[Snyk] Upgrade: com.fasterxml.jackson.datatype:jackson-datatype-jsr310, com.google.guava:guava, commons-io:commons-io, org.apache.commons:commons-exec, org.apache.commons:commons-lang3, org.bitbucket.b_c:jose4j, org.hsqldb:hsqldb, org.postgresql:postgresql, org.projectlombok:lombok, org.springframework.boot:spring-boot-devtools, org.springframework.boot:spring-boot-starter-actuator, org.springframework.boot:spring-boot-starter-data-jpa, org.springframework.boot:spring-boot-starter-security, org.springframework.boot:spring-boot-starter-thymeleaf, org.springframework.boot:spring-boot-starter-undertow, org.springframework.boot:spring-boot-starter-validation, org.springframework.boot:spring-boot-starter-web, org.springframework.retry:spring-retry, org.thymeleaf.extras:thymeleaf-extras-springsecurity5, org.webjars:jquery, org.webjars:bootstrap#79
Open
dstecholution wants to merge 1 commit intodevelopfrom
Open
[Snyk] Upgrade: com.fasterxml.jackson.datatype:jackson-datatype-jsr310, com.google.guava:guava, commons-io:commons-io, org.apache.commons:commons-exec, org.apache.commons:commons-lang3, org.bitbucket.b_c:jose4j, org.hsqldb:hsqldb, org.postgresql:postgresql, org.projectlombok:lombok, org.springframework.boot:spring-boot-devtools, org.springframework.boot:spring-boot-starter-actuator, org.springframework.boot:spring-boot-starter-data-jpa, org.springframework.boot:spring-boot-starter-security, org.springframework.boot:spring-boot-starter-thymeleaf, org.springframework.boot:spring-boot-starter-undertow, org.springframework.boot:spring-boot-starter-validation, org.springframework.boot:spring-boot-starter-web, org.springframework.retry:spring-retry, org.thymeleaf.extras:thymeleaf-extras-springsecurity5, org.webjars:jquery, org.webjars:bootstrap#79dstecholution wants to merge 1 commit intodevelopfrom
dstecholution wants to merge 1 commit intodevelopfrom
Conversation
Snyk has created this PR to upgrade:
- com.fasterxml.jackson.datatype:jackson-datatype-jsr310 from 2.13.0 to 2.17.2.
See this package in maven: https://mvnrepository.com/artifact/com.fasterxml.jackson.datatype/jackson-datatype-jsr310/
- com.google.guava:guava from 30.1-jre to 30.1.1-jre.
See this package in maven: https://mvnrepository.com/artifact/com.google.guava/guava/
- commons-io:commons-io from 2.6 to 2.16.1.
See this package in maven: https://mvnrepository.com/artifact/commons-io/commons-io/
- org.apache.commons:commons-exec from 1.3 to 1.4.0.
See this package in maven: https://mvnrepository.com/artifact/org.apache.commons/commons-exec/
- org.apache.commons:commons-lang3 from 3.12.0 to 3.16.0.
See this package in maven: https://mvnrepository.com/artifact/org.apache.commons/commons-lang3/
- org.bitbucket.b_c:jose4j from 0.7.6 to 0.9.6.
See this package in maven: https://mvnrepository.com/artifact/org.bitbucket.b_c/jose4j/
- org.hsqldb:hsqldb from 2.5.2 to 2.7.3.
See this package in maven: https://mvnrepository.com/artifact/org.hsqldb/hsqldb/
- org.postgresql:postgresql from 42.3.1 to 42.7.3.
See this package in maven: https://mvnrepository.com/artifact/org.postgresql/postgresql/
- org.projectlombok:lombok from 1.18.22 to 1.18.34.
See this package in maven: https://mvnrepository.com/artifact/org.projectlombok/lombok/
- org.springframework.boot:spring-boot-devtools from 2.6.1 to 2.7.18.
See this package in maven: https://mvnrepository.com/artifact/org.springframework.boot/spring-boot-devtools/
- org.springframework.boot:spring-boot-starter-actuator from 2.6.1 to 2.7.18.
See this package in maven: https://mvnrepository.com/artifact/org.springframework.boot/spring-boot-starter-actuator/
- org.springframework.boot:spring-boot-starter-data-jpa from 2.6.1 to 2.7.18.
See this package in maven: https://mvnrepository.com/artifact/org.springframework.boot/spring-boot-starter-data-jpa/
- org.springframework.boot:spring-boot-starter-security from 2.6.1 to 2.7.18.
See this package in maven: https://mvnrepository.com/artifact/org.springframework.boot/spring-boot-starter-security/
- org.springframework.boot:spring-boot-starter-thymeleaf from 2.6.1 to 2.7.18.
See this package in maven: https://mvnrepository.com/artifact/org.springframework.boot/spring-boot-starter-thymeleaf/
- org.springframework.boot:spring-boot-starter-undertow from 2.6.1 to 2.7.18.
See this package in maven: https://mvnrepository.com/artifact/org.springframework.boot/spring-boot-starter-undertow/
- org.springframework.boot:spring-boot-starter-validation from 2.6.1 to 2.7.18.
See this package in maven: https://mvnrepository.com/artifact/org.springframework.boot/spring-boot-starter-validation/
- org.springframework.boot:spring-boot-starter-web from 2.6.1 to 2.7.18.
See this package in maven: https://mvnrepository.com/artifact/org.springframework.boot/spring-boot-starter-web/
- org.springframework.retry:spring-retry from 1.3.1 to 1.3.4.
See this package in maven: https://mvnrepository.com/artifact/org.springframework.retry/spring-retry/
- org.thymeleaf.extras:thymeleaf-extras-springsecurity5 from 3.0.4.RELEASE to 3.1.2.RELEASE.
See this package in maven: https://mvnrepository.com/artifact/org.thymeleaf.extras/thymeleaf-extras-springsecurity5/
- org.webjars:jquery from 3.5.1 to 3.7.1.
See this package in maven: https://mvnrepository.com/artifact/org.webjars/jquery/
- org.webjars:bootstrap from 3.3.7 to 3.4.1.
See this package in maven: https://mvnrepository.com/artifact/org.webjars/bootstrap/
See this project in Snyk:
https://app.snyk.io/org/dstechnolution/project/c7030ff4-fafb-41c4-bd4d-2e0a2d16b9c9?utm_source=github&utm_medium=referral&page=upgrade-pr
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Snyk has created this PR to upgrade multiple dependencies.
👯♂ The following dependencies are linked and will therefore be updated together.ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
com.fasterxml.jackson.datatype:jackson-datatype-jsr310
from 2.13.0 to 2.17.2 | 28 versions ahead of your current version | 2 months ago
on 2024-07-05
com.google.guava:guava
from 30.1-jre to 30.1.1-jre | 2 versions ahead of your current version | 3 years ago
on 2021-03-19
commons-io:commons-io
from 2.6 to 2.16.1 | 12 versions ahead of your current version | 5 months ago
on 2024-04-05
org.apache.commons:commons-exec
from 1.3 to 1.4.0 | 1 version ahead of your current version | 8 months ago
on 2024-01-01
org.apache.commons:commons-lang3
from 3.12.0 to 3.16.0 | 4 versions ahead of your current version | a month ago
on 2024-08-01
org.bitbucket.b_c:jose4j
from 0.7.6 to 0.9.6 | 14 versions ahead of your current version | 6 months ago
on 2024-03-06
org.hsqldb:hsqldb
from 2.5.2 to 2.7.3 | 6 versions ahead of your current version | 3 months ago
on 2024-05-31
org.postgresql:postgresql
from 42.3.1 to 42.7.3 | 29 versions ahead of your current version | 6 months ago
on 2024-03-14
org.projectlombok:lombok
from 1.18.22 to 1.18.34 | 6 versions ahead of your current version | 2 months ago
on 2024-06-28
org.springframework.boot:spring-boot-devtools
from 2.6.1 to 2.7.18 | 33 versions ahead of your current version | 10 months ago
on 2023-11-23
org.springframework.boot:spring-boot-starter-actuator
from 2.6.1 to 2.7.18 | 33 versions ahead of your current version | 10 months ago
on 2023-11-23
org.springframework.boot:spring-boot-starter-data-jpa
from 2.6.1 to 2.7.18 | 33 versions ahead of your current version | 10 months ago
on 2023-11-23
org.springframework.boot:spring-boot-starter-security
from 2.6.1 to 2.7.18 | 33 versions ahead of your current version | 10 months ago
on 2023-11-23
org.springframework.boot:spring-boot-starter-thymeleaf
from 2.6.1 to 2.7.18 | 33 versions ahead of your current version | 10 months ago
on 2023-11-23
org.springframework.boot:spring-boot-starter-undertow
from 2.6.1 to 2.7.18 | 33 versions ahead of your current version | 10 months ago
on 2023-11-23
org.springframework.boot:spring-boot-starter-validation
from 2.6.1 to 2.7.18 | 33 versions ahead of your current version | 10 months ago
on 2023-11-23
org.springframework.boot:spring-boot-starter-web
from 2.6.1 to 2.7.18 | 33 versions ahead of your current version | 10 months ago
on 2023-11-23
org.springframework.retry:spring-retry
from 1.3.1 to 1.3.4 | 3 versions ahead of your current version | 2 years ago
on 2022-10-14
org.thymeleaf.extras:thymeleaf-extras-springsecurity5
from 3.0.4.RELEASE to 3.1.2.RELEASE | 7 versions ahead of your current version | a year ago
on 2023-07-30
org.webjars:jquery
from 3.5.1 to 3.7.1 | 7 versions ahead of your current version | a year ago
on 2023-08-29
org.webjars:bootstrap
from 3.3.7 to 3.4.1 | 3 versions ahead of your current version | 6 years ago
on 2019-02-19
Issues fixed by the recommended upgrade:
SNYK-JAVA-ORGBITBUCKETBC-5488281
SNYK-JAVA-ORGBITBUCKETBC-6139942
SNYK-JAVA-ORGWEBJARS-451164
SNYK-JAVA-ORGWEBJARS-451168
SNYK-JAVA-ORGWEBJARS-479505
SNYK-JAVA-ORGWEBJARS-451160
SNYK-JAVA-ORGWEBJARS-451162
SNYK-JAVA-COMMONSIO-1277109
SNYK-JAVA-ORGBITBUCKETBC-6036303
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.
For more information: