[Snyk] Upgrade: com.alibaba:fastjson, javax.mail:mail, javax.xml.bind:jaxb-api, junit:junit, mysql:mysql-connector-java, org.apache.httpcomponents:httpclient, org.freemarker:freemarker, org.apache.struts:struts2-core, org.junit.jupiter:junit-jupiter-api, org.springframework.boot:spring-boot-devtools, org.springframework.boot:spring-boot-starter-amqp, org.springframework.boot:spring-boot-starter-data-jpa, org.springframework.boot:spring-boot-starter-data-mongodb, org.springframework.boot:spring-boot-starter-web, org.springframework.boot:spring-boot-test#367
Open
tt9133github wants to merge 1 commit intomasterfrom
Open
[Snyk] Upgrade: com.alibaba:fastjson, javax.mail:mail, javax.xml.bind:jaxb-api, junit:junit, mysql:mysql-connector-java, org.apache.httpcomponents:httpclient, org.freemarker:freemarker, org.apache.struts:struts2-core, org.junit.jupiter:junit-jupiter-api, org.springframework.boot:spring-boot-devtools, org.springframework.boot:spring-boot-starter-amqp, org.springframework.boot:spring-boot-starter-data-jpa, org.springframework.boot:spring-boot-starter-data-mongodb, org.springframework.boot:spring-boot-starter-web, org.springframework.boot:spring-boot-test#367tt9133github wants to merge 1 commit intomasterfrom
tt9133github wants to merge 1 commit intomasterfrom
Conversation
Snyk has created this PR to upgrade:
- com.alibaba:fastjson from 1.2.25 to 1.2.83_noneautotype.
See this package in maven: https://mvnrepository.com/artifact/com.alibaba/fastjson/
- javax.mail:mail from 1.4 to 1.4.7.
See this package in maven: https://mvnrepository.com/artifact/javax.mail/mail/
- javax.xml.bind:jaxb-api from 2.3.0 to 2.3.1.
See this package in maven: https://mvnrepository.com/artifact/javax.xml.bind/jaxb-api/
- junit:junit from 4.12 to 4.13.2.
See this package in maven: https://mvnrepository.com/artifact/junit/junit/
- mysql:mysql-connector-java from 8.0.16 to 8.0.33.
See this package in maven: https://mvnrepository.com/artifact/mysql/mysql-connector-java/
- org.apache.httpcomponents:httpclient from 4.5.3 to 4.5.14.
See this package in maven: https://mvnrepository.com/artifact/org.apache.httpcomponents/httpclient/
- org.freemarker:freemarker from 2.3.23 to 2.3.33.
See this package in maven: https://mvnrepository.com/artifact/org.freemarker/freemarker/
- org.apache.struts:struts2-core from 2.3.37 to 2.5.33.
See this package in maven: https://mvnrepository.com/artifact/org.apache.struts/struts2-core/
- org.junit.jupiter:junit-jupiter-api from 5.1.1 to 5.11.0.
See this package in maven: https://mvnrepository.com/artifact/org.junit.jupiter/junit-jupiter-api/
- org.springframework.boot:spring-boot-devtools from 2.0.4.RELEASE to 2.7.18.
See this package in maven: https://mvnrepository.com/artifact/org.springframework.boot/spring-boot-devtools/
- org.springframework.boot:spring-boot-starter-amqp from 2.0.4.RELEASE to 2.7.18.
See this package in maven: https://mvnrepository.com/artifact/org.springframework.boot/spring-boot-starter-amqp/
- org.springframework.boot:spring-boot-starter-data-jpa from 2.0.4.RELEASE to 2.7.18.
See this package in maven: https://mvnrepository.com/artifact/org.springframework.boot/spring-boot-starter-data-jpa/
- org.springframework.boot:spring-boot-starter-data-mongodb from 2.0.4.RELEASE to 2.7.18.
See this package in maven: https://mvnrepository.com/artifact/org.springframework.boot/spring-boot-starter-data-mongodb/
- org.springframework.boot:spring-boot-starter-web from 2.0.4.RELEASE to 2.7.18.
