hashgraph / hedera-hcs-s3-monitor-java

Lambda function which monitors an S3 bucket and creates HCS transactions on changes made to files in the bucket
Apache License 2.0
3 stars 2 forks source link

[Snyk] Security upgrade com.amazonaws:aws-java-sdk-kms from 1.11.789 to 1.12.771 #3

Open swirlds-automation opened 2 months ago

swirlds-automation commented 2 months ago

snyk-top-banner

Snyk has created this PR to fix 34 vulnerabilities in the maven dependencies of this project.

Snyk changed the following file(s):

Vulnerabilities that will be fixed with an upgrade:

Issue Score Upgrade
high severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-450917
  705   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found Mature
high severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1054588
  630   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found Proof of Concept
high severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1056416
  630   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found Proof of Concept
high severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1056418
  630   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found Proof of Concept
high severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1056420
  630   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found Proof of Concept
high severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1056421
  630   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found Proof of Concept
high severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1056426
  630   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found Proof of Concept
high severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1056427
  630   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found Proof of Concept
high severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-32043
  630   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found Proof of Concept
high severity Denial of Service (DoS)
SNYK-JAVA-COMFASTERXMLJACKSONCORE-7569538
  585   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found No Known Exploit
high severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1056414
  563   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found No Known Exploit
high severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1056417
  563   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found No Known Exploit
high severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1056419
  563   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found No Known Exploit
high severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1056424
  563   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found No Known Exploit
high severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1056425
  563   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found No Known Exploit
high severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1052449
  555   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found No Known Exploit
high severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1052450
  555   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found No Known Exploit
high severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-1061931
  555   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found No Known Exploit
high severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-32044
  555   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found No Known Exploit
high severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-32111
  555   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found No Known Exploit
high severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-455617
  555   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found No Known Exploit
high severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-471943
  555   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found No Known Exploit
high severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-472980
  555   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found No Known Exploit
high severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-540500
  555   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found No Known Exploit
high severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-6056407
  555   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found No Known Exploit
high severity Denial of Service (DoS)
SNYK-JAVA-COMFASTERXMLJACKSONCORE-2421244
  525   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found No Known Exploit
high severity Denial of Service (DoS)
SNYK-JAVA-COMFASTERXMLJACKSONDATAFORMAT-1047329
  525   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found No Known Exploit
high severity Allocation of Resources Without Limits or Throttling
SNYK-JAVA-SOFTWAREAMAZONION-6153869
  525   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found No Known Exploit
medium severity Denial of Service (DoS)
SNYK-JAVA-COMFASTERXMLJACKSONCORE-3038424
  520   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found Proof of Concept
medium severity Denial of Service (DoS)
SNYK-JAVA-COMFASTERXMLJACKSONCORE-3038426
  520   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found Proof of Concept
medium severity Deserialization of Untrusted Data
SNYK-JAVA-COMFASTERXMLJACKSONCORE-450207
  520   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found Proof of Concept
medium severity Denial of Service (DoS)
SNYK-JAVA-COMFASTERXMLJACKSONCORE-31519
  415   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found No Known Exploit
medium severity Denial of Service (DoS)
SNYK-JAVA-COMFASTERXMLJACKSONCORE-31520
  415   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found No Known Exploit
low severity Information Exposure
SNYK-JAVA-COMMONSCODEC-561518
  335   com.amazonaws:aws-java-sdk-kms:
1.11.789 -> 1.12.771
No Path Found No Known Exploit

[!IMPORTANT]

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.
  • This PR was automatically created by Snyk using the credentials of a real user.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: 🧐 View latest project report πŸ“œ Customise PR templates πŸ›  Adjust project settings πŸ“š Read about Snyk's upgrade logic


Learn how to fix vulnerabilities with free interactive lessons:

πŸ¦‰ Deserialization of Untrusted Data πŸ¦‰ Denial of Service (DoS) πŸ¦‰ Allocation of Resources Without Limits or Throttling