Skip to content

test! deliberately introduce vuln by installing axios - #1152

Open
bikubi wants to merge 3 commits into
mainfrom
testing-trivy-introduce-vuln-do-not-merge
Open

test! deliberately introduce vuln by installing axios#1152
bikubi wants to merge 3 commits into
mainfrom
testing-trivy-introduce-vuln-do-not-merge

test! deliberately introduce vuln by installing svgo

4120bfd
Select commit
Loading
Failed to load commit list.
GitHub Advanced Security / Trivy succeeded May 11, 2026 in 7s

No new alerts in code changed by this pull request

Annotations

Check failure on line 6744 in yarn.lock

See this annotation in the file changed.

Code scanning / Trivy

svgo: SVGO: Denial of Service via XML entity expansion High

Package: svgo
Installed Version: 2.7.0
Vulnerability CVE-2026-29074
Severity: HIGH
Fixed Version: 2.8.1, 3.3.3, 4.0.1
Link: CVE-2026-29074