Update dependency commons-io:commons-io to v2.12.0 (dev) #50
Mend for GitHub.com / WhiteSource Security Check
failed
Oct 5, 2024 in 4m 15s
Security Report
You have successfully remediated 3 vulnerabilities, but introduced 1 new vulnerabilities in this branch.
❌ New vulnerabilities:
CVE | Severity | CVSS Score | Vulnerable Library | Suggested Fix | Issue |
---|---|---|---|---|---|
CVE-2024-47554Path to dependency file: /pom.xml Path to vulnerable library: /home/wss-scanner/.m2/repository/commons-io/commons-io/2.12.0/commons-io-2.12.0.jar Dependency Hierarchy: -> ❌ commons-io-2.12.0.jar (Vulnerable Library) |
High | 7.5 | commons-io-2.12.0.jar | Upgrade to version: commons-io:commons-io:2.14.0 | None |
✔️ Remediated vulnerabilities:
CVE | Vulnerable Library |
---|---|
CVE-2024-47554 | commons-io-2.11.0.jar |
CVE-2022-22965 | spring-beans-5.1.1.RELEASE.jar |
CVE-2022-22970 | spring-beans-5.1.1.RELEASE.jar |
Base branch total remaining vulnerabilities: 40
Base branch commit: null
Total libraries scanned: 67
Scan token: 03515bb0acb64f12ad803399763d8e0b
Loading