Skip to content

fix(deps): update dependency @vonage/server-sdk to v3 (main)#52

Open
mend-for-github-com[bot] wants to merge 1 commit into
mainfrom
whitesource-remediate/main-vonage-server-sdk-3.x
Open

fix(deps): update dependency @vonage/server-sdk to v3 (main)#52
mend-for-github-com[bot] wants to merge 1 commit into
mainfrom
whitesource-remediate/main-vonage-server-sdk-3.x

Conversation

@mend-for-github-com
Copy link
Copy Markdown

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
@vonage/server-sdk (source) ^2.11.2^3.0.0 age adoption passing confidence

By merging this PR, the below vulnerabilities will be automatically resolved:

Severity CVSS Score Vulnerability Reachability
High High 8.7 CVE-2025-7783

Reachable

High High 7.5 CVE-2025-65945

Unreachable

Medium Medium 6.5 CVE-2023-26136

Reachable

Medium Medium 6.4 CVE-2022-23540

Reachable

Medium Medium 5.9 CVE-2022-23539

Reachable

Medium Medium 5.3 CVE-2022-25883

Reachable

Medium Medium 5.0 CVE-2022-23541

Reachable

Low Low 3.7 CVE-2025-15284

Reachable

Low Low 3.7 CVE-2026-2391

Reachable


Release Notes

Vonage/vonage-node-sdk (@​vonage/server-sdk)

v3.0.0

Compare Source

Bug Fixes
  • add top level package-lock (a845782)
  • auth: add signed requests and req updates (887a776)
Features
  • numbers: Add Numbers module code (a78e9f0)
  • numbers: add numbers module) (82805e4)
  • sms: add sms module (4479d03)

v2.11.3

Compare Source


  • If you want to rebase/retry this PR, check this box

@mend-for-github-com mend-for-github-com Bot added the security fix Security fix generated by Mend label May 20, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

security fix Security fix generated by Mend

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants