Skip to content

Conversation

@mend-for-github-com
Copy link
Contributor

@mend-for-github-com mend-for-github-com bot commented Aug 4, 2025

This PR contains the following updates:

Package Type Update Change
react-scripts (source) dependencies major ^4.0.3 -> ^5.0.0

By merging this PR, the issue #56 will be automatically resolved and closed:

Severity CVSS Score Vulnerability Reachability
Critical Critical 10.0 CVE-2025-6545

Unreachable

Critical Critical 9.8 CVE-2021-3918

Unreachable

Critical Critical 9.8 CVE-2021-42740

Unreachable

Critical Critical 9.8 CVE-2022-0691

Unreachable

Critical Critical 9.8 CVE-2022-29078

Unreachable

Critical Critical 9.8 CVE-2022-37601

Unreachable

Critical Critical 9.8 CVE-2022-37601

Unreachable

Critical Critical 9.8 CVE-2022-37601

Unreachable

Critical Critical 9.8 CVE-2023-42282

Unreachable

Critical Critical 9.8 WS-2021-0153

Unreachable

Critical Critical 9.3 CVE-2023-45133

Unreachable

Critical Critical 9.1 CVE-2022-0686

Unreachable

Critical Critical 9.1 CVE-2024-48949

Unreachable

Critical Critical 9.1 CVE-2025-9288

Unreachable

High High 8.7 CVE-2025-7783

Unreachable

High High 8.6 CVE-2025-12816

Unreachable

High High 8.2 CVE-2021-32803

Unreachable

High High 8.2 CVE-2021-32804

Unreachable

High High 8.2 CVE-2021-37701

Unreachable

High High 8.2 CVE-2021-37713

Unreachable

High High 8.1 CVE-2022-1650

Unreachable

High High 7.8 CVE-2021-43138

Unreachable

High High 7.7 CVE-2021-23386

Unreachable

High High 7.5 CVE-2021-23424

Unreachable

High High 7.5 CVE-2021-27290

Unreachable

High High 7.5 CVE-2022-24771

Unreachable

High High 7.5 CVE-2022-24772

Unreachable

High High 7.5 CVE-2022-37603

Unreachable

High High 7.5 CVE-2022-37603

Unreachable

High High 7.5 CVE-2022-37603

Unreachable

High High 7.5 CVE-2024-37890

Unreachable

High High 7.5 CVE-2024-37890

Unreachable

High High 7.5 CVE-2025-66031

Unreachable

High High 7.4 CVE-2024-29180

Unreachable

High High 7.1 CVE-2022-46175

Unreachable

High High 7.1 CVE-2022-46175

Unreachable

Medium Medium 6.8 CVE-2025-6547

Unreachable

Medium Medium 6.6 WS-2022-0008

Unreachable

Medium Medium 6.5 CVE-2023-26136

Unreachable

Medium Medium 6.5 CVE-2023-26136

Unreachable

Medium Medium 6.5 CVE-2023-46234

Unreachable

Medium Medium 6.4 CVE-2024-43788

Unreachable

Medium Medium 6.2 CVE-2025-27789

Unreachable

Medium Medium 6.2 CVE-2025-27789

Unreachable

Medium Medium 6.2 CVE-2025-27789

Unreachable

Medium Medium 6.2 CVE-2025-27789

Unreachable

Medium Medium 6.2 CVE-2025-27789

Unreachable

Medium Medium 6.1 CVE-2022-0122

Unreachable

Medium Medium 6.1 CVE-2024-47068

Unreachable

Medium Medium 5.3 CVE-2020-28469

Unreachable

Medium Medium 5.3 CVE-2021-23343

Unreachable

Medium Medium 5.3 CVE-2021-23362

Unreachable

Medium Medium 5.3 CVE-2021-23364

Unreachable

Medium Medium 5.3 CVE-2021-23364

Unreachable

Medium Medium 5.3 CVE-2021-23368

Unreachable

Medium Medium 5.3 CVE-2021-23368

Unreachable

Medium Medium 5.3 CVE-2021-23368

Unreachable

Medium Medium 5.3 CVE-2021-23382

Unreachable

Medium Medium 5.3 CVE-2021-23382

Unreachable

Medium Medium 5.3 CVE-2021-23382

Unreachable

Medium Medium 5.3 CVE-2021-32640

Unreachable

Medium Medium 5.3 CVE-2021-32640

Unreachable

Medium Medium 5.3 CVE-2021-3664

Unreachable

Medium Medium 5.3 CVE-2022-0512

Unreachable

Medium Medium 5.3 CVE-2022-0639

Unreachable

Medium Medium 5.3 CVE-2022-24773

Unreachable

Medium Medium 5.3 CVE-2022-25858

Unreachable

Medium Medium 5.3 CVE-2022-25858

Unreachable

Medium Medium 5.3 CVE-2023-26115

Unreachable

Medium Medium 5.3 CVE-2024-4067

Unreachable

Medium Medium 5.3 CVE-2024-4067

Unreachable

Medium Medium 5.3 CVE-2025-66030

Unreachable

Medium Medium 4.3 CVE-2024-55565

Unreachable

Medium Medium 4.0 CVE-2021-23566

Unreachable

Medium Medium 4.0 CVE-2025-32996

Unreachable

Medium Medium 4.0 CVE-2025-32997

Unreachable

Low Low 3.4 CVE-2025-7339

Unreachable

Low Low 3.1 CVE-2025-5889

Unreachable


Release Notes

facebook/create-react-app (react-scripts)

v5.0.0

Compare Source

Inside any created project that has not been ejected, run:

npm install --save --save-exact [email protected]

or

yarn add --exact [email protected]
🐛 Bug Fix
💅 Enhancement
📝 Documentation
🏠 Internal
Committers: 11

5.0.0 (2021-12-14)

Create React App 5.0 is a major release with several new features and the latest version of all major dependencies.

Thanks to all the maintainers and contributors who worked so hard on this release! 🙌


  • If you want to rebase/retry this PR, check this box

@mend-for-github-com mend-for-github-com bot added the security fix Security fix generated by Mend label Aug 4, 2025
@mend-for-github-com mend-for-github-com bot changed the title Update dependency react-scripts to v5 (main) Update dependency react-scripts to v5 (main) - autoclosed Dec 29, 2025
@mend-for-github-com mend-for-github-com bot deleted the whitesource-remediate/main-react-scripts-5.x branch December 29, 2025 14:29
@mend-for-github-com mend-for-github-com bot changed the title Update dependency react-scripts to v5 (main) - autoclosed Update dependency react-scripts to v5 (main) Dec 29, 2025
@mend-for-github-com mend-for-github-com bot reopened this Dec 29, 2025
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/main-react-scripts-5.x branch from 3a571c9 to 40e03d9 Compare December 29, 2025 18:09
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

security fix Security fix generated by Mend

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant