Closed snyk-bot closed 3 years ago
Kudos, SonarCloud Quality Gate passed!
0 Bugs
0 Vulnerabilities (and 0 Security Hotspots to review)
0 Code Smells
No Coverage information
0.0% Duplication
The version of Java (1.8.0_252) you have used to run this analysis is deprecated and we will stop accepting it accepting it soon.Please update to at least Java 11. Read more here
Merging #411 (b8b53cd) into master (13415f3) will not change coverage. The diff coverage is
n/a
.
@@ Coverage Diff @@
## master #411 +/- ##
=========================================
Coverage 57.31% 57.31%
Complexity 1093 1093
=========================================
Files 227 227
Lines 7197 7197
Branches 474 474
=========================================
Hits 4125 4125
Misses 2889 2889
Partials 183 183
Flag | Coverage Δ | Complexity Δ | |
---|---|---|---|
integration | 7.08% <ø> (ø) |
0.00 <ø> (ø) |
|
unittests | 53.41% <ø> (ø) |
0.00 <ø> (ø) |
Flags with carried forward coverage won't be shown. Click here to find out more.
Continue to review full report at Codecov.
Legend - Click here to learn more
Δ = absolute <relative> (impact)
,ø = not affected
,? = missing data
Powered by Codecov. Last update 13415f3...b8b53cd. Read the comment docs.
Kudos, SonarCloud Quality Gate passed!
0 Bugs
0 Vulnerabilities
0 Security Hotspots
0 Code Smells
No Coverage information
0.0% Duplication
The version of Java (1.8.0_252) you have used to run this analysis is deprecated and we will stop accepting it soon. Please update to at least Java 11. Read more here
Snyk has created this PR to fix one or more vulnerable packages in the `maven` dependencies of this project.
Changes included in this PR
Vulnerabilities that will be fixed
With an upgrade:
Why? Has a fix available, CVSS 9.8
SNYK-JAVA-CHQOSLOGBACK-31407
Why? Has a fix available, CVSS 5.9
SNYK-JAVA-COMGOOGLEGUAVA-32236
org.mitre:openid-connect-client:
1.3.2 -> 1.3.3
Why? Has a fix available, CVSS 3.7
SNYK-JAVA-COMMONSCODEC-561518
Why? Has a fix available, CVSS 8.7
SNYK-JAVA-COMNIMBUSDS-30205
com.mesosphere:marathon-client:
0.6.2 -> 0.6.3
Why? Has a fix available, CVSS 7.5
SNYK-JAVA-COMNIMBUSDS-31558
com.mesosphere:marathon-client:
0.6.2 -> 0.6.3
Why? Has a fix available, CVSS 6.3
SNYK-JAVA-COMNIMBUSDS-536068
com.mesosphere:marathon-client:
0.6.2 -> 0.6.3
Why? Has a fix available, CVSS 8.6
SNYK-JAVA-IOUNDERTOW-1012559
Why? Has a fix available, CVSS 7.5
SNYK-JAVA-IOUNDERTOW-32074
Why? Has a fix available, CVSS 7.5
SNYK-JAVA-IOUNDERTOW-32442
Why? Has a fix available, CVSS 9.8
SNYK-JAVA-IOUNDERTOW-451626
Why? Has a fix available, CVSS 7.5
SNYK-JAVA-IOUNDERTOW-460241
Why? Has a fix available, CVSS 4.8
SNYK-JAVA-IOUNDERTOW-471684
Why? Has a fix available, CVSS 4.8
SNYK-JAVA-IOUNDERTOW-567266
Why? Mature exploit, Has a fix available, CVSS 8.3
SNYK-JAVA-IOUNDERTOW-567770
Why? Has a fix available, CVSS 7.5
SNYK-JAVA-IOUNDERTOW-568918
Why? Has a fix available, CVSS 7.6
SNYK-JAVA-IOUNDERTOW-570455
Why? Has a fix available, CVSS 6.5
SNYK-JAVA-IOUNDERTOW-72304
Why? Has a fix available, CVSS 6.3
SNYK-JAVA-MYSQL-174574
Why? Has a fix available, CVSS 8.8
SNYK-JAVA-MYSQL-451464
Why? Has a fix available, CVSS 3.7
SNYK-JAVA-ORGAPACHEANT-1015405
Why? Has a fix available, CVSS 6.5
SNYK-JAVA-ORGAPACHEANT-569130
Why? Has a fix available, CVSS 9.8
SNYK-JAVA-ORGAPACHEIGNITE-32200
org.apache.ignite:ignite-slf4j:
2.3.0 -> 2.8.1
org.apache.ignite:ignite-spring:
2.3.0 -> 2.8.1
Why? Has a fix available, CVSS 9.8
SNYK-JAVA-ORGAPACHEIGNITE-32428
org.apache.ignite:ignite-slf4j:
2.3.0 -> 2.8.1
org.apache.ignite:ignite-spring:
2.3.0 -> 2.8.1
Why? Has a fix available, CVSS 4.8
SNYK-JAVA-ORGAPACHEIGNITE-456561
org.apache.ignite:ignite-slf4j:
2.3.0 -> 2.8.1
org.apache.ignite:ignite-spring:
2.3.0 -> 2.8.1
Why? Has a fix available, CVSS 9.1
SNYK-JAVA-ORGAPACHEIGNITE-571662
org.apache.ignite:ignite-slf4j:
2.3.0 -> 2.8.1
org.apache.ignite:ignite-spring:
2.3.0 -> 2.8.1
Why? Has a fix available, CVSS 3.1
SNYK-JAVA-ORGAPACHETOMCATEMBED-538488
Why? Has a fix available, CVSS 7.8
SNYK-JAVA-ORGAPACHETOMCATEMBED-538490
Why? Mature exploit, Has a fix available, CVSS 8.1
SNYK-JAVA-ORGAPACHETOMCATEMBED-570072
Why? Has a fix available, CVSS 5.3
SNYK-JAVA-ORGAPACHETOMCATEMBED-584427
Why? Has a fix available, CVSS 5.3
SNYK-JAVA-ORGHIBERNATE-568162
Why? Has a fix available, CVSS 6.5
SNYK-JAVA-ORGHIBERNATE-569100
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-ORGHIBERNATE-584563
Why? Has a fix available, CVSS 8.1
SNYK-JAVA-ORGPOSTGRESQL-173997
Why? Has a fix available, CVSS 8.2
SNYK-JAVA-ORGPOSTGRESQL-571481
Why? Proof of Concept exploit, Has a fix available, CVSS 5.4
SNYK-JAVA-ORGSPRINGFRAMEWORKSECURITYOAUTH-174830
Why? Has a fix available, CVSS 5.4
SNYK-JAVA-ORGYAML-537645
(*) Note that the real score may have changed since the PR was raised.
Vulnerabilities that could not be fixed
mysql:mysql-connector-java@5.1.47
tomysql:mysql-connector-java@8.0.16
; Reasoncould not apply upgrade, dependency is managed externally
; Location:https://maven-central.storage-download.googleapis.com/maven2/org/springframework/boot/spring-boot-dependencies/1.5.21.RELEASE/spring-boot-dependencies-1.5.21.RELEASE.pom
org.liquibase:liquibase-core@3.5.5
toorg.liquibase:liquibase-core@3.8.1
; Reasoncould not apply upgrade, dependency is managed externally
; Location:https://maven-central.storage-download.googleapis.com/maven2/org/springframework/boot/spring-boot-dependencies/1.5.21.RELEASE/spring-boot-dependencies-1.5.21.RELEASE.pom
org.postgresql:postgresql@9.4.1212.jre7
toorg.postgresql:postgresql@42.2.13
; Reasoncould not apply upgrade, dependency is managed externally
; Location:https://maven-central.storage-download.googleapis.com/maven2/org/springframework/boot/spring-boot-dependencies/1.5.21.RELEASE/spring-boot-dependencies-1.5.21.RELEASE.pom
org.springframework.boot:spring-boot-starter-actuator@1.5.21.RELEASE
toorg.springframework.boot:spring-boot-starter-actuator@2.3.0.RELEASE
; Reasoncould not apply upgrade, dependency is managed externally
; Location:https://maven-central.storage-download.googleapis.com/maven2/org/springframework/boot/spring-boot-dependencies/1.5.21.RELEASE/spring-boot-dependencies-1.5.21.RELEASE.pom
org.springframework.boot:spring-boot-starter-cache@1.5.21.RELEASE
toorg.springframework.boot:spring-boot-starter-cache@2.3.0.RELEASE
; Reasoncould not apply upgrade, dependency is managed externally
; Location:https://maven-central.storage-download.googleapis.com/maven2/org/springframework/boot/spring-boot-dependencies/1.5.21.RELEASE/spring-boot-dependencies-1.5.21.RELEASE.pom
org.springframework.boot:spring-boot-starter-data-jpa@1.5.21.RELEASE
toorg.springframework.boot:spring-boot-starter-data-jpa@2.3.0.RELEASE
; Reasoncould not apply upgrade, dependency is managed externally
; Location:https://maven-central.storage-download.googleapis.com/maven2/org/springframework/boot/spring-boot-dependencies/1.5.21.RELEASE/spring-boot-dependencies-1.5.21.RELEASE.pom
org.springframework.boot:spring-boot-starter-hateoas@1.5.21.RELEASE
toorg.springframework.boot:spring-boot-starter-hateoas@2.3.0.RELEASE
; Reasoncould not apply upgrade, dependency is managed externally
; Location:https://maven-central.storage-download.googleapis.com/maven2/org/springframework/boot/spring-boot-dependencies/1.5.21.RELEASE/spring-boot-dependencies-1.5.21.RELEASE.pom
org.springframework.boot:spring-boot-starter-jta-bitronix@1.5.21.RELEASE
toorg.springframework.boot:spring-boot-starter-jta-bitronix@2.3.0.RELEASE
; Reasoncould not apply upgrade, dependency is managed externally
; Location:https://maven-central.storage-download.googleapis.com/maven2/org/springframework/boot/spring-boot-dependencies/1.5.21.RELEASE/spring-boot-dependencies-1.5.21.RELEASE.pom
org.springframework.boot:spring-boot-starter-security@1.5.21.RELEASE
toorg.springframework.boot:spring-boot-starter-security@2.3.0.RELEASE
; Reasoncould not apply upgrade, dependency is managed externally
; Location:https://maven-central.storage-download.googleapis.com/maven2/org/springframework/boot/spring-boot-dependencies/1.5.21.RELEASE/spring-boot-dependencies-1.5.21.RELEASE.pom
org.springframework.boot:spring-boot-starter-undertow@1.5.21.RELEASE
toorg.springframework.boot:spring-boot-starter-undertow@2.3.0.RELEASE
; Reasoncould not apply upgrade, dependency is managed externally
; Location:https://maven-central.storage-download.googleapis.com/maven2/org/springframework/boot/spring-boot-dependencies/1.5.21.RELEASE/spring-boot-dependencies-1.5.21.RELEASE.pom
org.springframework.boot:spring-boot-starter-validation@1.5.21.RELEASE
toorg.springframework.boot:spring-boot-starter-validation@2.3.0.RELEASE
; Reasoncould not apply upgrade, dependency is managed externally
; Location:https://maven-central.storage-download.googleapis.com/maven2/org/springframework/boot/spring-boot-dependencies/1.5.21.RELEASE/spring-boot-dependencies-1.5.21.RELEASE.pom
org.springframework.boot:spring-boot-starter-web@1.5.21.RELEASE
toorg.springframework.boot:spring-boot-starter-web@2.3.0.RELEASE
; Reasoncould not apply upgrade, dependency is managed externally
; Location:https://maven-central.storage-download.googleapis.com/maven2/org/springframework/boot/spring-boot-dependencies/1.5.21.RELEASE/spring-boot-dependencies-1.5.21.RELEASE.pom
org.springframework.security.oauth:spring-security-oauth2@2.0.17.RELEASE
toorg.springframework.security.oauth:spring-security-oauth2@2.4.1.RELEASE
; Reasoncould not apply upgrade, dependency is managed externally
; Location:https://maven-central.storage-download.googleapis.com/maven2/org/springframework/boot/spring-boot-dependencies/1.5.21.RELEASE/spring-boot-dependencies-1.5.21.RELEASE.pom
Check the changes in this PR to ensure they won't cause issues with your project.
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information: 🧐 View latest project report
🛠 Adjust project settings
📚 Read more about Snyk's upgrade and patch logic