Closed sonatype-depshield-staging[bot] closed 6 years ago
Thank you for being an early adopter of DepShield. In an effort provide a more component-centric view of vulnerabilities we are consolidating your issue(s), moving them to a new format, and closing this issue. You can find the new issue here: #18
This application's usage of org.apache.tomcat.embed:tomcat-embed-core:8.5.0 causes a vulnerability to [CVE-2018-8014] The defaults settings for the CORS filter provided in Apache Tomcat 9.0.0.M1 to ... with a CVSS score of 7.5. Details about the vulnerability are available on the OSS Index page for [CVE-2018-8014] The defaults settings for the CORS filter provided in Apache Tomcat 9.0.0.M1 to ....
This is an automated GitHub Issue created by Sonatype DepShield. GitHub Apps, including DepShield, can be managed from the Developer settings of the repository administrators.