Skip to content

Update pom.xml#1

Open
jbrotsos wants to merge 1 commit intomainfrom
jbrotsos-patch-1
Open

Update pom.xml#1
jbrotsos wants to merge 1 commit intomainfrom
jbrotsos-patch-1

Conversation

@jbrotsos
Copy link
Contributor

No description provided.

@jbrotsos
Copy link
Contributor Author

Logo
Checkmarx One – Scan Summary & Details07a24eae-3872-47ce-8b9c-f7a8993e209f

New Issues

Severity Issue Source File / Package Checkmarx Insight
HIGH CVE-2014-0114 Maven-commons-beanutils:commons-beanutils-1.8.0 Vulnerable Package
HIGH CVE-2016-5007 Maven-org.springframework:spring-core-3.2.4.RELEASE Vulnerable Package
HIGH CVE-2016-5007 Maven-org.springframework.security:spring-security-core-3.2.4.RELEASE Vulnerable Package
HIGH CVE-2016-5007 Maven-org.springframework.security:spring-security-config-3.2.4.RELEASE Vulnerable Package
HIGH CVE-2016-9879 Maven-org.springframework.security:spring-security-core-3.2.4.RELEASE Vulnerable Package
HIGH CVE-2018-1272 Maven-org.springframework:spring-core-3.2.4.RELEASE Vulnerable Package
HIGH CVE-2019-11272 Maven-org.springframework.security:spring-security-core-3.2.4.RELEASE Vulnerable Package
HIGH CVE-2019-17571 Maven-log4j:log4j-1.2.17 Vulnerable Package
HIGH CVE-2021-4104 Maven-log4j:log4j-1.2.17 Vulnerable Package
HIGH CVE-2022-22965 Maven-org.springframework:spring-beans-3.2.8.RELEASE Vulnerable Package
HIGH CVE-2022-23302 Maven-log4j:log4j-1.2.17 Vulnerable Package
HIGH CVE-2022-23305 Maven-log4j:log4j-1.2.17 Vulnerable Package
HIGH CVE-2022-23307 Maven-log4j:log4j-1.2.17 Vulnerable Package
HIGH CVE-2023-49735 Maven-org.apache.tiles:tiles-core-2.2.2 Vulnerable Package
MEDIUM CVE-2014-3578 Maven-org.springframework:spring-core-3.2.4.RELEASE Vulnerable Package
MEDIUM CVE-2019-3795 Maven-org.springframework.security:spring-security-core-3.2.4.RELEASE Vulnerable Package
MEDIUM CVE-2020-15250 Maven-junit:junit-4.8.1 Vulnerable Package
MEDIUM CVE-2020-5408 Maven-org.springframework.security:spring-security-core-3.2.4.RELEASE Vulnerable Package
MEDIUM CVE-2021-22060 Maven-org.springframework:spring-core-3.2.4.RELEASE Vulnerable Package
MEDIUM CVE-2021-22096 Maven-org.springframework:spring-core-3.2.4.RELEASE Vulnerable Package
MEDIUM CVE-2022-22950 Maven-org.springframework:spring-expression-3.2.8.RELEASE Vulnerable Package
MEDIUM CVE-2022-22950 Maven-org.springframework:spring-core-3.2.4.RELEASE Vulnerable Package
MEDIUM CVE-2022-22968 Maven-org.springframework:spring-context-3.2.8.RELEASE Vulnerable Package
MEDIUM CVE-2022-22970 Maven-org.springframework:spring-core-3.2.4.RELEASE Vulnerable Package
MEDIUM CVE-2022-22970 Maven-org.springframework:spring-beans-3.2.8.RELEASE Vulnerable Package
MEDIUM CVE-2022-22971 Maven-org.springframework:spring-core-3.2.4.RELEASE Vulnerable Package
MEDIUM CVE-2022-22976 Maven-org.springframework.security:spring-security-core-3.2.4.RELEASE Vulnerable Package
MEDIUM CVE-2023-20861 Maven-org.springframework:spring-expression-3.2.8.RELEASE Vulnerable Package
MEDIUM CVE-2023-20863 Maven-org.springframework:spring-expression-3.2.8.RELEASE Vulnerable Package

@cx-fatima-goncalves cx-fatima-goncalves mentioned this pull request Jan 16, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant