Cantara / Whydah-UserIdentityBackend

The UserIdentityBackend module of the Whydah IAM/SSO
Apache License 2.0
5 stars 1 forks source link

[Snyk] Fix for 2 vulnerabilities #510

Closed oranheim closed 1 month ago

oranheim commented 1 month ago

snyk-top-banner

Snyk has created this PR to fix 2 vulnerabilities in the maven dependencies of this project.

Snyk changed the following file(s):

Vulnerabilities that will be fixed with an upgrade:

Issue Score Upgrade
medium severity Denial of Service (DoS)
SNYK-JAVA-ORGSPRINGFRAMEWORK-7687447
  631   org.springframework:spring-web:
5.3.34 -> 5.3.38
No Known Exploit
medium severity Allocation of Resources Without Limits or Throttling
SNYK-JAVA-ORGSPRINGFRAMEWORK-7687446
  551   org.springframework:spring-context:
5.3.33 -> 5.3.39
org.springframework:spring-webmvc:
5.3.33 -> 5.3.39
No Known Exploit

[!IMPORTANT]

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.
  • This PR was automatically created by Snyk using the credentials of a real user.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: ๐Ÿง View latest project report ๐Ÿ“œ Customise PR templates ๐Ÿ›  Adjust project settings ๐Ÿ“š Read about Snyk's upgrade logic


Learn how to fix vulnerabilities with free interactive lessons:

๐Ÿฆ‰ Allocation of Resources Without Limits or Throttling ๐Ÿฆ‰ Denial of Service (DoS)