vuln-check-25 #28
Triggered via pull request
July 15, 2026 14:38
dependabot[bot]
opened
#25
Status
Failure
Total duration
1m 44s
Artifacts
–
critical-vuln-check.yml
on: pull_request_target
vuln-gate
/
check
14s
Annotations
3 errors and 6 notices
|
❌ [VULN-GATE] Critical vulnerability gate failed
simplify9/SW-SimplyApiClientJs is blocked — either the Dependabot Alerts API call failed, or an open CRITICAL-severity alert exists. Checkpoint — 1) Query alerts: ❌ CRITICAL ALERT FOUND. See the step above for affected package(s)/advisory ID(s).
|
|
vuln-gate / check
Process completed with exit code 1.
|
|
❌ [VULN-GATE] Blocked by critical Dependabot alert(s)
simplify9/SW-SimplyApiClientJs has 4 open CRITICAL-severity Dependabot alert(s) — this check/pipeline is blocked until they are resolved or dismissed.
|
|
📝 [SUMMARY] Critical Dependabot Vulnerability Gate
status: failure
|
|
❌ [VULN-GATE] GHSA-896r-f27r-55mw still open
json-schema in package-lock.json still resolves to a vulnerable version in this branch.
|
|
❌ [VULN-GATE] GHSA-xvch-5gv4-984h still open
minimist in package-lock.json still resolves to a vulnerable version in this branch.
|
|
❌ [VULN-GATE] GHSA-67hx-6x53-jw92 still open
@babel/traverse in package-lock.json still resolves to a vulnerable version in this branch.
|
|
❌ [VULN-GATE] GHSA-fjxv-7rqg-78g4 still open
form-data in package-lock.json still resolves to a vulnerable version in this branch.
|
|
🔒 [VULN-GATE] Critical Vulnerability Check
repository: simplify9/SW-SimplyApiClientJs
|