Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore(deps): update dependency com.fasterxml.jackson.core:jackson-databind to v2.12.7.1 #475

Open
wants to merge 1 commit into
base: develop
Choose a base branch
from

Conversation

mend-for-github.aaakk.us.kg[bot]
Copy link

@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot commented Jun 16, 2024

This PR contains the following updates:

Package Type Update Change
com.fasterxml.jackson.core:jackson-databind (source) compile minor 2.9.10.4 -> 2.12.7.1
com.fasterxml.jackson.core:jackson-databind (source) compile minor 2.10.0 -> 2.12.7.1

By merging this PR, the below issues will be automatically resolved and closed:

Severity CVSS Score CVE GitHub Issue
High 8.1 CVE-2020-14060 #439
High 8.1 CVE-2020-14061 #440
High 8.1 CVE-2020-14062 #441
High 8.1 CVE-2020-24750 #443
High 8.1 CVE-2020-35490 #415
High 8.1 CVE-2020-35491 #419
High 8.1 CVE-2020-35728 #402
High 8.1 CVE-2020-36179 #433
High 8.1 CVE-2020-36180 #412
High 8.1 CVE-2020-36181 #411
High 8.1 CVE-2020-36182 #417
High 8.1 CVE-2020-36183 #416
High 8.1 CVE-2020-36184 #420
High 8.1 CVE-2020-36185 #418
High 8.1 CVE-2020-36186 #422
High 8.1 CVE-2020-36187 #421
High 8.1 CVE-2020-36188 #406
High 8.1 CVE-2020-36189 #405
High 8.1 CVE-2021-20190 #431
High 7.5 CVE-2020-25649 #394
High 7.5 CVE-2020-36518 #455
High 7.5 CVE-2022-42003 #450
High 7.5 CVE-2022-42004 #444
High 7.5 WS-2022-0468 #498

By merging this PR, the below issues will be automatically resolved and closed:

Severity CVSS Score CVE GitHub Issue
High 7.5 CVE-2020-25649 #394
High 7.5 CVE-2020-36518 #455
High 7.5 CVE-2021-46877 #397
High 7.5 CVE-2022-42003 #450
High 7.5 CVE-2022-42004 #444
High 7.5 WS-2022-0468 #498

  • If you want to rebase/retry this PR, check this box

@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot added the security fix Security fix generated by WhiteSource label Jun 16, 2024
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot force-pushed the whitesource-remediate/com.fasterxml.jackson.core-jackson-databind-2.x branch from e744a21 to 1b10516 Compare December 24, 2024 12:03
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title chore(deps): update dependency com.fasterxml.jackson.core:jackson-databind to v2.12.7.1 chore(deps): update dependency com.fasterxml.jackson.core:jackson-databind Dec 24, 2024
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title chore(deps): update dependency com.fasterxml.jackson.core:jackson-databind chore(deps): update dependency com.fasterxml.jackson.core:jackson-databind to v2.12.7.1 Jan 22, 2025
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot force-pushed the whitesource-remediate/com.fasterxml.jackson.core-jackson-databind-2.x branch from 1b10516 to 573f7a9 Compare January 22, 2025 12:19
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
security fix Security fix generated by WhiteSource
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants