[Backport to 2.11] Backport #1355, #1435, #1441, #1430, #1445 to 2.11 #1471
Mend for GitHub.com / WhiteSource Security Check
failed
Mar 14, 2024 in 6m 40s
Security Report
1 new vulnerabilities were introduced in this branch.
❌ New vulnerabilities:
CVE | Severity | CVSS Score | Vulnerable Library | Suggested Fix | Issue |
---|---|---|---|---|---|
CVE-2021-28170Path to dependency file: /core/build.gradle Path to vulnerable library: /home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.glassfish/javax.el/3.0.0/dd532526e7c8de48e40419e6af1183658a973379/javax.el-3.0.0.jar Dependency Hierarchy: -> cron-utils-9.1.6.jar (Root Library) -> ❌ javax.el-3.0.0.jar (Vulnerable Library) |
Medium | 5.3 | javax.el-3.0.0.jar | Upgrade to version: org.glassfish:jakarta.el:3.0.4, com.sun.el:el-ri:3.0.4 | None |
Base branch total remaining vulnerabilities: 0
Base branch commit: bcaa4e36d86675850b537425b066f3c15cda15cc
Total libraries scanned: 167
Scan token: fea94deb942c4c5795223167dcdd9eb0
Loading