🛡️ Security Scan Report

Trivy Vulnerability & Secret Scanner
Service: eizen-agent-ui
Branch: ltest
Build: #53
Date: 2026-02-11 17:55:29

0

Critical

6

High

0

Medium

0

Low

1

Secrets

1

Misconfig

🔴 Vulnerabilities (5)
SeverityCVE IDPackageInstalledFixed InDescription
HIGH CVE-2022-0235 node-fetch 2.1.2 3.1.1, 2.6.7 node-fetch: exposure of sensitive information to an unauthorized actor
HIGH CVE-2024-4367 pdfjs-dist 3.11.174 4.2.67 Mozilla: Arbitrary JavaScript execution in PDF.js
HIGH CVE-2026-23745 tar 6.2.1 7.5.3 node-tar: tar: node-tar: Arbitrary file overwrite and symlink poisoning via unsanitized linkpaths in
HIGH CVE-2026-23950 tar 6.2.1 7.5.4 node-tar: tar: node-tar: Arbitrary file overwrite via Unicode path collision race condition
HIGH CVE-2026-24842 tar 6.2.1 7.5.7 node-tar: tar: node-tar: Arbitrary file creation via path traversal bypass in hardlink security chec
🔑 Secrets (1)
TypeFileLineMatch
AWS src/services/AwsService.ts 6 accessKeyId: "********************",...
⚙️ Misconfigurations (1)
SeverityIDCheckFileMessage
HIGH DS-0002 Image user should not be 'root' Dockerfile Specify at least 1 USER command in Dockerfile with non-root user as argument
📄 Raw JSON Report (click to expand)