Skip to content

Update dependency com.google.guava:guava to v30 - abandoned#630

Open
mend-for-github-com[bot] wants to merge 1 commit intomasterfrom
whitesource-remediate/com.google.guava-guava-30.x
Open

Update dependency com.google.guava:guava to v30 - abandoned#630
mend-for-github-com[bot] wants to merge 1 commit intomasterfrom
whitesource-remediate/com.google.guava-guava-30.x

Conversation

@mend-for-github-com
Copy link
Copy Markdown

@mend-for-github-com mend-for-github-com Bot commented May 15, 2022

This PR contains the following updates:

Package Update Change
com.google.guava:guava major 18.0 -> 30.0-android
com.google.guava:guava major 20.0 -> 30.0-android
com.google.guava:guava major 16.0 -> 30.0-android
com.google.guava:guava major 10.0 -> 30.0-android

By merging this PR, the below issues will be automatically resolved and closed:

Severity CVSS Score CVE GitHub Issue
Medium 5.9 CVE-2018-10237 #66
Low 3.3 CVE-2020-8908 #91

By merging this PR, the below issues will be automatically resolved and closed:

Severity CVSS Score CVE GitHub Issue
Low 3.3 CVE-2020-8908 #91

Release Notes

google/guava

v23.0

Final Guava 23.0 release.

v22.0

Final Guava 22.0 release.

v21.0

Final Guava 21.0 release.

This release requires Java 8.

v20.0

Final Guava 20.0 release.


  • If you want to rebase/retry this PR, click this checkbox.

@mend-for-github-com mend-for-github-com Bot added the security fix Security fix generated by WhiteSource label May 15, 2022
@mend-for-github-com
Copy link
Copy Markdown
Author

Edited/Blocked Notification

Renovate will not automatically rebase this PR, because it does not recognize the last commit author and assumes somebody else may have edited the PR.

You can manually request rebase by checking the rebase/retry box above.

Warning: custom changes will be lost.

@mend-for-github-com mend-for-github-com Bot changed the title Update dependency com.google.guava:guava to v30 Update dependency com.google.guava:guava to v30 - abandoned Jun 20, 2023
@mend-for-github-com
Copy link
Copy Markdown
Author

Autoclosing Skipped

This PR has been flagged for autoclosing. However, it is being skipped due to the branch being already modified. Please close/delete it manually or report a bug if you think this is in error.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

security fix Security fix generated by WhiteSource

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants