[Snyk] Fix for 39 vulnerabilities #114
Open
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Snyk has created this PR to fix 39 vulnerabilities in the maven dependencies of this project.
Snyk changed the following file(s):
pom.xmlVulnerabilities that will be fixed with an upgrade:
SNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1569183
Major version upgradeMatureSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1040458
Proof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1569176
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1569177
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1569178
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1569179
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1569180
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1569181
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1569182
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1569185
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1569186
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1569187
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1569190
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1569191
Major version upgradeProof of ConceptSNYK-JAVA-ORGAPACHETOMCATEMBED-10676854
Major version upgradeNo Known ExploitSNYK-JAVA-ORGAPACHECOMMONS-10734078
3.8.1->3.18.0No Known ExploitSNYK-JAVA-COMFASTERXMLJACKSONCORE-10500754
Major version upgradeNo Known ExploitSNYK-JAVA-ORGAPACHETOMCATEMBED-10674391
Major version upgradeNo Known ExploitSNYK-JAVA-ORGAPACHETOMCATEMBED-10676855
Major version upgradeNo Known ExploitSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1051967
Major version upgradeMatureSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-456705
No Known ExploitSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1088337
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1569189
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1294540
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1088332
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1088334
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1088336
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-460764
MatureSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-3182897
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1088328
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1088331
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-2388977
Major version upgradeNo Known ExploitSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1051966
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1088329
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1088330
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1088333
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1088335
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-1088338
Major version upgradeProof of ConceptSNYK-JAVA-COMTHOUGHTWORKSXSTREAM-3091180
Major version upgradeNo Known ExploitVulnerabilities that could not be fixed
org.springframework.boot:spring-boot-starter-web@2.1.2.RELEASEtoorg.springframework.boot:spring-boot-starter-web@3.3.7; Reasoncould not apply upgrade, dependency is managed externally; Location:https://maven-central.storage-download.googleapis.com/maven2/org/springframework/boot/spring-boot-dependencies/2.1.2.RELEASE/spring-boot-dependencies-2.1.2.RELEASE.pomorg.springframework.cloud:spring-cloud-starter-netflix-eureka-client@2.1.0.RELEASEtoorg.springframework.cloud:spring-cloud-starter-netflix-eureka-client@4.1.3; Reasoncould not apply upgrade, dependency is managed externally; Location:provenance does not contain locationImportant
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Deserialization of Untrusted Data
🦉 Arbitrary File Deletion
🦉 Server-Side Request Forgery (SSRF)
🦉 More lessons are available in Snyk Learn