See this package in maven: https://mvnrepository.com/artifact/org.springframework.boot/spring-boot-starter-web/
- org.springframework.boot:spring-boot-test from 2.0.4.RELEASE to 2.7.18.
See this package in maven: https://mvnrepository.com/artifact/org.springframework.boot/spring-boot-test/
See this project in Snyk:
https://app.snyk.io/org/t438879/project/b9087c8e-af8e-4d47-8d8a-b4e3eb386a17?utm_source=github&utm_medium=referral&page=upgrade-pr
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Snyk has created this PR to upgrade multiple dependencies.
👯 The following dependencies are linked and will therefore be updated together.ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
com.alibaba:fastjson
from 1.2.25 to 1.2.83_noneautotype | 105 versions ahead of your current version | 2 years ago
on 2022-06-13
javax.mail:mail
from 1.4 to 1.4.7 | 11 versions ahead of your current version | 11 years ago
on 2013-03-09
javax.xml.bind:jaxb-api
from 2.3.0 to 2.3.1 | 1 version ahead of your current version | 6 years ago
on 2018-09-12
junit:junit
from 4.12 to 4.13.2 | 8 versions ahead of your current version | 4 years ago
on 2021-02-13
mysql:mysql-connector-java
from 8.0.16 to 8.0.33 | 17 versions ahead of your current version | a year ago
on 2023-03-07
org.apache.httpcomponents:httpclient
from 4.5.3 to 4.5.14 | 11 versions ahead of your current version | 2 years ago
on 2022-11-30
org.freemarker:freemarker
from 2.3.23 to 2.3.33 | 10 versions ahead of your current version | 4 months ago
on 2024-05-08
org.apache.struts:struts2-core
from 2.3.37 to 2.5.33 | 31 versions ahead of your current version | 9 months ago
on 2023-12-05
org.junit.jupiter:junit-jupiter-api
from 5.1.1 to 5.11.0 | 53 versions ahead of your current version | 24 days ago
on 2024-08-14
org.springframework.boot:spring-boot-devtools
from 2.0.4.RELEASE to 2.7.18 | 116 versions ahead of your current version | 9 months ago
on 2023-11-23
org.springframework.boot:spring-boot-starter-amqp
from 2.0.4.RELEASE to 2.7.18 | 116 versions ahead of your current version | 9 months ago
on 2023-11-23
org.springframework.boot:spring-boot-starter-data-jpa
from 2.0.4.RELEASE to 2.7.18 | 116 versions ahead of your current version | 9 months ago
on 2023-11-23
org.springframework.boot:spring-boot-starter-data-mongodb
from 2.0.4.RELEASE to 2.7.18 | 116 versions ahead of your current version | 9 months ago
on 2023-11-23
org.springframework.boot:spring-boot-starter-web
from 2.0.4.RELEASE to 2.7.18 | 116 versions ahead of your current version | 9 months ago
on 2023-11-23
org.springframework.boot:spring-boot-test
from 2.0.4.RELEASE to 2.7.18 | 116 versions ahead of your current version | 9 months ago
on 2023-11-23
Issues fixed by the recommended upgrade:
SNYK-JAVA-ORGAPACHEHTTPCOMPONENTS-1048058
SNYK-JAVA-ORGAPACHESTRUTS-1049003
SNYK-JAVA-ORGAPACHESTRUTS-2635340
SNYK-JAVA-COMGOOGLEPROTOBUF-2331703
SNYK-JAVA-COMGOOGLEPROTOBUF-3167772
SNYK-JAVA-COMALIBABA-2859222
SNYK-JAVA-COMALIBABA-570967
SNYK-JAVA-ORGAPACHESTRUTS-608098
SNYK-JAVA-ORGAPACHESTRUTS-609765
SNYK-JAVA-ORGFREEMARKER-1076795
SNYK-JAVA-COMGOOGLEPROTOBUF-3040284
SNYK-JAVA-MYSQL-1766958
SNYK-JAVA-MYSQL-2386864
SNYK-JAVA-ORGAPACHESTRUTS-5707101
SNYK-JAVA-ORGAPACHESTRUTS-608097
SNYK-JAVA-ORGAPACHESTRUTS-6100744
SNYK-JAVA-ORGAPACHESTRUTS-6102825
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.
For more information: