Skip to content

Replace dependency mysql:mysql-connector-java with com.mysql:mysql-connector-j#18

Open
dev-mend-for-github-com[bot] wants to merge 1 commit intomasterfrom
whitesource-remediate/mysql-mysql-connector-java-replacement
Open

Replace dependency mysql:mysql-connector-java with com.mysql:mysql-connector-j#18
dev-mend-for-github-com[bot] wants to merge 1 commit intomasterfrom
whitesource-remediate/mysql-mysql-connector-java-replacement

Conversation

@dev-mend-for-github-com
Copy link
Copy Markdown
Contributor

@dev-mend-for-github-com dev-mend-for-github-com bot commented Feb 5, 2025

This PR contains the following updates:

Package Type Update Change
mysql:mysql-connector-java → com.mysql:mysql-connector-j compile replacement 5.1.248.0.33

By merging this PR, the below vulnerabilities will be automatically resolved:

Severity CVSS Score Vulnerability Reachability
High High 8.8 CVE-2018-3258
High High 8.5 CVE-2017-3523
Medium Medium 6.4 CVE-2017-3586
Medium Medium 6.3 CVE-2019-2692
Medium Medium 5.0 CVE-2020-2934
Medium Medium 4.7 CVE-2020-2875
Low Low 3.3 CVE-2017-3589
Low Low 2.2 CVE-2020-2933

This is a special PR that replaces mysql:mysql-connector-java with the community suggested minimal stable replacement version.


  • If you want to rebase/retry this PR, check this box

@dev-mend-for-github-com dev-mend-for-github-com bot added the security fix Security fix generated by Mend label Feb 5, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

security fix Security fix generated by Mend

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants