SAP Knowledge Base Article - Preview

3545266 - Mend Bolt tool is showing vulnerability in package "@sap/approuter@16.2.1" and "@sap/ux-ui5-tooling@1.13.1"

Symptom

MendBolt tool is just scanning the both SAP libraries and highlighting that the SAP libraries are dependent on these vulnerable resource(follow-redirects@1.15.4 and express@4.17.3), @sap/approuter@16.2.1 and @sap/ux-ui5-tooling@1.13.1 both are related to CA-UI5-COR.

@sap/approuter@16.2.1 has dependency on follow-redirects@1.15.4 and @sap/ux-ui5-tooling@1.13.1 has dependency on express@4.17.3


Read more...

Environment

  • MendBolt tool
  • @sap/approuter@16.2.1
  • @sap/ux-ui5-tooling@1.13.1

Product

SAP Business Technology Platform all versions

Keywords

@sap/approuter, @sap/ux-ui5-tooling, MendBolt tool, SAP libraries, Dependent, Vulnerable resource, Fiori tools , KBA , CA-UX-IDE , Tools for developing SAP Fiori applications , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.