alexstanovsky-mend / tools

SPDX Tools
Apache License 2.0
0 stars 0 forks source link

Update dependency org.apache.commons:commons-compress to v1.26.0 #5

Closed mend-for-github-com[bot] closed 2 months ago

mend-for-github-com[bot] commented 6 months ago

This PR contains the following updates:

Package Type Update Change
org.apache.commons:commons-compress (source) compile minor 1.21 -> 1.26.0

By merging this PR, the issue #12 will be automatically resolved and closed:

Severity CVSS Score CVE Reachability
High High 8.1 CVE-2024-25710

Unreachable

Medium Medium 5.5 CVE-2024-26308

Unreachable