Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Replace dependency org.hibernate:hibernate-core with org.hibernate.orm:hibernate-core #24

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

dev-mend-for-github-com[bot]
Copy link

@dev-mend-for-github-com dev-mend-for-github-com bot commented Feb 5, 2025

This PR contains the following updates:

Package Type Update Change
org.hibernate:hibernate-core (source) compile replacement 3.6.10.Final -> 6.6.10.Final

By merging this PR, the below vulnerabilities will be automatically resolved:

Severity CVSS Score CVE Reachability
High High 7.4 CVE-2020-25638
Medium Medium 6.5 CVE-2019-14900

This is a special PR that replaces org.hibernate:hibernate-core with the community suggested minimal stable replacement version.


  • If you want to rebase/retry this PR, check this box

@dev-mend-for-github-com dev-mend-for-github-com bot added the security fix Security fix generated by Mend label Feb 5, 2025
@dev-mend-for-github-com dev-mend-for-github-com bot force-pushed the whitesource-remediate/version.hibernate branch 2 times, most recently from 490c487 to 9383f72 Compare February 16, 2025 00:47
@dev-mend-for-github-com dev-mend-for-github-com bot force-pushed the whitesource-remediate/version.hibernate branch from 9383f72 to a6f8bf7 Compare February 23, 2025 00:28
@dev-mend-for-github-com dev-mend-for-github-com bot force-pushed the whitesource-remediate/version.hibernate branch from a6f8bf7 to 7d5ed8a Compare March 9, 2025 00:44
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
security fix Security fix generated by Mend
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants