4.3

Description:

Constants and utilities about visitor keys to traverse AST.

License:

Apache-2.0
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/eslint-visitor-keys:3.4.3

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/@eslint-community/eslint-utils:4.7.0

Identifiers

eslint-visitor-keys:4.2.0

Description:

Constants and utilities about visitor keys to traverse AST.

License:

Apache-2.0
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?espree:10.3.0/eslint-visitor-keys:^4.2.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/espree:10.3.0
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/@typescript-eslint/visitor-keys:8.34.0

Identifiers

eslint:9.28.0

Description:

An AST-based pattern checker for JavaScript.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/eslint:9.28.0

Referenced In Project/Scope: owasp-dependency-check:0.6.2

Identifiers

espree:10.3.0

Description:

An Esprima-compatible JavaScript parser built on Acorn

License:

BSD-2-Clause
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/espree:10.3.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/@eslint/eslintrc:3.3.1

Identifiers

esquery:1.6.0

Description:

A query library for ECMAScript AST using a CSS selector like query language.

License:

BSD-3-Clause
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/esquery:1.6.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

esrecurse:4.3.0

Description:

ECMAScript AST recursive visitor

License:

BSD-2-Clause
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/esrecurse:4.3.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint-scope:8.3.0
  • owasp-dependency-check:0.6.2

Identifiers

estraverse:5.3.0

Description:

ECMAScript JS AST traversal functions

License:

BSD-2-Clause
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/estraverse:5.3.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint-scope:8.3.0
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/esrecurse:4.3.0
  • owasp-dependency-check:0.6.2/esquery:1.6.0

Identifiers

esutils:2.0.3

Description:

utility box for ECMAScript language tools

License:

BSD-2-Clause
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/esutils:2.0.3

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

extract-zip:2.0.1

Description:

unzip a zip file into a directory using 100% javascript

License:

BSD-2-Clause
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/extract-zip:2.0.1

Referenced In Project/Scope: owasp-dependency-check:0.6.2

Identifiers

fast-deep-equal:3.1.3

Description:

Fast deep equal

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/fast-deep-equal:3.1.3

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/ajv:6.12.6

Identifiers

fast-diff:1.3.0

Description:

Fast Javascript text diff

License:

Apache-2.0
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?prettier-linter-helpers:1.0.0/fast-diff:^1.1.2

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/prettier-linter-helpers:1.0.0
  • owasp-dependency-check:0.6.2

Identifiers

fast-glob:3.3.3

Description:

It's a very fast and efficient glob library for Node.js

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?knip:5.60.2/fast-glob:^3.3.3

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/knip:5.60.2
  • owasp-dependency-check:0.6.2/@typescript-eslint/typescript-estree:8.34.0
  • owasp-dependency-check:0.6.2

Identifiers

fast-json-stable-stringify:2.1.0

Description:

deterministic `JSON.stringify()` - a faster version of substack's json-stable-strigify without jsonify

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/fast-json-stable-stringify:2.1.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/ajv:6.12.6

Identifiers

fast-levenshtein:2.0.6

Description:

Efficient implementation of Levenshtein algorithm  with locale-specific collator support.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?optionator:0.9.4/fast-levenshtein:^2.0.6

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/optionator:0.9.4
  • owasp-dependency-check:0.6.2

Identifiers

fastq:1.19.1

Description:

Fast, in memory work queue

License:

ISC
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/fastq:1.19.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@nodelib/fs.walk:1.2.8
  • owasp-dependency-check:0.6.2

Identifiers

fd-package-json:2.0.0

Description:

Utilities for finding the closest package.json file

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?formatly:0.2.4/fd-package-json:^2.0.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/formatly:0.2.4
  • owasp-dependency-check:0.6.2

Identifiers

fd-slicer:1.1.0

Description:

safely create multiple ReadStream or WriteStream objects from the same file descriptor

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?yauzl:2.10.0/fd-slicer:~1.1.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/yauzl:2.10.0
  • owasp-dependency-check:0.6.2

Identifiers

file-entry-cache:8.0.0

Description:

Super simple cache for file metadata, useful for process that work o a given series of files and that only need to repeat the job on the changed ones since the previous run of the process

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/file-entry-cache:8.0.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

filelist:1.0.4

Description:

