amaybaum-dev / verademo

A deliberately insecure Java web application
MIT License
0 stars 3 forks source link

Update dependency commons-io:commons-io to v2.7 - autoclosed #5

Closed dev-mend-for-github-com[bot] closed 10 months ago

dev-mend-for-github-com[bot] commented 1 year ago

This PR contains the following updates:

Package Type Update Change
commons-io:commons-io (source) compile minor 2.4 -> 2.7

By merging this PR, the issue #32 will be automatically resolved and closed:

Severity CVSS Score CVE Reachability
Medium Medium 4.8 CVE-2021-29425