Update dependency org.springframework.boot:spring-boot-starter-web to v3.3.12 - autoclosed #22
Mend for GitHub.com / WhiteSource Security Check
failed
Jun 20, 2025 in 5m 41s
Security Report
1 new vulnerabilities were introduced in this branch.
❌ New vulnerabilities:
| Vulnerability | Severity | Vulnerable Library | Suggested Fix | Issue | |
|---|---|---|---|---|---|
CVE-2025-41234Path to dependency file: /pom.xml Path to vulnerable library: /pom.xml Dependency Hierarchy: -> spring-boot-starter-web-3.3.5.jar (Root Library) -> spring-boot-starter-json-3.3.5.jar -> ❌ spring-web-6.1.14.jar (Vulnerable Library) |
6.5 | spring-web-6.1.14.jar | Upgrade to version: org.springframework:spring-web:6.1.21 | #20 |
Base branch total remaining vulnerabilities: 12
Base branch commit: 23c17d47e49f3863c5f003a9e0d0c66a2a8aafa1
Total libraries scanned: 58
Scan token: 1b2ac2cf8d0b40ff8092893d523e7f7f
Loading