Lazy-evaluating list of files, based on globs or regex patterns

License:

Apache-2.0
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?jake:10.9.2/filelist:^1.0.4

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/jake:10.9.2

Identifiers

fill-range:7.1.1

Description:

Fill in a range of numbers or letters, optionally passing an increment or `step` to use, or create a regex-compatible range with `options.toRegex`

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/fill-range:7.1.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/braces:3.0.3

Identifiers

find-package:1.0.0

Description:

Find the nearest package.json in your current node module

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?genversion:3.2.0/find-package:^1.0.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/genversion:3.2.0
  • owasp-dependency-check:0.6.2

Identifiers

find-up:5.0.0

Description:

Find a file or directory by walking up parent directories

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/find-up:5.0.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

flat-cache:4.0.1

Description:

A stupidly simple key/value storage using files to persist some data

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/flat-cache:4.0.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/file-entry-cache:8.0.0
  • owasp-dependency-check:0.6.2

Identifiers

flatted:3.3.3

Description:

A super light and fast circular JSON parser.

License:

ISC
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/flatted:3.3.3

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/flat-cache:4.0.1

Identifiers

formatly:0.2.4

Description:

Formats your code with whatever formatter your project is already using. 🧼

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?knip:5.60.2/formatly:^0.2.4

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/knip:5.60.2
  • owasp-dependency-check:0.6.2

Identifiers

genversion:3.2.0

Description:

A command line utility to read version from package.json and attach it into your module as a property

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/genversion:3.2.0

Referenced In Project/Scope: owasp-dependency-check:0.6.2

Identifiers

get-stream:5.2.0

Description:

Get a stream as a string, buffer, or array

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/get-stream:5.2.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/extract-zip:2.0.1
  • owasp-dependency-check:0.6.2

Identifiers

glob-parent:5.1.2

Description:

Extract the non-magic parent path from a glob string.

License:

ISC
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/glob-parent:5.1.2

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/fast-glob:3.3.3
  • owasp-dependency-check:0.6.2

Identifiers

glob-parent:6.0.2

Description:

Extract the non-magic parent path from a glob string.

License:

ISC
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/glob-parent:6.0.2

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

globals:14.0.0

Description:

Global identifiers from different JavaScript environments

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/globals:14.0.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/@eslint/eslintrc:3.3.1

Identifiers

graphemer:1.4.0

Description:

A JavaScript library that breaks strings into their individual user-perceived characters (including emojis!)

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/graphemer:1.4.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@typescript-eslint/eslint-plugin:8.34.0
  • owasp-dependency-check:0.6.2

Identifiers

has-flag:4.0.0

Description:

Check if argv has a specific flag

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?supports-color:7.2.0/has-flag:^4.0.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/supports-color:7.2.0
  • owasp-dependency-check:0.6.2

Identifiers

ignore:5.3.2

Description:

Ignore is a manager and filter for .gitignore rules, the one used by eslint, gitbook and many others.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/ignore:5.3.2

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/@eslint/eslintrc:3.3.1

Identifiers

ignore:7.0.5

Description:

Ignore is a manager and filter for .gitignore rules, the one used by eslint, gitbook and many others.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/ignore:7.0.5

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@typescript-eslint/eslint-plugin:8.34.0
  • owasp-dependency-check:0.6.2

Identifiers

import-fresh:3.3.1

Description:

Import a module while bypassing the cache

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/import-fresh:3.3.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/@eslint/eslintrc:3.3.1

Identifiers

imurmurhash:0.1.4

Description:

An incremental implementation of MurmurHash3

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/imurmurhash:0.1.4

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

is-extglob:2.1.1

Description:

Returns true if a string has an extglob.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?is-glob:4.0.3/is-extglob:^2.1.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/is-glob:4.0.3
  • owasp-dependency-check:0.6.2

Identifiers

is-glob:4.0.3

Description:

Returns `true` if the given string looks like a glob pattern or an extglob pattern. This makes it easy to create code that only uses external modules like node-glob when necessary, resulting in much faster code execution and initialization time, and a better user experience.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/is-glob:4.0.3

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/glob-parent:6.0.2
  • owasp-dependency-check:0.6.2/@typescript-eslint/typescript-estree:8.34.0
  • owasp-dependency-check:0.6.2/glob-parent:5.1.2
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

is-number:7.0.0

Description:

Returns true if a number or string value is a finite number. Useful for regex matches, parsing, user input, etc.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?to-regex-range:5.0.1/is-number:^7.0.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/to-regex-range:5.0.1

Identifiers

isexe:2.0.0

Description:

Minimal module to check if a file is executable.

License:

ISC
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?which:2.0.2/isexe:^2.0.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/which:2.0.2
  • owasp-dependency-check:0.6.2

Identifiers

jake:10.9.2

Description:

JavaScript build tool, similar to Make or Rake

License:

Apache-2.0
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/jake:10.9.2

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/ejs:3.1.10
  • owasp-dependency-check:0.6.2

Identifiers

jiti:2.4.2

Description:

Runtime typescript and ESM support for Node.js

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?knip:5.60.2/jiti:^2.4.2

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/knip:5.60.2
  • owasp-dependency-check:0.6.2

Identifiers

js-yaml:4.1.0

Description:

YAML 1.2 parser and serializer

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?knip:5.60.2/js-yaml:^4.1.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/knip:5.60.2
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/@eslint/eslintrc:3.3.1

Identifiers

json-buffer:3.0.1

Description:

JSON parse & stringify that supports binary via bops & base64

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?keyv:4.5.4/json-buffer:3.0.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/keyv:4.5.4
  • owasp-dependency-check:0.6.2

Identifiers

json-schema-traverse:0.4.1

Description:

Traverse JSON Schema passing each schema object to callback

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/json-schema-traverse:0.4.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/ajv:6.12.6

Identifiers

json-stable-stringify-without-jsonify:1.0.1

Description:

deterministic JSON.stringify() with custom sorting to get deterministic hashes from stringified results, with no public domain dependencies

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/json-stable-stringify-without-jsonify:1.0.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

keyv:4.5.4

Description:

Simple key-value storage with support for multiple backends

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/keyv:4.5.4

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/flat-cache:4.0.1

Identifiers

knip:5.60.2

Description:

Find and fix unused dependencies, exports and files in your TypeScript and JavaScript projects

License:

ISC
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/knip:5.60.2

Referenced In Project/Scope: owasp-dependency-check:0.6.2

Identifiers

levn:0.4.1

Description:

Light ECMAScript (JavaScript) Value Notation - human written, concise, typed, flexible

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?optionator:0.9.4/levn:^0.4.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/optionator:0.9.4
  • owasp-dependency-check:0.6.2/@eslint/plugin-kit:0.3.1
  • owasp-dependency-check:0.6.2

Identifiers

locate-path:6.0.0

Description:

Get the first path that exists on disk of multiple paths

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/locate-path:6.0.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/find-up:5.0.0
  • owasp-dependency-check:0.6.2

Identifiers

lodash.get:4.4.2

Description:

The lodash method `_.get` exported as a module.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/lodash.get:4.4.2

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@sinonjs/samsam:8.0.2
  • owasp-dependency-check:0.6.2

Identifiers

lodash.merge:4.6.2

Description:

The Lodash method `_.merge` exported as a module.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/lodash.merge:4.6.2

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

merge2:1.4.1

Description:

Merge multiple streams into one stream in sequence or parallel.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/merge2:1.4.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/fast-glob:3.3.3
  • owasp-dependency-check:0.6.2

Identifiers

micromatch:4.0.8

Description:

Glob matching for javascript/node.js. A replacement and faster alternative to minimatch and multimatch.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/micromatch:4.0.8

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/fast-glob:3.3.3
  • owasp-dependency-check:0.6.2

Identifiers

minimatch:3.1.2

Description:

a glob matcher in javascript

License:

ISC
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/minimatch:3.1.2

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@eslint/config-array:0.20.0
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/@eslint/eslintrc:3.3.1
  • owasp-dependency-check:0.6.2/jake:10.9.2

Identifiers

minimatch:5.1.6

Description:

a glob matcher in javascript

License:

ISC
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/minimatch:5.1.6

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/filelist:1.0.4
  • owasp-dependency-check:0.6.2

Identifiers

minimatch:9.0.5

Description:

a glob matcher in javascript

License:

ISC
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/minimatch:9.0.5

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@typescript-eslint/typescript-estree:8.34.0
  • owasp-dependency-check:0.6.2

Identifiers

minimist:1.2.8

Description:

parse argument options

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/minimist:1.2.8

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/knip:5.60.2
  • owasp-dependency-check:0.6.2

Identifiers

ms:2.1.3

Description:

Tiny millisecond conversion utility

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/ms:2.1.3

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/debug:4.4.0

Identifiers

natural-compare:1.4.0

Description:

Compare strings containing a mix of letters and numbers in the way a human being would in sort order.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/natural-compare:1.4.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@typescript-eslint/eslint-plugin:8.34.0
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

once:1.4.0

Description:

Run a function exactly one time

License:

ISC
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?pump:3.0.0/once:^1.3.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/end-of-stream:1.4.4
  • owasp-dependency-check:0.6.2/pump:3.0.0
  • owasp-dependency-check:0.6.2

Identifiers

optionator:0.9.4

Description:

option parsing and help generation

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/optionator:0.9.4

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint:9.28.0
  • owasp-dependency-check:0.6.2

Identifiers

oxc-resolver:11.1.0

Description:

Oxc Resolver Node API

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/oxc-resolver:11.1.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/knip:5.60.2
  • owasp-dependency-check:0.6.2

Identifiers

p-limit:3.1.0

Description:

Run multiple promise-returning & async functions with limited concurrency

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/p-limit:3.1.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/p-locate:5.0.0

Identifiers

p-locate:5.0.0

Description:

Get the first fulfilled promise that satisfies the provided testing function

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/p-locate:5.0.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/locate-path:6.0.0
  • owasp-dependency-check:0.6.2

Identifiers

parent-module:1.0.1

Description:

Get the path of the parent module

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/parent-module:1.0.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/import-fresh:3.3.1
  • owasp-dependency-check:0.6.2

Identifiers

parents:1.0.1

Description:

return all the parent directories for a directory

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/parents:1.0.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/find-package:1.0.0

Identifiers

path-exists:4.0.0

Description:

Check if a path exists

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/path-exists:4.0.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/find-up:5.0.0
  • owasp-dependency-check:0.6.2

Identifiers

path-key:3.1.1

Description:

Get the PATH environment variable key cross-platform

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/path-key:3.1.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/cross-spawn:7.0.6

Identifiers

path-platform:0.11.15

Description:

Provide access to win32 and posix path operations; sourced directly from upstream Node.js

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/path-platform:0.11.15

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/parents:1.0.1
  • owasp-dependency-check:0.6.2

Identifiers

pend:1.2.0

Description:

dead-simple optimistic async helper

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/pend:1.2.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/fd-slicer:1.1.0
  • owasp-dependency-check:0.6.2

Identifiers

picocolors:1.1.1

Description:

The tiniest and the fastest library for terminal output formatting with ANSI colors

License:

ISC
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/picocolors:1.1.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/knip:5.60.2
  • owasp-dependency-check:0.6.2

Identifiers

picomatch:2.3.1

Description:

Blazing fast and accurate glob matcher written in JavaScript, with no dependencies and full support for standard and extended Bash glob features, including braces, extglobs, POSIX brackets, and regular expressions.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/picomatch:2.3.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/micromatch:4.0.8
  • owasp-dependency-check:0.6.2

Identifiers

picomatch:4.0.2

Description:

Blazing fast and accurate glob matcher written in JavaScript, with no dependencies and full support for standard and extended Bash glob features, including braces, extglobs, POSIX brackets, and regular expressions.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/picomatch:4.0.2

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/knip:5.60.2
  • owasp-dependency-check:0.6.2

Identifiers

prelude-ls:1.2.1

Description:

prelude.ls is a functionally oriented utility library. It is powerful and flexible. Almost all of its functions are curried. It is written in, and is the recommended base library for, LiveScript.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?type-check:0.4.0/prelude-ls:^1.2.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/optionator:0.9.4
  • owasp-dependency-check:0.6.2/type-check:0.4.0
  • owasp-dependency-check:0.6.2/levn:0.4.1
  • owasp-dependency-check:0.6.2

Identifiers

prettier-linter-helpers:1.0.0

Description:

Utilities to help expose prettier output in linting tools

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/prettier-linter-helpers:1.0.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint-plugin-prettier:5.4.1
  • owasp-dependency-check:0.6.2

Identifiers

prettier:3.5.3

Description:

Prettier is an opinionated code formatter

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/prettier:3.5.3

Referenced In Project/Scope: owasp-dependency-check:0.6.2

Identifiers

pump:3.0.0

Description:

pipe streams together and close all of them if one of them closes

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/pump:3.0.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/get-stream:5.2.0
  • owasp-dependency-check:0.6.2

Identifiers

punycode:2.3.1

Description:

A robust Punycode converter that fully complies to RFC 3492 and RFC 5891, and works on nearly all JavaScript platforms.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?uri-js:4.4.1/punycode:^2.1.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/uri-js:4.4.1
  • owasp-dependency-check:0.6.2

Identifiers

purify-ts:2.1.0

Description:

Functional programming standard library for TypeScript 

License:

ISC
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/purify-ts:2.1.0

Referenced In Project/Scope: owasp-dependency-check:0.6.2

Identifiers

queue-microtask:1.2.3

Description:

fast, tiny `queueMicrotask` shim for modern engines

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?run-parallel:1.2.0/queue-microtask:^1.2.2

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/run-parallel:1.2.0
  • owasp-dependency-check:0.6.2

Identifiers

resolve-from:4.0.0

Description:

Resolve the path of a module like `require.resolve()` but from a given path

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/resolve-from:4.0.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/import-fresh:3.3.1
  • owasp-dependency-check:0.6.2

Identifiers

reusify:1.1.0

Description:

Reuse objects and functions with style

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/reusify:1.1.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/fastq:1.19.1

Identifiers

run-parallel:1.2.0

Description:

Run an array of functions in parallel

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/run-parallel:1.2.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/@nodelib/fs.scandir:2.1.5

Identifiers

semver:7.7.2

Description:

The semantic version parser used by npm.

License:

ISC
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/semver:7.7.2

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@typescript-eslint/typescript-estree:8.34.0
  • owasp-dependency-check:0.6.2

Identifiers

shebang-command:2.0.0

Description:

Get the command from a shebang

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/shebang-command:2.0.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/cross-spawn:7.0.6

Identifiers

shebang-regex:3.0.0

Description:

Regular expression for matching a shebang line

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/shebang-regex:3.0.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/shebang-command:2.0.0
  • owasp-dependency-check:0.6.2

Identifiers

sinon:20.0.0

Description:

JavaScript test spies, stubs and mocks.

License:

BSD-3-Clause
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/sinon:20.0.0

Referenced In Project/Scope: owasp-dependency-check:0.6.2

Identifiers

smol-toml:1.3.4

Description:

A small, fast, and correct TOML parser/serializer

License:

BSD-3-Clause
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/smol-toml:1.3.4

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/knip:5.60.2
  • owasp-dependency-check:0.6.2

Identifiers

strip-json-comments:3.1.1

Description:

Strip comments from JSON. Lets you use comments in your JSON files!

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/strip-json-comments:3.1.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/@eslint/eslintrc:3.3.1

Identifiers

strip-json-comments:5.0.2

Description:

Strip comments from JSON. Lets you use comments in your JSON files!

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/strip-json-comments:5.0.2

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/knip:5.60.2
  • owasp-dependency-check:0.6.2

Identifiers

supports-color:7.2.0

Description:

Detect whether a terminal supports color

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/supports-color:7.2.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/sinon:20.0.0
  • owasp-dependency-check:0.6.2/chalk:4.1.2
  • owasp-dependency-check:0.6.2

Identifiers

synckit:0.11.8

Description:

Perform async work synchronously in Node.js using `worker_threads` with first-class TypeScript support.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/synckit:0.11.8

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/eslint-plugin-prettier:5.4.1
  • owasp-dependency-check:0.6.2

Identifiers

to-regex-range:5.0.1

Description:

Pass two numbers, get a regex-compatible source string for matching ranges. Validated against more than 2.78 million test assertions.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/to-regex-range:5.0.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/fill-range:7.1.1
  • owasp-dependency-check:0.6.2

Identifiers

ts-api-utils:2.1.0

Description:

Utility functions for working with TypeScript's API. Successor to the wonderful tsutils. 🛠️️

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/ts-api-utils:2.1.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@typescript-eslint/typescript-estree:8.34.0
  • owasp-dependency-check:0.6.2/@typescript-eslint/eslint-plugin:8.34.0
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/@typescript-eslint/type-utils:8.34.0

Identifiers

type-check:0.4.0

Description:

type-check allows you to check the types of JavaScript values at runtime with a Haskell like type syntax.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/type-check:0.4.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/optionator:0.9.4
  • owasp-dependency-check:0.6.2/levn:0.4.1
  • owasp-dependency-check:0.6.2

Identifiers

type-detect:4.0.8

Description:

Improved typeof detection for node.js and the browser.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/type-detect:4.0.8

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@sinonjs/commons:3.0.1
  • owasp-dependency-check:0.6.2

Identifiers

type-detect:4.1.0

Description:

Improved typeof detection for node.js and the browser.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/type-detect:4.1.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@sinonjs/samsam:8.0.2
  • owasp-dependency-check:0.6.2

Identifiers

typescript-eslint:8.34.0

Description:

Tooling which enables you to use TypeScript with ESLint

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/typescript-eslint:8.34.0

Referenced In Project/Scope: owasp-dependency-check:0.6.2

Identifiers

typescript:5.8.3

Description:

TypeScript is a language for application scale JavaScript development

License:

Apache-2.0
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/typescript:5.8.3

Referenced In Project/Scope: owasp-dependency-check:0.6.2

Identifiers

undici-types:7.8.0

Description:

A stand-alone types package for Undici

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/undici-types:7.8.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/@types/node:24.0.0
  • owasp-dependency-check:0.6.2

Identifiers

undici:7.10.0

Description:

An HTTP/1.1 client, written from scratch for Node.js

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/undici:7.10.0

Referenced In Project/Scope: owasp-dependency-check:0.6.2

Identifiers

uri-js:4.4.1

Description:

An RFC 3986/3987 compliant, scheme extendable URI/IRI parsing/validating/resolving library for JavaScript.

License:

BSD-2-Clause
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/uri-js:4.4.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/ajv:6.12.6

Identifiers

walk-up-path:4.0.0

Description:

Given a path string, return a generator that walks up the path, emitting each dirname.

License:

ISC
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/walk-up-path:4.0.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/fd-package-json:2.0.0
  • owasp-dependency-check:0.6.2

Identifiers

which:2.0.2

Description:

Like which(1) unix command. Find the first instance of an executable in the PATH.

License:

ISC
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/which:2.0.2

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/cross-spawn:7.0.6

Identifiers

word-wrap:1.2.5

Description:

Wrap words to a specified length.

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/word-wrap:1.2.5

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/optionator:0.9.4
  • owasp-dependency-check:0.6.2

Identifiers

wrappy:1.0.2

Description:

Callback wrapping utility

License:

ISC
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/wrappy:1.0.2

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/once:1.4.0
  • owasp-dependency-check:0.6.2

Identifiers

yauzl:2.10.0

Description:

yet another unzip library for node

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/yauzl:2.10.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/extract-zip:2.0.1
  • owasp-dependency-check:0.6.2

Identifiers

yocto-queue:0.1.0

Description:

Tiny queue data structure

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/yocto-queue:0.1.0

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2
  • owasp-dependency-check:0.6.2/p-limit:3.1.0

Identifiers

zod-validation-error:3.4.1

Description:

Wrap zod validation errors in user-friendly readable messages

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/zod-validation-error:3.4.1

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/knip:5.60.2
  • owasp-dependency-check:0.6.2

Identifiers

zod:3.24.4

Description:

TypeScript-first schema declaration and validation library with static type inference

License:

MIT
File Path: /home/runner/work/owasp-dependency-check/owasp-dependency-check/package-lock.json?/zod:3.24.4

Referenced In Projects/Scopes:
  • owasp-dependency-check:0.6.2/knip:5.60.2
  • owasp-dependency-check:0.6.2

Identifiers



This report contains data retrieved from the National Vulnerability Database.
This report may contain data retrieved from the CISA Known Exploited Vulnerability Catalog.
This report may contain data retrieved from the Github Advisory Database (via NPM Audit API).
This report may contain data retrieved from RetireJS.
This report may contain data retrieved from the Sonatype OSS Index.