Receiving Amazon Inspector Vulnerability for xlsx, even after it has been updated to the version it asks for, any idea why?

296 views Asked by At

Currently during my normal scans I am receiving a high vulnerability on my front end ECR image.

It is showing:

enter image description here

As you can see it registers the installed version equal to the fixed version.

My npm package has the following:

"xlsx": "https://cdn.sheetjs.com/xlsx-0.19.3/xlsx-0.19.3.tgz"

This is based on the recommendation found here: https://docs.sheetjs.com/docs/getting-started/installation/nodejs/

Is this just a bug or am I missing something? Any help would be truly appreciated.

0

There are 0 answers