[Snyk] Fix for 86 vulnerabilities #51
Open
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Snyk has created this PR to fix one or more vulnerable packages in the `maven` dependencies of this project.
Changes included in this PR
Vulnerabilities that will be fixed
With an upgrade:
Why? Has a fix available, CVSS 9.8
SNYK-JAVA-CHQOSLOGBACK-30208
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 9.8
SNYK-JAVA-CHQOSLOGBACK-31407
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1009829
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1047324
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.2
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1048302
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 9.8
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1052449
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 9.8
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1052450
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Proof of Concept exploit, Has a fix available, CVSS 6.6
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1054588
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1056414
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Proof of Concept exploit, Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1056416
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1056417
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Proof of Concept exploit, Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1056418
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1056419
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Proof of Concept exploit, Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1056420
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Proof of Concept exploit, Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1056421
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1056424
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1056425
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Proof of Concept exploit, Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1056426
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Proof of Concept exploit, Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1056427
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1061931
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Proof of Concept exploit, Has a fix available, CVSS 9.8
SNYK-JAVA-COMFASTERXMLJACKSONCORE-174736
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Proof of Concept exploit, Has a fix available, CVSS 9.8
SNYK-JAVA-COMFASTERXMLJACKSONCORE-31507
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 5.3
SNYK-JAVA-COMFASTERXMLJACKSONCORE-31519
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 5.3
SNYK-JAVA-COMFASTERXMLJACKSONCORE-31520
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 9.8
SNYK-JAVA-COMFASTERXMLJACKSONCORE-31573
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Proof of Concept exploit, Has a fix available, CVSS 9.8
SNYK-JAVA-COMFASTERXMLJACKSONCORE-32043
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-32044
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 9.8
SNYK-JAVA-COMFASTERXMLJACKSONCORE-32111
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Proof of Concept exploit, Has a fix available, CVSS 9.8
SNYK-JAVA-COMFASTERXMLJACKSONCORE-450207
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Mature exploit, Has a fix available, CVSS 9.8
SNYK-JAVA-COMFASTERXMLJACKSONCORE-450917
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 9.8
SNYK-JAVA-COMFASTERXMLJACKSONCORE-455617
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 9.8
SNYK-JAVA-COMFASTERXMLJACKSONCORE-467014
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Mature exploit, Has a fix available, CVSS 9.8
SNYK-JAVA-COMFASTERXMLJACKSONCORE-467015
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-467016
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 9.8
SNYK-JAVA-COMFASTERXMLJACKSONCORE-469674
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 9.8
SNYK-JAVA-COMFASTERXMLJACKSONCORE-469676
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 9.8
SNYK-JAVA-COMFASTERXMLJACKSONCORE-471943
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-472980
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 9.8
SNYK-JAVA-COMFASTERXMLJACKSONCORE-540500
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Proof of Concept exploit, Has a fix available, CVSS 9.8
SNYK-JAVA-COMFASTERXMLJACKSONCORE-548451
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Proof of Concept exploit, Has a fix available, CVSS 9.8
SNYK-JAVA-COMFASTERXMLJACKSONCORE-559094
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Proof of Concept exploit, Has a fix available, CVSS 9.8
SNYK-JAVA-COMFASTERXMLJACKSONCORE-559106
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Proof of Concept exploit, Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-560762
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-560766
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-561362
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-561373
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Proof of Concept exploit, Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-561585
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-561586
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-561587
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-564887
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-564888
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-570625
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-572300
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-572314
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-572316
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Proof of Concept exploit, Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-608664
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-72445
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-72446
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-72447
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-72448
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-72449
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-72450
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-72451
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-72882
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-72883
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-COMFASTERXMLJACKSONCORE-72884
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 5.3
SNYK-JAVA-ORGAPACHEHTTPCOMPONENTS-1048058
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 5.3
SNYK-JAVA-ORGAPACHEHTTPCOMPONENTS-31517
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 5.9
SNYK-JAVA-ORGAPACHETOMCATEMBED-30988
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 9.1
SNYK-JAVA-ORGAPACHETOMCATEMBED-31420
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 7.5
SNYK-JAVA-ORGAPACHETOMCATEMBED-31432
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 9.8
SNYK-JAVA-ORGAPACHETOMCATEMBED-451505
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 7.5
SNYK-JAVA-ORGAPACHETOMCATEMBED-451508
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 6.5
SNYK-JAVA-ORGAPACHETOMCATEMBED-451510
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 5.9
SNYK-JAVA-ORGAPACHETOMCATEMBED-451511
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Mature exploit, Has a fix available, CVSS 8.1
SNYK-JAVA-ORGAPACHETOMCATEMBED-451515
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 7.5
SNYK-JAVA-ORGAPACHETOMCATEMBED-451519
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 7.5
SNYK-JAVA-ORGAPACHETOMCATEMBED-451521
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Proof of Concept exploit, Has a fix available, CVSS 7.1
SNYK-JAVA-ORGAPACHETOMCATEMBED-451526
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 7.5
SNYK-JAVA-ORGAPACHETOMCATEMBED-451527
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 5.3
SNYK-JAVA-ORGAPACHETOMCATEMBED-451529
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 7.5
SNYK-JAVA-ORGAPACHETOMCATEMBED-451531
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 7
SNYK-JAVA-ORGHIBERNATE-451605
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 5.3
SNYK-JAVA-ORGHIBERNATE-568162
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 6.5
SNYK-JAVA-ORGHIBERNATE-569100
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
Why? Has a fix available, CVSS 5.4
SNYK-JAVA-ORGYAML-537645
de.codecentric:spring-boot-admin-server:
1.3.2 -> 2.0.0
(*) Note that the real score may have changed since the PR was raised.
Vulnerabilities that could not be fixed
org.springframework.boot:spring-boot-starter-web@1.3.5.RELEASE
toorg.springframework.boot:spring-boot-starter-web@2.3.0.RELEASE
; Reasoncould not apply upgrade, dependency is managed externally
; Location:https://maven-central.storage-download.googleapis.com/maven2/org/springframework/boot/spring-boot-dependencies/1.3.5.RELEASE/spring-boot-dependencies-1.3.5.RELEASE.pom
Check the changes in this PR to ensure they won't cause issues with your project.
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
🛠 Adjust project settings
📚 Read more about Snyk's upgrade and patch logic