Skip to content

OSV scanner: vulnerabilities detected (2026-08-17) #11

Description

@github-actions

OSV Scanner Report

The weekly OSV scan found vulnerabilities in this repo's dependency graph.

Workflow run: https://github.com/lordx64/xinfluencer/actions/runs/32003775367

Top of report

Scanning dir .
Starting filesystem walk for root: /
Scanned /home/runner/work/xinfluencer/xinfluencer/requirements-dev.txt file and found 11 packages
Scanned /home/runner/work/xinfluencer/xinfluencer/requirements.txt file and found 8 packages
End status: 62 dirs visited, 173 inodes visited, 2 Extract calls, 6.190382ms elapsed, 6.190522ms wall time

Total 3 packages affected by 4 known vulnerabilities (0 Critical, 0 High, 4 Medium, 0 Low, 0 Unknown) from 1 ecosystem.
4 vulnerabilities can be fixed.

+-------------------------------------+------+-----------+----------+---------+---------------+----------------------+
| OSV URL                             | CVSS | ECOSYSTEM | PACKAGE  | VERSION | FIXED VERSION | SOURCE               |
+-------------------------------------+------+-----------+----------+---------+---------------+----------------------+
| https://osv.dev/PYSEC-2026-1374     | 5.3  | PyPI      | filelock | 3.19.1  | 3.20.3        | requirements-dev.txt |
| https://osv.dev/GHSA-qmgc-5h2g-mvrw |      |           |          |         |               |                      |
| https://osv.dev/PYSEC-2026-1375     | 6.3  | PyPI      | filelock | 3.19.1  | 3.20.1        | requirements-dev.txt |
| https://osv.dev/GHSA-w853-jp5j-5j7f |      |           |          |         |               |                      |
| https://osv.dev/PYSEC-2026-215      | 6.9  | PyPI      | idna     | 3.9.0   | 3.15          | requirements-dev.txt |
| https://osv.dev/GHSA-65pc-fj4g-8rjx |      |           |          |         |               |                      |
| https://osv.dev/PYSEC-2026-215      | 6.9  | PyPI      | idna     | 3.9.0   | 3.15          | requirements.txt     |
| https://osv.dev/GHSA-65pc-fj4g-8rjx |      |           |          |         |               |                      |
+-------------------------------------+------+-----------+----------+---------+---------------+----------------------+

Full report attached as a workflow artifact: osv-scanner-report.

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    securitySecurity vulnerability

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions