npm: bump puppeteer from 13.7.0 to 24.27.0 #3512
Security Report
You have successfully remediated 28 vulnerabilities, but introduced 19 new vulnerabilities in this branch.
❌ New vulnerabilities:
| Vulnerability | Severity | Vulnerable Library | Direct Library | Suggested Fix | Issue | |
|---|---|---|---|---|---|---|
CVE-2025-1302Path to dependency file: /tilt_modules/tilt_inspector/package.json Path to vulnerable library: /tilt_modules/tilt_inspector/node_modules/jsonpath-plus/package.json Dependency Hierarchy: -> tilt-inspector-0.1.8.tgz (Root Library) -> client-node-0.14.3.tgz -> ❌ jsonpath-plus-0.19.0.tgz (Vulnerable Library) |
9.8 | Transitive jsonpath-plus-0.19.0.tgz |
tilt-inspector-0.1.8.tgz | Transitive jsonpath-plus - 10.3.0 |
None | |
CVE-2024-21534Path to dependency file: /tilt_modules/tilt_inspector/package.json Path to vulnerable library: /tilt_modules/tilt_inspector/node_modules/jsonpath-plus/package.json Dependency Hierarchy: -> tilt-inspector-0.1.8.tgz (Root Library) -> client-node-0.14.3.tgz -> ❌ jsonpath-plus-0.19.0.tgz (Vulnerable Library) |
9.8 | Transitive jsonpath-plus-0.19.0.tgz |
tilt-inspector-0.1.8.tgz | Transitive jsonpath-plus - 10.2.0 |
None | |
CVE-2022-37601Path to dependency file: /tilt_modules/tilt_inspector/package.json Path to vulnerable library: /tilt_modules/tilt_inspector/node_modules/loader-utils/package.json Dependency Hierarchy: -> tilt-inspector-0.1.8.tgz (Root Library) -> next-11.1.4.tgz -> styled-jsx-4.0.1.tgz -> ❌ loader-utils-1.2.3.tgz (Vulnerable Library) |
9.8 | Transitive loader-utils-1.2.3.tgz |
tilt-inspector-0.1.8.tgz | Transitive 1.4.1 |
None | |
CVE-2021-42740Path to dependency file: /tilt_modules/tilt_inspector/package.json Path to vulnerable library: /tilt_modules/tilt_inspector/node_modules/shell-quote/package.json Dependency Hierarchy: -> tilt-inspector-0.1.8.tgz (Root Library) -> next-11.1.4.tgz -> react-dev-overlay-11.1.4.tgz -> ❌ shell-quote-1.7.2.tgz (Vulnerable Library) |
9.8 | Transitive shell-quote-1.7.2.tgz |
tilt-inspector-0.1.8.tgz | Transitive 1.7.3 |
None | |
CVE-2025-29927Path to dependency file: /tilt_modules/tilt_inspector/package.json Path to vulnerable library: /tilt_modules/tilt_inspector/node_modules/next/package.json Dependency Hierarchy: -> tilt-inspector-0.1.8.tgz (Root Library) -> ❌ next-11.1.4.tgz (Vulnerable Library) |
9.1 | Transitive next-11.1.4.tgz |
tilt-inspector-0.1.8.tgz | Transitive 12.3.5 |
None | |
CVE-2025-7783Path to dependency file: /tilt_modules/tilt_inspector/package.json Path to vulnerable library: /tilt_modules/tilt_inspector/node_modules/request/node_modules/form-data/package.json Dependency Hierarchy: -> tilt-inspector-0.1.8.tgz (Root Library) -> client-node-0.14.3.tgz -> request-2.88.2.tgz -> ❌ form-data-2.3.3.tgz (Vulnerable Library) |
8.7 | Transitive form-data-2.3.3.tgz |
tilt-inspector-0.1.8.tgz | Transitive 2.5.4 |
None | |
CVE-2024-51479Path to dependency file: /tilt_modules/tilt_inspector/package.json Path to vulnerable library: /tilt_modules/tilt_inspector/node_modules/next/package.json Dependency Hierarchy: -> tilt-inspector-0.1.8.tgz (Root Library) -> ❌ next-11.1.4.tgz (Vulnerable Library) |
7.5 | Transitive next-11.1.4.tgz |
tilt-inspector-0.1.8.tgz | Transitive 13.5.8 |
None | |
CVE-2022-37603Path to dependency file: /tilt_modules/tilt_inspector/package.json Path to vulnerable library: /tilt_modules/tilt_inspector/node_modules/loader-utils/package.json Dependency Hierarchy: -> tilt-inspector-0.1.8.tgz (Root Library) -> next-11.1.4.tgz -> styled-jsx-4.0.1.tgz -> ❌ loader-utils-1.2.3.tgz (Vulnerable Library) |
7.5 | Transitive loader-utils-1.2.3.tgz |
tilt-inspector-0.1.8.tgz | Transitive 1.4.2 |
None | |
CVE-2025-57822Path to dependency file: /tilt_modules/tilt_inspector/package.json Path to vulnerable library: /tilt_modules/tilt_inspector/node_modules/next/package.json Dependency Hierarchy: -> tilt-inspector-0.1.8.tgz (Root Library) -> ❌ next-11.1.4.tgz (Vulnerable Library) |
6.5 | Transitive next-11.1.4.tgz |
tilt-inspector-0.1.8.tgz | Transitive 14.2.32 |
None | |
CVE-2023-26136Path to dependency file: /tilt_modules/tilt_inspector/package.json Path to vulnerable library: /tilt_modules/tilt_inspector/node_modules/tough-cookie/package.json Dependency Hierarchy: -> tilt-inspector-0.1.8.tgz (Root Library) -> client-node-0.14.3.tgz -> request-2.88.2.tgz -> ❌ tough-cookie-2.5.0.tgz (Vulnerable Library) |
6.5 | Transitive tough-cookie-2.5.0.tgz |
tilt-inspector-0.1.8.tgz | Transitive 4.1.3 |
None | |
CVE-2025-57752Path to dependency file: /tilt_modules/tilt_inspector/package.json Path to vulnerable library: /tilt_modules/tilt_inspector/node_modules/next/package.json Dependency Hierarchy: -> tilt-inspector-0.1.8.tgz (Root Library) -> ❌ next-11.1.4.tgz (Vulnerable Library) |
6.2 | Transitive next-11.1.4.tgz |
tilt-inspector-0.1.8.tgz | Transitive 14.2.31 |
None | |
CVE-2025-27789Path to dependency file: /tilt_modules/tilt_inspector/package.json Path to vulnerable library: /tilt_modules/tilt_inspector/node_modules/next/node_modules/@babel/runtime/package.json Dependency Hierarchy: -> tilt-inspector-0.1.8.tgz (Root Library) -> next-11.1.4.tgz -> ❌ runtime-7.15.3.tgz (Vulnerable Library) |
6.2 | Transitive runtime-7.15.3.tgz |
tilt-inspector-0.1.8.tgz | Transitive 7.26.10 |
None | |
CVE-2023-28155Path to dependency file: /tilt_modules/tilt_inspector/package.json Path to vulnerable library: /tilt_modules/tilt_inspector/node_modules/request/package.json Dependency Hierarchy: -> tilt-inspector-0.1.8.tgz (Root Library) -> client-node-0.14.3.tgz -> ❌ request-2.88.2.tgz (Vulnerable Library) |
6.1 | Transitive request-2.88.2.tgz |
tilt-inspector-0.1.8.tgz | Transitive @cypress/request - 3.0.0 |
None | |
CVE-2024-47831Path to dependency file: /tilt_modules/tilt_inspector/package.json Path to vulnerable library: /tilt_modules/tilt_inspector/node_modules/next/package.json Dependency Hierarchy: -> tilt-inspector-0.1.8.tgz (Root Library) -> ❌ next-11.1.4.tgz (Vulnerable Library) |
5.9 | Transitive next-11.1.4.tgz |
tilt-inspector-0.1.8.tgz | Transitive 13.5.8 |
None | |
CVE-2022-23646Path to dependency file: /tilt_modules/tilt_inspector/package.json Path to vulnerable library: /tilt_modules/tilt_inspector/node_modules/next/package.json Dependency Hierarchy: -> tilt-inspector-0.1.8.tgz (Root Library) -> ❌ next-11.1.4.tgz (Vulnerable Library) |
5.9 | Transitive next-11.1.4.tgz |
tilt-inspector-0.1.8.tgz | None | ||
CVE-2024-47764Path to dependency file: /tilt_modules/tilt_inspector/package.json Path to vulnerable library: /tilt_modules/tilt_inspector/node_modules/cookie/package.json Dependency Hierarchy: -> tilt-inspector-0.1.8.tgz (Root Library) -> universal-cookie-4.0.4.tgz -> ❌ cookie-0.4.2.tgz (Vulnerable Library) |
5.3 | Transitive cookie-0.4.2.tgz |
tilt-inspector-0.1.8.tgz | Transitive 0.7.0 |
None | |
CVE-2023-44270Path to dependency file: /tilt_modules/tilt_inspector/package.json Path to vulnerable library: /tilt_modules/tilt_inspector/node_modules/postcss/package.json Dependency Hierarchy: -> tilt-inspector-0.1.8.tgz (Root Library) -> next-11.1.4.tgz -> ❌ postcss-8.2.15.tgz (Vulnerable Library) |
5.3 | Transitive postcss-8.2.15.tgz |
tilt-inspector-0.1.8.tgz | Transitive 8.4.31 |
None | |
CVE-2025-55173Path to dependency file: /tilt_modules/tilt_inspector/package.json Path to vulnerable library: /tilt_modules/tilt_inspector/node_modules/next/package.json Dependency Hierarchy: -> tilt-inspector-0.1.8.tgz (Root Library) -> ❌ next-11.1.4.tgz (Vulnerable Library) |
4.3 | Transitive next-11.1.4.tgz |
tilt-inspector-0.1.8.tgz | None | ||
CVE-2025-32421Path to dependency file: /tilt_modules/tilt_inspector/package.json Path to vulnerable library: /tilt_modules/tilt_inspector/node_modules/next/package.json Dependency Hierarchy: -> tilt-inspector-0.1.8.tgz (Root Library) -> ❌ next-11.1.4.tgz (Vulnerable Library) |
3.7 | Transitive next-11.1.4.tgz |
tilt-inspector-0.1.8.tgz | Transitive 14.2.24 |
None |
✔️ Remediated vulnerabilities:
| Vulnerability | Vulnerable Library |
|---|---|
| CVE-2023-32681 | requests-2.28.1-py3-none-any.whl |
| CVE-2024-6345 | setuptools-65.5.0-py3-none-any.whl |
| CVE-2022-24439 | GitPython-3.1.29-py3-none-any.whl |
| CVE-2024-22195 | Jinja2-3.1.2-py3-none-any.whl |
| CVE-2024-37891 | urllib3-1.26.12-py2.py3-none-any.whl |
| CVE-2024-47081 | requests-2.28.1-py3-none-any.whl |
| CVE-2024-34064 | Jinja2-3.1.2-py3-none-any.whl |
| CVE-2023-45803 | urllib3-1.26.12-py2.py3-none-any.whl |
| CVE-2024-56201 | Jinja2-3.1.2-py3-none-any.whl |
| CVE-2024-5569 | zipp-3.10.0-py3-none-any.whl |
| CVE-2022-40896 | Pygments-2.13.0-py3-none-any.whl |
| CVE-2025-47273 | setuptools-65.5.0-py3-none-any.whl |
| CVE-2024-22190 | GitPython-3.1.29-py3-none-any.whl |
| CVE-2023-40267 | GitPython-3.1.29-py3-none-any.whl |
| CVE-2024-39689 | certifi-2022.9.24-py3-none-any.whl |
| CVE-2023-43804 | urllib3-1.26.12-py2.py3-none-any.whl |
| CVE-2025-27516 | Jinja2-3.1.2-py3-none-any.whl |
| CVE-2025-59940 | mkdocs_include_markdown_plugin-3.9.1-py3-none-any.whl |
| CVE-2024-3651 | idna-3.4-py3-none-any.whl |
| CVE-2024-56326 | Jinja2-3.1.2-py3-none-any.whl |
| CVE-2023-37920 | certifi-2022.9.24-py3-none-any.whl |
| CVE-2025-50181 | urllib3-1.26.12-py2.py3-none-any.whl |
| CVE-2023-41040 | GitPython-3.1.29-py3-none-any.whl |
| CVE-2022-40897 | setuptools-65.5.0-py3-none-any.whl |
| CVE-2024-35195 | requests-2.28.1-py3-none-any.whl |
| CVE-2022-23491 | certifi-2022.9.24-py3-none-any.whl |
| CVE-2023-40590 | GitPython-3.1.29-py3-none-any.whl |
| CVE-2023-32309 | pymdown_extensions-9.7-py3-none-any.whl |
Base branch total remaining vulnerabilities: 30
Base branch commit: null
Total libraries scanned: 572
Scan token: 2fd37cba4bee43eba94fdd7d8fee3889