package-lock.json - Trivy Report - 2026-08-10 10:36:35.663857791 +0000 UTC m=+3.122408222
npm
Package
Vulnerability ID
Severity
Installed Version
Fixed Version
Links
dompurify
GHSA-55q2-fjhq-7xh7
MEDIUM
3.4.12
3.4.13
https://github.com/cure53/DOMPurify
https://github.com/cure53/DOMPurify/commit/3067f7746769
https://github.com/cure53/DOMPurify/pull/1557
https://github.com/cure53/DOMPurify/releases/tag/3.4.13
https://github.com/cure53/DOMPurify/security/advisories/GHSA-55q2-fjhq-7xh7
nanoid
CVE-2026-67213
HIGH
3.3.16
3.3.17, 5.1.6
https://github.com/ai/nanoid
https://github.com/ai/nanoid/commit/cb3626d0f3342fdf179cd425fd9c4fbb92c7d0e7
https://github.com/ai/nanoid/commit/f9d13f150847d117877adee3460a46eceb0cf49b
https://github.com/ai/nanoid/releases/tag/3.3.17
https://github.com/ai/nanoid/releases/tag/5.1.6
https://nvd.nist.gov/vuln/detail/CVE-2026-67213
https://www.vulncheck.com/advisories/nanoid-before-infinite-loop-via-zero-size-in-customalphabet-and-customrandom
postcss
CVE-2026-69153
MEDIUM
8.5.22
8.5.23
https://access.redhat.com/security/cve/CVE-2026-69153
https://github.com/postcss/postcss
https://github.com/postcss/postcss/commit/7beca139e70f9075c6b19700fcb00dd8033e5da8
https://github.com/postcss/postcss/releases/tag/8.5.19
https://github.com/postcss/postcss/security/advisories/GHSA-fxqj-rqcc-2cmp
https://nvd.nist.gov/vuln/detail/CVE-2026-69153
https://www.cve.org/CVERecord?id=CVE-2026-69153
sanitize-html
CVE-2026-53606
MEDIUM
2.17.4
2.17.5
https://access.redhat.com/security/cve/CVE-2026-53606
https://github.com/apostrophecms/apostrophe
https://github.com/apostrophecms/apostrophe/commit/5a88e9630cbbdde33154ef8abe7557ddf7be418b
https://github.com/apostrophecms/apostrophe/pull/5464
https://github.com/apostrophecms/apostrophe/releases/tag/sanitize-html@2.17.5
https://github.com/apostrophecms/apostrophe/security/advisories/GHSA-vccv-cmxp-4j9h
https://nvd.nist.gov/vuln/detail/CVE-2026-53606
https://www.cve.org/CVERecord?id=CVE-2026-53606
No Misconfigurations found
dockerfile
No Vulnerabilities found
Type
Misconf ID
Check
Severity
Message
Dockerfile Security Check
DS026
No HEALTHCHECK defined
LOW
Add HEALTHCHECK instruction in your Dockerfile
https://avd.aquasec.com/misconfig/ds026