Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update dependency com.fasterxml.jackson.core:jackson-databind to v2.7.8 (dev) #210

Open
wants to merge 1 commit into
base: dev
Choose a base branch
from

Conversation

mend-for-github.aaakk.us.kg[bot]
Copy link
Contributor

@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot commented Jun 29, 2022

This PR contains the following updates:

Package Type Update Change
com.fasterxml.jackson.core:jackson-databind (source) compile patch 2.7.2 -> 2.7.8

By merging this PR, the below issues will be automatically resolved and closed:

Severity CVSS Score CVE GitHub Issue
Critical 10.0 CVE-2018-14721 #45
Critical 9.8 CVE-2017-15095 #38
Critical 9.8 CVE-2017-17485 #39
Critical 9.8 CVE-2017-7525 #40
Critical 9.8 CVE-2018-11307 #41
Critical 9.8 CVE-2018-14718 #44
Critical 9.8 CVE-2018-14719 #190
Critical 9.8 CVE-2018-14720 #162
Critical 9.8 CVE-2018-19360 #46
Critical 9.8 CVE-2018-19361 #47
Critical 9.8 CVE-2018-19362 #49
Critical 9.8 CVE-2018-7489 #53
Critical 9.8 CVE-2019-10202 #176
Critical 9.8 CVE-2019-14379 #58
Critical 9.8 CVE-2019-14540 #62
Critical 9.8 CVE-2019-14892 #185
Critical 9.8 CVE-2019-14893 #184
Critical 9.8 CVE-2019-16335 #65
Critical 9.8 CVE-2019-16942 #67
Critical 9.8 CVE-2019-16943 #69
Critical 9.8 CVE-2019-17267 #71
Critical 9.8 CVE-2019-17531 #73
Critical 9.8 CVE-2019-20330 #143
Critical 9.8 CVE-2020-8840 #175
Critical 9.8 CVE-2020-9546 #186
Critical 9.8 CVE-2020-9547 #187
Critical 9.8 CVE-2020-9548 #188
High 8.8 CVE-2020-10672 #191
High 8.8 CVE-2020-10673 #192
High 8.8 CVE-2020-10968 #194
High 8.8 CVE-2020-10969 #195
High 8.8 CVE-2020-11111 #178
High 8.8 CVE-2020-11112 #180
High 8.8 CVE-2020-11113 #179
High 8.1 CVE-2018-5968 #51
High 8.1 CVE-2020-10650 #266
High 8.1 CVE-2020-11619 #163
High 8.1 CVE-2020-11620 #166
High 8.1 CVE-2020-14060 #181
High 8.1 CVE-2020-14061 #182
High 8.1 CVE-2020-14062 #183
High 8.1 CVE-2020-14195 #193
High 8.1 CVE-2020-24616 #197
High 8.1 CVE-2020-24750 #198
High 8.1 CVE-2020-36179 #196
High 8.1 CVE-2020-36180 #168
High 8.1 CVE-2020-36181 #167
High 8.1 CVE-2020-36182 #170
High 8.1 CVE-2020-36183 #169
High 8.1 CVE-2020-36184 #172
High 8.1 CVE-2020-36185 #171
High 8.1 CVE-2020-36186 #174
High 8.1 CVE-2020-36187 #173
High 8.1 CVE-2020-36188 #165
High 8.1 CVE-2020-36189 #164
High 8.1 CVE-2021-20190 #177
High 7.5 CVE-2018-12022 #42
High 7.5 CVE-2018-12023 #43
High 7.5 CVE-2019-12086 #54
High 7.5 CVE-2019-14439 #60
High 7.5 CVE-2020-36518 #189
High 7.5 CVE-2022-42003 #290
High 7.5 CVE-2022-42004 #268
Medium 5.9 CVE-2019-12384 #55
Medium 5.9 CVE-2019-12814 #56

By merging this PR, the below issues will be automatically resolved and closed:

Severity CVSS Score CVE GitHub Issue
Medium 5.3 WS-2018-0124 #123
Medium 5.3 WS-2018-0125 #124

  • If you want to rebase/retry this PR, check this box

@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot added the security fix Security fix generated by WhiteSource label Jun 29, 2022
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency com.fasterxml.jackson.core:jackson-databind to v2.8.6 (dev) Update dependency com.fasterxml.jackson.core:jackson-databind to v2.7.7 (dev) Nov 20, 2022
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot force-pushed the whitesource-remediate/dev-com.fasterxml.jackson.core-jackson-databind-2.x branch from e336df5 to 4af8fa0 Compare November 20, 2022 21:36
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot force-pushed the whitesource-remediate/dev-com.fasterxml.jackson.core-jackson-databind-2.x branch from 4af8fa0 to 0899099 Compare March 27, 2023 03:15
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency com.fasterxml.jackson.core:jackson-databind to v2.7.7 (dev) Update dependency com.fasterxml.jackson.core:jackson-databind to v2.12.7.1 (dev) Mar 27, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency com.fasterxml.jackson.core:jackson-databind to v2.12.7.1 (dev) Update dependency com.fasterxml.jackson.core:jackson-databind to v2.7.8 (dev) Mar 30, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot force-pushed the whitesource-remediate/dev-com.fasterxml.jackson.core-jackson-databind-2.x branch from 0899099 to e48e781 Compare March 30, 2023 12:07
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency com.fasterxml.jackson.core:jackson-databind to v2.7.8 (dev) Update dependency com.fasterxml.jackson.core:jackson-databind to v2.7.8 (dev) - autoclosed Apr 20, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot deleted the whitesource-remediate/dev-com.fasterxml.jackson.core-jackson-databind-2.x branch April 20, 2023 00:18
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency com.fasterxml.jackson.core:jackson-databind to v2.7.8 (dev) - autoclosed Update dependency com.fasterxml.jackson.core:jackson-databind to v2.7.8 (dev) Apr 20, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot restored the whitesource-remediate/dev-com.fasterxml.jackson.core-jackson-databind-2.x branch April 20, 2023 09:37
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency com.fasterxml.jackson.core:jackson-databind to v2.7.8 (dev) Update dependency com.fasterxml.jackson.core:jackson-databind to v2.12.7.1 (dev) Jun 14, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot force-pushed the whitesource-remediate/dev-com.fasterxml.jackson.core-jackson-databind-2.x branch from e48e781 to aa68e44 Compare June 14, 2023 15:23
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot changed the title Update dependency com.fasterxml.jackson.core:jackson-databind to v2.12.7.1 (dev) Update dependency com.fasterxml.jackson.core:jackson-databind to v2.7.8 (dev) Jun 19, 2023
@mend-for-github.aaakk.us.kg mend-for-github.aaakk.us.kg bot force-pushed the whitesource-remediate/dev-com.fasterxml.jackson.core-jackson-databind-2.x branch from aa68e44 to 16da375 Compare June 19, 2023 04:48
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
security fix Security fix generated by WhiteSource
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants