Skip to content

Conversation

@dependabot
Copy link

@dependabot dependabot bot commented on behalf of github Jul 31, 2025

Bumps org.apache.avro:avro from 1.7.7 to 1.11.4.

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps org.apache.avro:avro from 1.7.7 to 1.11.4.

---
updated-dependencies:
- dependency-name: org.apache.avro:avro
  dependency-version: 1.11.4
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file java Pull requests that update java code labels Jul 31, 2025
@jpeaks-eroad
Copy link

Logo
Checkmarx One – Scan Summary & Details63a79b1d-0bcc-4a7b-a92c-013083105816

Fixed Issues (981)

Great job! The following issues were fixed in this Pull Request

Severity Issue Source File / Package
HIGH CVE-2009-4611 Maven-org.mortbay.jetty:jetty-util-6.1.26
HIGH CVE-2009-4611 Maven-org.mortbay.jetty:jetty-6.1.26
HIGH CVE-2009-5045 Maven-org.mortbay.jetty:jetty-6.1.26
HIGH CVE-2010-2076 Maven-org.apache.cxf:cxf-api-2.5.2
HIGH CVE-2012-0881 Maven-xerces:xercesImpl-2.11.0
HIGH CVE-2013-2186 Maven-commons-fileupload:commons-fileupload-1.2.1
HIGH CVE-2013-4002 Maven-xerces:xercesImpl-2.11.0
HIGH CVE-2013-4366 Maven-org.apache.httpcomponents:httpclient-4.1.2
HIGH CVE-2013-4366 Maven-org.apache.httpcomponents:httpclient-4.0.1
HIGH CVE-2013-4366 Maven-org.apache.httpcomponents:httpclient-4.2.5
HIGH CVE-2014-0050 Maven-commons-fileupload:commons-fileupload-1.2.1
HIGH CVE-2014-0114 Maven-org.apache.struts:struts-core-1.3.8
HIGH CVE-2014-0114 Maven-commons-beanutils:commons-beanutils-1.8.3
HIGH CVE-2014-0114 Maven-commons-beanutils:commons-beanutils-1.8.0
HIGH CVE-2014-0114 Maven-commons-beanutils:commons-beanutils-1.9.1
HIGH CVE-2014-0114 Maven-commons-beanutils:commons-beanutils-1.7.0
HIGH CVE-2014-0225 Maven-org.springframework:spring-oxm-3.2.4.RELEASE
HIGH CVE-2014-3576 Maven-org.apache.activemq:activemq-broker-5.10.0
HIGH CVE-2014-3600 Maven-org.apache.activemq:activemq-broker-5.10.0
HIGH CVE-2014-3600 Maven-org.apache.activemq:activemq-client-5.10.0
HIGH CVE-2014-3612 Maven-org.apache.activemq:activemq-broker-5.10.0
HIGH CVE-2014-3612 Maven-org.apache.activemq:activemq-jaas-5.10.0
HIGH CVE-2014-9515 Maven-net.sf.dozer:dozer-5.5.1
HIGH CVE-2015-0226 Maven-org.apache.ws.security:wss4j-1.6.8
HIGH CVE-2015-0899 Maven-org.apache.struts:struts-core-1.3.8
HIGH CVE-2015-1427 Maven-org.elasticsearch:elasticsearch-1.3.4
HIGH CVE-2015-1832 Maven-org.apache.derby:derby-10.10.2.0
HIGH CVE-2015-1836 Maven-org.apache.hbase:hbase-0.94.10
HIGH CVE-2015-2080 Maven-org.eclipse.jetty:jetty-http-9.2.4.v20141103
HIGH CVE-2015-2080 Maven-org.eclipse.jetty:jetty-util-9.2.4.v20141103
HIGH CVE-2015-2156 Maven-io.netty:netty-3.6.2.Final
HIGH CVE-2015-2156 Maven-org.jboss.netty:netty-3.2.4.Final
HIGH CVE-2015-2156 Maven-io.netty:netty-3.7.0.Final
HIGH CVE-2015-2156 Maven-io.netty:netty-3.9.2.Final
HIGH CVE-2015-2156 Maven-io.netty:netty-all-4.0.21.Final
HIGH CVE-2015-2156 Maven-io.netty:netty-3.9.4.Final
HIGH CVE-2015-2156 Maven-io.netty:netty-codec-http-4.0.24.Final
HIGH CVE-2015-3253 Maven-org.codehaus.groovy:groovy-2.3.7
HIGH CVE-2015-3253 Maven-org.codehaus.groovy:groovy-all-2.3.7
HIGH CVE-2015-4165 Maven-org.elasticsearch:elasticsearch-1.3.4
HIGH CVE-2015-5211 Maven-org.springframework:spring-web-4.1.1.RELEASE
HIGH CVE-2015-5254 Maven-org.apache.activemq:activemq-client-5.10.0
HIGH CVE-2016-0750 Maven-org.infinispan:infinispan-client-hotrod-6.0.2.Final
HIGH CVE-2016-1000027 Maven-org.springframework:spring-webmvc-4.1.1.RELEASE
HIGH CVE-2016-1000027 Maven-org.springframework:spring-web-4.1.1.RELEASE
HIGH CVE-2016-1000031 Maven-commons-fileupload:commons-fileupload-1.2.1
HIGH CVE-2016-1000338 Maven-org.bouncycastle:bcprov-jdk15on-1.51
HIGH CVE-2016-1000340 Maven-org.bouncycastle:bcprov-jdk15on-1.51
HIGH CVE-2016-1000342 Maven-org.bouncycastle:bcprov-jdk15on-1.51
HIGH CVE-2016-1000343 Maven-org.bouncycastle:bcprov-jdk15on-1.51
HIGH CVE-2016-1000344 Maven-org.bouncycastle:bcprov-jdk15on-1.51
HIGH CVE-2016-1000352 Maven-org.bouncycastle:bcprov-jdk15on-1.51
HIGH CVE-2016-10750 Maven-com.hazelcast:hazelcast-3.3.2
HIGH CVE-2016-1181 Maven-org.apache.struts:struts-core-1.3.8
HIGH CVE-2016-1182 Maven-org.apache.struts:struts-core-1.3.8
HIGH CVE-2016-2141 Maven-org.jgroups:jgroups-3.4.1.Final
HIGH CVE-2016-2175 Maven-org.apache.pdfbox:jempbox-1.6.0
HIGH CVE-2016-2175 Maven-org.apache.pdfbox:jempbox-1.8.4
HIGH CVE-2016-2510 Maven-org.beanshell:bsh-2.0b4
HIGH CVE-2016-2510 Maven-org.beanshell:bsh-2.0b5
HIGH CVE-2016-3092 Maven-commons-fileupload:commons-fileupload-1.2.1
HIGH CVE-2016-3674 Maven-com.thoughtworks.xstream:xstream-1.4.7
HIGH CVE-2016-4000 Maven-org.python:jython-2.5.3
HIGH CVE-2016-4216 Maven-com.adobe.xmp:xmpcore-5.1.2
HIGH CVE-2016-4432 Maven-org.apache.qpid:qpid-broker-plugins-amqp-0-10-protocol-0.28
HIGH CVE-2016-4432 Maven-org.apache.qpid:qpid-broker-0.28
HIGH CVE-2016-4432 Maven-org.apache.qpid:qpid-broker-plugins-amqp-0-8-protocol-0.28
HIGH CVE-2016-4437 Maven-org.apache.shiro:shiro-core-1.2.3
HIGH CVE-2016-4800 Maven-org.eclipse.jetty:jetty-util-8.1.16.v20140903
HIGH CVE-2016-4970 Maven-io.netty:netty-all-4.0.21.Final
HIGH CVE-2016-4970 Maven-io.netty:netty-handler-4.0.24.Final
HIGH CVE-2016-4974 Maven-org.apache.qpid:qpid-client-0.28
HIGH CVE-2016-5002 Maven-org.apache.xmlrpc:xmlrpc-client-3.1.3
HIGH CVE-2016-5002 Maven-org.apache.xmlrpc:xmlrpc-common-3.1.3
HIGH CVE-2016-5003 Maven-org.apache.xmlrpc:xmlrpc-common-3.1.3
HIGH CVE-2016-5003 Maven-org.apache.xmlrpc:xmlrpc-client-3.1.3
HIGH CVE-2016-5007 Maven-org.springframework.security:spring-security-config-3.2.5.RELEASE
HIGH CVE-2016-5018 Maven-tomcat:jasper-runtime-5.5.12
HIGH CVE-2016-5018 Maven-tomcat:jasper-runtime-5.5.23
HIGH CVE-2016-6809 Maven-org.apache.tika:tika-parsers-1.5
HIGH CVE-2016-6814 Maven-org.codehaus.groovy:groovy-2.3.7
HIGH CVE-2016-6814 Maven-org.codehaus.groovy:groovy-all-2.3.7
HIGH CVE-2016-8739 Maven-org.apache.cxf:cxf-rt-rs-extension-providers-3.0.2
HIGH CVE-2016-8739 Maven-org.apache.cxf:cxf-rt-frontend-jaxrs-2.5.2
HIGH CVE-2016-8739 Maven-org.apache.cxf:cxf-rt-frontend-jaxrs-3.0.2
HIGH CVE-2016-9177 Maven-com.sparkjava:spark-core-2.0.0
HIGH CVE-2016-9878 Maven-org.springframework:spring-webmvc-4.1.1.RELEASE
HIGH CVE-2016-9879 Maven-org.springframework.security:spring-security-web-3.2.5.RELEASE
HIGH CVE-2017-1000487 Maven-org.codehaus.plexus:plexus-utils-3.0.8
HIGH CVE-2017-1000487 Maven-org.codehaus.plexus:plexus-utils-1.5.6
HIGH CVE-2017-12626 Maven-org.apache.poi:poi-3.10-beta2
HIGH CVE-2017-15089 Maven-org.infinispan:infinispan-client-hotrod-6.0.2.Final
HIGH CVE-2017-15095 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2017-15095 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2017-15095 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2017-15095 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2017-15095 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2017-15288 Maven-org.scala-lang:scala-compiler-2.11.4
HIGH CVE-2017-15288 Maven-org.scala-lang:scala-compiler-2.10.0
HIGH CVE-2017-15702 Maven-org.apache.qpid:qpid-broker-plugins-management-http-0.28
HIGH CVE-2017-17485 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2017-17485 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2017-17485 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2017-17485 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2017-17485 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2017-18640 Maven-org.yaml:snakeyaml-1.13
HIGH CVE-2017-3156 Maven-org.apache.cxf:cxf-core-3.0.2
HIGH CVE-2017-3162 Maven-org.apache.hadoop:hadoop-hdfs-2.2.0
HIGH CVE-2017-3162 Maven-org.apache.hadoop:hadoop-hdfs-2.3.0
HIGH CVE-2017-3163 Maven-org.apache.solr:solr-core-4.9.0
HIGH CVE-2017-3164 Maven-org.apache.solr:solr-core-4.9.0
HIGH CVE-2017-5637 Maven-org.apache.zookeeper:zookeeper-3.4.6
HIGH CVE-2017-5656 Maven-org.apache.cxf:cxf-rt-ws-security-3.0.2
HIGH CVE-2017-5661 Maven-org.apache.xmlgraphics:fop-1.1
HIGH CVE-2017-5662 Maven-org.apache.xmlgraphics:batik-dom-1.7
HIGH CVE-2017-5929 Maven-ch.qos.logback:logback-core-1.1.2
HIGH CVE-2017-5929 Maven-ch.qos.logback:logback-classic-1.1.2
HIGH CVE-2017-5929 Maven-ch.qos.logback:logback-core-1.0.13
HIGH CVE-2017-5929 Maven-ch.qos.logback:logback-classic-1.0.13
HIGH CVE-2017-7525 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2017-7525 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2017-7525 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2017-7525 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2017-7525 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2017-7656 Maven-org.eclipse.jetty:jetty-server-8.1.16.v20140903
HIGH CVE-2017-7656 Maven-org.eclipse.jetty:jetty-http-8.1.15.v20140411
HIGH CVE-2017-7656 Maven-org.eclipse.jetty:jetty-http-8.1.10.v20130312
HIGH CVE-2017-7656 Maven-org.eclipse.jetty:jetty-server-9.2.4.v20141103
HIGH CVE-2017-7656 Maven-org.eclipse.jetty:jetty-http-8.1.16.v20140903
HIGH CVE-2017-7656 Maven-org.eclipse.jetty:jetty-http-9.2.4.v20141103
HIGH CVE-2017-7656 Maven-org.eclipse.jetty:jetty-http-8.1.14.v20131031
HIGH CVE-2017-7657 Maven-org.eclipse.jetty:jetty-server-8.1.16.v20140903
HIGH CVE-2017-7657 Maven-org.eclipse.jetty:jetty-server-9.2.4.v20141103
HIGH CVE-2017-7657 Maven-org.eclipse.jetty:jetty-http-9.2.4.v20141103
HIGH CVE-2017-7657 Maven-org.eclipse.jetty:jetty-http-8.1.16.v20140903
HIGH CVE-2017-7657 Maven-org.eclipse.jetty:jetty-http-8.1.15.v20140411
HIGH CVE-2017-7657 Maven-org.eclipse.jetty:jetty-http-8.1.14.v20131031
HIGH CVE-2017-7657 Maven-org.eclipse.jetty:jetty-http-8.1.10.v20130312
HIGH CVE-2017-7658 Maven-org.eclipse.jetty:jetty-server-9.2.4.v20141103
HIGH CVE-2017-7658 Maven-org.eclipse.jetty:jetty-server-8.1.16.v20140903
HIGH CVE-2017-7957 Maven-com.thoughtworks.xstream:xstream-1.4.7
HIGH CVE-2017-8028 Maven-org.springframework.ldap:spring-ldap-core-1.3.1.RELEASE
HIGH CVE-2017-9735 Maven-org.eclipse.jetty:jetty-util-9.2.4.v20141103
HIGH CVE-2017-9735 Maven-org.eclipse.jetty:jetty-util-8.1.16.v20140903
HIGH CVE-2018-1000613 Maven-org.bouncycastle:bcprov-jdk15on-1.51
HIGH CVE-2018-1000632 Maven-dom4j:dom4j-1.1
HIGH CVE-2018-1000632 Maven-dom4j:dom4j-1.6.1
HIGH CVE-2018-11040 Maven-org.springframework:spring-webmvc-4.1.1.RELEASE
HIGH CVE-2018-11040 Maven-org.springframework:spring-web-4.1.1.RELEASE
HIGH CVE-2018-11307 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2018-11307 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2018-11307 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2018-11307 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2018-11307 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2018-1131 Maven-org.infinispan:infinispan-commons-6.0.2.Final
HIGH CVE-2018-11761 Maven-org.apache.tika:tika-core-1.3
HIGH CVE-2018-11761 Maven-org.apache.tika:tika-core-1.5
HIGH CVE-2018-11768 Maven-org.apache.hadoop:hadoop-hdfs-2.2.0
HIGH CVE-2018-11768 Maven-org.apache.hadoop:hadoop-hdfs-2.3.0
HIGH CVE-2018-11775 Maven-org.apache.activemq:activemq-client-5.10.0
HIGH CVE-2018-11787 Maven-org.apache.karaf.webconsole:org.apache.karaf.webconsole.features-2.4.0
HIGH CVE-2018-11787 Maven-org.apache.karaf.webconsole:org.apache.karaf.webconsole.gogo-2.4.0
HIGH CVE-2018-11788 Maven-org.apache.karaf:org.apache.karaf.util-2.4.0
HIGH CVE-2018-11796 Maven-org.apache.tika:tika-core-1.3
HIGH CVE-2018-11796 Maven-org.apache.tika:tika-core-1.5
HIGH CVE-2018-12022 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2018-12022 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2018-12022 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2018-12022 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2018-12022 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2018-12023 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2018-12023 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2018-12023 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2018-12023 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2018-12023 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2018-1270 Maven-org.springframework:spring-messaging-4.1.1.RELEASE
HIGH CVE-2018-1272 Maven-org.springframework:spring-core-4.1.1.RELEASE
HIGH CVE-2018-1272 Maven-org.springframework:spring-core-3.2.11.RELEASE
HIGH CVE-2018-1272 Maven-org.springframework:spring-core-4.0.7.RELEASE
HIGH CVE-2018-1275 Maven-org.springframework:spring-messaging-4.1.1.RELEASE
HIGH CVE-2018-1308 Maven-org.apache.solr:solr-core-4.9.0
HIGH CVE-2018-1320 Maven-org.apache.thrift:libthrift-0.8.0
HIGH CVE-2018-14718 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2018-14718 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2018-14718 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2018-14718 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2018-14718 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2018-14719 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2018-14719 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2018-14719 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2018-14719 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2018-14719 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2018-14720 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2018-14720 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2018-14720 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2018-14720 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2018-14720 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2018-14721 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2018-14721 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2018-14721 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2018-14721 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2018-14721 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2018-19360 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2018-19360 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2018-19360 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2018-19360 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2018-19360 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2018-19361 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2018-19361 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2018-19361 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2018-19361 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2018-19361 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2018-19362 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2018-19362 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2018-19362 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2018-19362 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2018-19362 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2018-3827 Maven-org.elasticsearch:elasticsearch-1.3.4
HIGH CVE-2018-3831 Maven-org.elasticsearch:elasticsearch-1.3.4
HIGH CVE-2018-5968 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2018-5968 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2018-5968 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2018-5968 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2018-5968 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2018-7489 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2018-7489 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2018-7489 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2018-7489 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2018-7489 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2018-8009 Maven-org.apache.hadoop:hadoop-common-2.3.0
HIGH CVE-2018-8009 Maven-org.apache.hadoop:hadoop-common-2.2.0
HIGH CVE-2018-8012 Maven-org.apache.zookeeper:zookeeper-3.4.6
HIGH CVE-2018-8013 Maven-org.apache.xmlgraphics:batik-dom-1.7
HIGH CVE-2018-8039 Maven-org.apache.cxf:cxf-rt-transports-http-2.5.2
HIGH CVE-2018-8039 Maven-org.apache.cxf:cxf-rt-transports-http-3.0.2
HIGH CVE-2019-0192 Maven-org.apache.solr:solr-core-4.9.0
HIGH CVE-2019-0200 Maven-org.apache.qpid:qpid-broker-plugins-amqp-0-8-protocol-0.28
HIGH CVE-2019-0200 Maven-org.apache.qpid:qpid-broker-plugins-amqp-0-10-protocol-0.28
HIGH CVE-2019-0200 Maven-org.apache.qpid:qpid-broker-core-0.28
HIGH CVE-2019-0200 Maven-org.apache.qpid:qpid-broker-plugins-amqp-1-0-protocol-0.28
HIGH CVE-2019-0205 Maven-org.apache.thrift:libthrift-0.8.0
HIGH CVE-2019-0222 Maven-org.apache.activemq:activemq-mqtt-5.10.0
HIGH CVE-2019-0228 Maven-org.apache.pdfbox:pdfbox-1.6.0
HIGH CVE-2019-0228 Maven-org.apache.pdfbox:pdfbox-1.8.4
HIGH CVE-2019-0231 Maven-org.apache.mina:mina-core-2.0.9
HIGH CVE-2019-10094 Maven-org.apache.tika:tika-core-1.3
HIGH CVE-2019-10094 Maven-org.apache.tika:tika-core-1.5
HIGH CVE-2019-10172 Maven-org.codehaus.jackson:jackson-mapper-asl-1.9.12
HIGH CVE-2019-10172 Maven-org.codehaus.jackson:jackson-mapper-asl-1.9.0
HIGH CVE-2019-10174 Maven-org.infinispan:infinispan-commons-6.0.2.Final
HIGH CVE-2019-10174 Maven-org.infinispan:infinispan-core-6.0.2.Final
HIGH CVE-2019-10202 Maven-org.codehaus.jackson:jackson-core-asl-1.9.0
HIGH CVE-2019-10202 Maven-org.codehaus.jackson:jackson-core-asl-1.9.12
HIGH CVE-2019-11272 Maven-org.springframework.security:spring-security-core-3.2.5.RELEASE
HIGH CVE-2019-12086 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2019-12086 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2019-12086 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2019-12086 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2019-12086 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2019-12419 Maven-org.apache.cxf:cxf-rt-rs-security-oauth2-3.0.2
HIGH CVE-2019-12422 Maven-org.apache.shiro:shiro-core-1.2.3
HIGH CVE-2019-13990 Maven-org.quartz-scheduler:quartz-1.8.6
HIGH CVE-2019-13990 Maven-org.quartz-scheduler:quartz-2.2.0
HIGH CVE-2019-13990 Maven-org.quartz-scheduler:quartz-2.2.1
HIGH CVE-2019-14379 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2019-14379 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2019-14379 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2019-14379 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2019-14379 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2019-14439 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2019-14439 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2019-14439 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2019-14439 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2019-14439 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2019-14540 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2019-14540 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2019-14540 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2019-14540 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2019-14540 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2019-14892 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2019-14892 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2019-14892 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2019-14892 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2019-14892 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2019-14893 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2019-14893 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2019-14893 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2019-14893 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2019-14893 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2019-16335 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2019-16335 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2019-16335 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2019-16335 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2019-16335 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2019-16869 Maven-io.netty:netty-all-4.0.21.Final
HIGH CVE-2019-16869 Maven-io.netty:netty-codec-http-4.0.24.Final
HIGH CVE-2019-16942 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2019-16942 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2019-16942 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2019-16942 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2019-16942 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2019-16943 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2019-16943 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2019-16943 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2019-16943 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2019-16943 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2019-17267 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2019-17267 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2019-17267 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4
HIGH CVE-2019-17267 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2019-17267 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.1.1
HIGH CVE-2019-17359 Maven-org.bouncycastle:bcprov-jdk15on-1.51
HIGH CVE-2019-17531 Maven-com.fasterxml.jackson.core:jackson-databind-2.2.2
HIGH CVE-2019-17531 Maven-com.fasterxml.jackson.core:jackson-databind-2.3.3
HIGH CVE-2019-17531 Maven-com.fasterxml.jackson.core:jackson-databind-2.4.3
HIGH CVE-2019-17531 Maven-com.fasterxml.jackson.core:jackson-databind-2.1.4

More results are available on the CxOne platform

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file java Pull requests that update java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants