amaybaum-dev / verademo

A deliberately insecure Java web application
MIT License
0 stars 3 forks source link

Update dependency commons-fileupload:commons-fileupload to v1.5 #4

Open dev-mend-for-github-com[bot] opened 1 year ago

dev-mend-for-github-com[bot] commented 1 year ago

This PR contains the following updates:

Package Type Update Change
commons-fileupload:commons-fileupload (source) compile minor 1.3.2 -> 1.5

By merging this PR, the issue #21 will be automatically resolved and closed:

Severity CVSS Score CVE Reachability
Critical Critical 9.8 CVE-2016-1000031

Reachable

High High 7.5 CVE-2023-24998

Reachable

High High 7.5 WS-2014-0034

Reachable