Open
Description
Below are the list of vulnerabilities reported by dependency scan.
Summary
Tested 195 dependencies for known issues, found 127 issues, 479 vulnerable paths.
Issues to fix by upgrading:
- Upgrade ch.qos.logback:[email protected] to ch.qos.logback:[email protected] to fix
- Upgrade com.flipkart.zjsonpatch:[email protected] to com.flipkart.zjsonpatch:[email protected] to fix
- Upgrade com.github.tomakehurst:[email protected] to com.github.tomakehurst:[email protected] to fix
- Upgrade com.google.guava:[email protected] to com.google.guava:[email protected] to fix
- Upgrade com.squareup.retrofit2:[email protected] to com.squareup.retrofit2:[email protected] to fix
- Upgrade com.thoughtworks.xstream:[email protected] to com.thoughtworks.xstream:[email protected] to fix
- Upgrade io.grpc:[email protected] to io.grpc:[email protected] to fix
- Upgrade io.grpc:[email protected] to io.grpc:[email protected] to fix
- Upgrade io.grpc:[email protected] to io.grpc:[email protected] to fix
- Upgrade io.jaegertracing:[email protected] to io.jaegertracing:[email protected] to fix
- Upgrade junit:[email protected] to junit:[email protected] to fix
- Upgrade kr.motd.maven:[email protected] to kr.motd.maven:[email protected] to fix
- Upgrade org.apache.httpcomponents:[email protected] to org.apache.httpcomponents:[email protected] to fix
- Upgrade org.apache.maven:[email protected] to org.apache.maven:[email protected] to fix
- Upgrade org.eclipse.jetty:[email protected] to org.eclipse.jetty:[email protected] to fix
- Upgrade org.eclipse.jetty:[email protected] to org.eclipse.jetty:[email protected] to fix
- Upgrade org.eclipse.jetty:[email protected] to org.eclipse.jetty:[email protected] to fix
- Upgrade org.elasticsearch:[email protected] to org.elasticsearch:[email protected] to fix
- Upgrade org.elasticsearch:[email protected] to org.elasticsearch:[email protected] to fix
- Upgrade org.influxdb:[email protected] to org.influxdb:[email protected] to fix
- Upgrade org.mock-server:[email protected] to org.mock-server:[email protected] to fix
- Upgrade org.mock-server:[email protected] to org.mock-server:[email protected] to fix
- Upgrade org.postgresql:[email protected] to org.postgresql:[email protected] to fix
A full list of issues is attached in the report below.
Reports attached.
scan report.zip
If there is an exact replica of this repo on source.golabs.io then I can help raising an MR to fix all of these dependencies also. That will help you review the same.
For some reason I am not able to in gitlab.
Metadata
Assignees
Labels
No labels
Activity