Skip to content

Upgrade Handlebars (was: List of vulnerabilitys (scaned with grype) ) #1269

@Slashdacoda

Description

@Slashdacoda

Hello,
at the risk of repeating myself and that these messages already exist. I would like to take the opportunity to give you an overview of what security problems there are after scanning (with https://github.com/anchore/grype ) the created image skosmos-web from

It may help you to prioritize the most important problems.

Severity ▾ Vulnerability Artifact Type Artifact Name Infected Version Fixed Versions
Critical CVE-2021-23369 npm handlebars 4.7.6 []
Critical CVE-2021-23383 npm handlebars 4.7.6 []
Critical GHSA-f2jv-r9rf-7988 npm handlebars 4.7.6 [4.7.7]
High CVE-2021-27516 npm urijs 1.19.0 []
High GHSA-mhpp-875w-9cpv npm jquery 2.2.4 [3.0.0]
Low CVE-2013-4235 deb login 1:4.8.1-1ubuntu5.20.04.1 []
Low CVE-2013-4235 deb login 1:4.8.1-1ubuntu5.20.04.1 []
Low CVE-2013-4235 deb passwd 1:4.8.1-1ubuntu5.20.04.1 []
Low CVE-2013-4235 deb passwd 1:4.8.1-1ubuntu5.20.04.1 []
Low CVE-2015-9019 deb libxslt1.1 1.1.34-4 []
Low CVE-2016-2781 deb coreutils 8.30-3ubuntu2 []
Low CVE-2016-2781 deb coreutils 8.30-3ubuntu2 []
Low CVE-2017-15131 deb xdg-user-dirs 0.17-2ubuntu1 []
Low CVE-2017-8834 deb libcroco3 0.6.13-1 []
Low CVE-2017-8871 deb libcroco3 0.6.13-1 []
Low CVE-2018-1000021 deb git 1:2.25.1-1ubuntu3.2 []
Low CVE-2018-1000021 deb git-man 1:2.25.1-1ubuntu3.2 []
Low CVE-2019-18276 deb bash 5.0-6ubuntu1.1 []
Low CVE-2019-18276 deb bash 5.0-6ubuntu1.1 []
Low CVE-2019-20838 deb libpcre3 2:8.39-12build1 []
Low CVE-2019-20838 deb libpcre3 2:8.39-12build1 []
Low CVE-2019-25013 deb libc-bin 2.31-0ubuntu9.2 []
Low CVE-2019-25013 deb libc-bin 2.31-0ubuntu9.2 []
Low CVE-2019-25013 deb libc6 2.31-0ubuntu9.2 []
Low CVE-2019-25013 deb libc6 2.31-0ubuntu9.2 []
Low CVE-2019-25013 deb locales 2.31-0ubuntu9.2 []
Low CVE-2020-14145 deb openssh-client 1:8.2p1-4ubuntu0.4 []
Low CVE-2020-27618 deb libc-bin 2.31-0ubuntu9.2 []
Low CVE-2020-27618 deb libc-bin 2.31-0ubuntu9.2 []
Low CVE-2020-27618 deb libc6 2.31-0ubuntu9.2 []
Low CVE-2020-27618 deb libc6 2.31-0ubuntu9.2 []
Low CVE-2020-27618 deb locales 2.31-0ubuntu9.2 []
Low CVE-2020-29562 deb libc-bin 2.31-0ubuntu9.2 []
Low CVE-2020-29562 deb libc-bin 2.31-0ubuntu9.2 []
Low CVE-2020-29562 deb libc6 2.31-0ubuntu9.2 []
Low CVE-2020-29562 deb libc6 2.31-0ubuntu9.2 []
Low CVE-2020-29562 deb locales 2.31-0ubuntu9.2 []
Low CVE-2020-6096 deb libc-bin 2.31-0ubuntu9.2 []
Low CVE-2020-6096 deb libc-bin 2.31-0ubuntu9.2 []
Low CVE-2020-6096 deb libc6 2.31-0ubuntu9.2 []
Low CVE-2020-6096 deb libc6 2.31-0ubuntu9.2 []
Low CVE-2020-6096 deb locales 2.31-0ubuntu9.2 []
Low CVE-2020-9849 deb libsqlite3-0 3.31.1-4ubuntu0.2 []
Low CVE-2020-9991 deb libsqlite3-0 3.31.1-4ubuntu0.2 []
Low CVE-2021-21707 deb libapache2-mod-php7.4 7.4.3-4ubuntu2.8 []
Low CVE-2021-21707 deb php7.4 7.4.3-4ubuntu2.8 []
Low CVE-2021-21707 deb php7.4-cli 7.4.3-4ubuntu2.8 []
Low CVE-2021-21707 deb php7.4-common 7.4.3-4ubuntu2.8 []
Low CVE-2021-21707 deb php7.4-curl 7.4.3-4ubuntu2.8 []
Low CVE-2021-21707 deb php7.4-intl 7.4.3-4ubuntu2.8 []
Low CVE-2021-21707 deb php7.4-json 7.4.3-4ubuntu2.8 []
Low CVE-2021-21707 deb php7.4-mbstring 7.4.3-4ubuntu2.8 []
Low CVE-2021-21707 deb php7.4-opcache 7.4.3-4ubuntu2.8 []
Low CVE-2021-21707 deb php7.4-readline 7.4.3-4ubuntu2.8 []
Low CVE-2021-21707 deb php7.4-xml 7.4.3-4ubuntu2.8 []
Low CVE-2021-21707 deb php7.4-xsl 7.4.3-4ubuntu2.8 []
Low CVE-2021-21707 deb php7.4-zip 7.4.3-4ubuntu2.8 []
Low CVE-2021-27645 deb libc-bin 2.31-0ubuntu9.2 []
Low CVE-2021-27645 deb libc-bin 2.31-0ubuntu9.2 []
Low CVE-2021-27645 deb libc6 2.31-0ubuntu9.2 []
Low CVE-2021-27645 deb libc6 2.31-0ubuntu9.2 []
Low CVE-2021-27645 deb locales 2.31-0ubuntu9.2 []
Low CVE-2021-3326 deb libc-bin 2.31-0ubuntu9.2 []
Low CVE-2021-3326 deb libc-bin 2.31-0ubuntu9.2 []
Low CVE-2021-3326 deb libc6 2.31-0ubuntu9.2 []
Low CVE-2021-3326 deb libc6 2.31-0ubuntu9.2 []
Low CVE-2021-3326 deb locales 2.31-0ubuntu9.2 []
Low CVE-2021-33574 deb libc-bin 2.31-0ubuntu9.2 []
Low CVE-2021-33574 deb libc-bin 2.31-0ubuntu9.2 []
Low CVE-2021-33574 deb libc6 2.31-0ubuntu9.2 []
Low CVE-2021-33574 deb libc6 2.31-0ubuntu9.2 []
Low CVE-2021-33574 deb locales 2.31-0ubuntu9.2 []
Low CVE-2021-35942 deb libc-bin 2.31-0ubuntu9.2 []
Low CVE-2021-35942 deb libc-bin 2.31-0ubuntu9.2 []
Low CVE-2021-35942 deb libc6 2.31-0ubuntu9.2 []
Low CVE-2021-35942 deb libc6 2.31-0ubuntu9.2 []
Low CVE-2021-35942 deb locales 2.31-0ubuntu9.2 []
Low CVE-2021-36084 deb libsepol1 3.0-1 []
Low CVE-2021-36084 deb libsepol1 3.0-1 []
Low CVE-2021-36085 deb libsepol1 3.0-1 []
Low CVE-2021-36085 deb libsepol1 3.0-1 []
Low CVE-2021-36086 deb libsepol1 3.0-1 []
Low CVE-2021-36086 deb libsepol1 3.0-1 []
Low CVE-2021-36087 deb libsepol1 3.0-1 []
Low CVE-2021-36087 deb libsepol1 3.0-1 []
Low CVE-2021-3671 deb libasn1-8-heimdal 7.7.0+dfsg-1ubuntu1 []
Low CVE-2021-3671 deb libgssapi3-heimdal 7.7.0+dfsg-1ubuntu1 []
Low CVE-2021-3671 deb libhcrypto4-heimdal 7.7.0+dfsg-1ubuntu1 []
Low CVE-2021-3671 deb libheimbase1-heimdal 7.7.0+dfsg-1ubuntu1 []
Low CVE-2021-3671 deb libheimntlm0-heimdal 7.7.0+dfsg-1ubuntu1 []
Low CVE-2021-3671 deb libhx509-5-heimdal 7.7.0+dfsg-1ubuntu1 []
Low CVE-2021-3671 deb libkrb5-26-heimdal 7.7.0+dfsg-1ubuntu1 []
Low CVE-2021-3671 deb libroken18-heimdal 7.7.0+dfsg-1ubuntu1 []
Low CVE-2021-3671 deb libwind0-heimdal 7.7.0+dfsg-1ubuntu1 []
Low CVE-2021-37600 deb bsdutils 1:2.34-0.1ubuntu9.1 []
Low CVE-2021-37600 deb bsdutils 1:2.34-0.1ubuntu9.1 []
Low CVE-2021-37600 deb fdisk 2.34-0.1ubuntu9.1 []
Low CVE-2021-37600 deb fdisk 2.34-0.1ubuntu9.1 []
Low CVE-2021-37600 deb libblkid1 2.34-0.1ubuntu9.1 []
Low CVE-2021-37600 deb libblkid1 2.34-0.1ubuntu9.1 []
Low CVE-2021-37600 deb libfdisk1 2.34-0.1ubuntu9.1 []
Low CVE-2021-37600 deb libfdisk1 2.34-0.1ubuntu9.1 []
Low CVE-2021-37600 deb libmount1 2.34-0.1ubuntu9.1 []
Low CVE-2021-37600 deb libmount1 2.34-0.1ubuntu9.1 []
Low CVE-2021-37600 deb libsmartcols1 2.34-0.1ubuntu9.1 []
Low CVE-2021-37600 deb libsmartcols1 2.34-0.1ubuntu9.1 []
Low CVE-2021-37600 deb libuuid1 2.34-0.1ubuntu9.1 []
Low CVE-2021-37600 deb libuuid1 2.34-0.1ubuntu9.1 []
Low CVE-2021-37600 deb mount 2.34-0.1ubuntu9.1 []
Low CVE-2021-37600 deb mount 2.34-0.1ubuntu9.1 []
Low CVE-2021-37600 deb util-linux 2.34-0.1ubuntu9.1 []
Low CVE-2021-37600 deb util-linux 2.34-0.1ubuntu9.1 []
Low CVE-2021-41617 deb openssh-client 1:8.2p1-4ubuntu0.4 []
Low CVE-2021-43618 deb libgmp10 2:6.2.0+dfsg-4 []
Low CVE-2021-43618 deb libgmp10 2:6.2.0+dfsg-4 []
Medium CVE-2007-2379 npm jquery 2.2.4 []
Medium CVE-2015-9251 npm jquery 2.2.4 []
Medium CVE-2016-10735 npm bootstrap 3.3.7 []
Medium CVE-2018-14040 npm bootstrap 3.3.7 []
Medium CVE-2018-14042 npm bootstrap 3.3.7 []
Medium CVE-2018-20676 npm bootstrap 3.3.7 []
Medium CVE-2018-20677 npm bootstrap 3.3.7 []
Medium CVE-2019-11358 npm jquery 2.2.4 []
Medium CVE-2019-17567 deb apache2 2.4.41-4ubuntu3.9 []
Medium CVE-2019-17567 deb apache2-bin 2.4.41-4ubuntu3.9 []
Medium CVE-2019-17567 deb apache2-data 2.4.41-4ubuntu3.9 []
Medium CVE-2019-17567 deb apache2-utils 2.4.41-4ubuntu3.9 []
Medium CVE-2019-8331 npm bootstrap 3.3.7 []
Medium CVE-2020-11022 npm jquery 2.2.4 []
Medium CVE-2020-11023 npm jquery 2.2.4 []
Medium CVE-2020-16156 deb libperl5.30 5.30.0-9ubuntu0.2 []
Medium CVE-2020-16156 deb perl 5.30.0-9ubuntu0.2 []
Medium CVE-2020-16156 deb perl-base 5.30.0-9ubuntu0.2 []
Medium CVE-2020-16156 deb perl-base 5.30.0-9ubuntu0.2 []
Medium CVE-2020-16156 deb perl-modules-5.30 5.30.0-9ubuntu0.2 []
Medium CVE-2020-26291 npm urijs 1.19.0 []
Medium CVE-2020-9794 deb libsqlite3-0 3.31.1-4ubuntu0.2 []
Medium CVE-2021-36222 deb krb5-locales 1.17-6ubuntu4.1 []
Medium CVE-2021-36222 deb libgssapi-krb5-2 1.17-6ubuntu4.1 []
Medium CVE-2021-36222 deb libk5crypto3 1.17-6ubuntu4.1 []
Medium CVE-2021-36222 deb libkrb5-3 1.17-6ubuntu4.1 []
Medium CVE-2021-36222 deb libkrb5support0 1.17-6ubuntu4.1 []
Medium CVE-2021-38604 deb libc-bin 2.31-0ubuntu9.2 []
Medium CVE-2021-38604 deb libc-bin 2.31-0ubuntu9.2 []
Medium CVE-2021-38604 deb libc6 2.31-0ubuntu9.2 []
