5l1D3R / Github-actions

0 stars 0 forks source link

CVE: 2022-21363 found in MySQL java connector - Version: 5.1.35 [JAVA] #30

Open github-actions[bot] opened 1 year ago

github-actions[bot] commented 1 year ago

Veracode Software Composition Analysis

Attribute Details
Library MySQL java connector
Description MySQL java connector
Language JAVA
Vulnerability Privilege Escalation
Vulnerability description mysql-connector is vulnerable to privilege escalation. An attacker can exploit the vulnerability and takeover the MySQL Connectors.
CVE 2022-21363
CVSS score 6
Vulnerability present in version/s 5.1.29-8.0.27
Found library version/s 5.1.35
Vulnerability fixed in version 8.0.28
Library latest version 8.0.31
Fix

Links:

github-actions[bot] commented 1 year ago

Veracode issue link to PR: https://github.com/5l1D3R/Github-actions/pull/2