JoshRMendDemo / Java-Demo

Apache License 2.0
0 stars 0 forks source link

Update dependency org.owasp.esapi:esapi to v2.5.4.0 #67

Open mend-for-github-com[bot] opened 2 months ago

mend-for-github-com[bot] commented 2 months ago

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
org.owasp.esapi:esapi (source) 2.1.0.1 -> 2.5.4.0 age adoption passing confidence

By merging this PR, the issue #6 will be automatically resolved and closed:

Severity CVSS Score CVE Reachability
High High 7.5 CVE-2012-0881

Reachable

High High 7.5 CVE-2016-3092

Reachable

High High 7.5 CVE-2022-23457

Unreachable

High High 7.5 CVE-2023-24998

Reachable

High High 7.5 WS-2014-0034

Reachable

High High 7.5 WS-2023-0388

Reachable

High High 7.3 CVE-2014-0107

Unreachable

High High 7.3 CVE-2016-1000031

Reachable

Medium Medium 6.1 CVE-2016-10006

Reachable

Medium Medium 6.1 CVE-2017-14735

Reachable

Medium Medium 6.1 CVE-2021-35043

Reachable

Medium Medium 6.1 CVE-2022-28367

Reachable

Medium Medium 6.1 CVE-2022-29577

Reachable

Medium Medium 6.1 CVE-2023-43643

Unreachable

Medium Medium 6.1 CVE-2024-23635

Reachable

Medium Medium 6.1 WS-2023-0429

Unreachable

Medium Medium 5.9 CVE-2013-4002

Reachable

Medium Medium 5.4 CVE-2022-24891

Unreachable

Medium Medium 5.3 CVE-2009-2625

Reachable

Medium Medium 5.3 CVE-2020-14338

Unreachable

Medium Medium 4.8 CVE-2012-5783

Reachable

Medium Medium 4.8 CVE-2021-29425

Reachable