Medium CVE-2021-38604 deb libc6 2.31-0ubuntu9.2 []
Medium CVE-2021-38604 deb locales 2.31-0ubuntu9.2 []
Medium CVE-2021-3995 deb bsdutils 1:2.34-0.1ubuntu9.1 []
Medium CVE-2021-3995 deb bsdutils 1:2.34-0.1ubuntu9.1 []
Medium CVE-2021-3995 deb fdisk 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3995 deb fdisk 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3995 deb libblkid1 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3995 deb libblkid1 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3995 deb libfdisk1 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3995 deb libfdisk1 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3995 deb libmount1 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3995 deb libmount1 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3995 deb libsmartcols1 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3995 deb libsmartcols1 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3995 deb libuuid1 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3995 deb libuuid1 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3995 deb mount 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3995 deb mount 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3995 deb util-linux 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3995 deb util-linux 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3996 deb bsdutils 1:2.34-0.1ubuntu9.1 []
Medium CVE-2021-3996 deb bsdutils 1:2.34-0.1ubuntu9.1 []
Medium CVE-2021-3996 deb fdisk 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3996 deb fdisk 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3996 deb libblkid1 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3996 deb libblkid1 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3996 deb libfdisk1 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3996 deb libfdisk1 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3996 deb libmount1 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3996 deb libmount1 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3996 deb libsmartcols1 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3996 deb libsmartcols1 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3996 deb libuuid1 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3996 deb libuuid1 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3996 deb mount 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3996 deb mount 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3996 deb util-linux 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3996 deb util-linux 2.34-0.1ubuntu9.1 []
Medium CVE-2021-3999 deb libc-bin 2.31-0ubuntu9.2 []
Medium CVE-2021-3999 deb libc-bin 2.31-0ubuntu9.2 []
Medium CVE-2021-3999 deb libc6 2.31-0ubuntu9.2 []
Medium CVE-2021-3999 deb libc6 2.31-0ubuntu9.2 []
Medium CVE-2021-3999 deb locales 2.31-0ubuntu9.2 []
Medium CVE-2022-23218 deb libc-bin 2.31-0ubuntu9.2 []
Medium CVE-2022-23218 deb libc-bin 2.31-0ubuntu9.2 []
Medium CVE-2022-23218 deb libc6 2.31-0ubuntu9.2 []
Medium CVE-2022-23218 deb libc6 2.31-0ubuntu9.2 []
Medium CVE-2022-23218 deb locales 2.31-0ubuntu9.2 []
Medium CVE-2022-23219 deb libc-bin 2.31-0ubuntu9.2 []
Medium CVE-2022-23219 deb libc-bin 2.31-0ubuntu9.2 []
Medium CVE-2022-23219 deb libc6 2.31-0ubuntu9.2 []
Medium CVE-2022-23219 deb libc6 2.31-0ubuntu9.2 []
Medium CVE-2022-23219 deb locales 2.31-0ubuntu9.2 []
Medium CVE-2022-23852 deb libexpat1 2.2.9-1build1 []
Medium CVE-2022-23990 deb libexpat1 2.2.9-1build1 []
Medium GHSA-3329-pjwv-fjpg npm urijs 1.19.0 [1.19.4]
Medium GHSA-3mgp-fx93-9xv5 npm bootstrap 3.3.7 [3.4.0]
Medium GHSA-4p24-vmcr-4gqj npm bootstrap 3.3.7 [3.4.0]
Medium GHSA-6c3j-c64m-qhgq npm jquery 2.2.4 [3.4.0]
Medium GHSA-89gv-h8wf-cg8r npm urijs 1.19.0 [1.19.7]
Medium GHSA-gxr4-xjj5-5px2 npm jquery 2.2.4 [3.5.0]
Medium GHSA-jpcq-cgw6-v4j6 npm jquery 2.2.4 [3.5.0]
Medium GHSA-p6j9-7xhc-rhwp npm urijs 1.19.0 [1.19.6]
Medium GHSA-ph58-4vrj-w6hr npm bootstrap 3.3.7 [3.4.0]
Medium GHSA-pj7m-g53m-7638 npm bootstrap 3.3.7 [3.4.0]
Medium GHSA-rmxg-73gg-4p98 npm jquery 2.2.4 [3.0.0]
Medium GHSA-wh77-3x4m-4q9g npm bootstrap 3.3.7 [3.4.1]
Medium GHSA-wv67-q8rr-grjp npm jquery 2.2.4 [3.4.0]
Negligible CVE-2016-10228 deb libc-bin 2.31-0ubuntu9.2 []
Negligible CVE-2016-10228 deb libc-bin 2.31-0ubuntu9.2 []
Negligible CVE-2016-10228 deb libc6 2.31-0ubuntu9.2 []
Negligible CVE-2016-10228 deb libc6 2.31-0ubuntu9.2 []
Negligible CVE-2016-10228 deb locales 2.31-0ubuntu9.2 []
Negligible CVE-2017-11164 deb libpcre3 2:8.39-12build1 []
Negligible CVE-2017-11164 deb libpcre3 2:8.39-12build1 []
Negligible CVE-2018-1000654 deb libtasn1-6 4.16.0-2 []
Negligible CVE-2018-1000654 deb libtasn1-6 4.16.0-2 []
Negligible CVE-2018-5709 deb krb5-locales 1.17-6ubuntu4.1 []
Negligible CVE-2018-5709 deb libgssapi-krb5-2 1.17-6ubuntu4.1 []
Negligible CVE-2018-5709 deb libk5crypto3 1.17-6ubuntu4.1 []
Negligible CVE-2018-5709 deb libkrb5-3 1.17-6ubuntu4.1 []
Negligible CVE-2018-5709 deb libkrb5support0 1.17-6ubuntu4.1 []
Negligible CVE-2018-6952 deb patch 2.7.6-6 []
Negligible CVE-2020-14155 deb libpcre3 2:8.39-12build1 []
Negligible CVE-2020-14155 deb libpcre3 2:8.39-12build1 []
Negligible CVE-2021-36690 deb libsqlite3-0 3.31.1-4ubuntu0.2 []

Metadata

Metadata

Assignees

Labels

Type

No type

Projects

No projects

Milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions