Open twilio-product-security opened 2 years ago
com.google.cloud:google-cloud-speech:
1.8.0 -> 2.6.0
com.sparkjava:spark-core:
2.8.0 -> 2.9.4
(*) Note that the real score may have changed since the PR was raised.
Check the changes in this PR to ensure they won't cause issues with your project.
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information: 🧐 View latest project report
🛠 Adjust project settings
📚 Read more about Snyk's upgrade and patch logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Deserialization of Untrusted Data 🦉 Denial of Service (DoS) 🦉 Denial of Service (DoS)
Snyk has created this PR to fix one or more vulnerable packages in the `maven` dependencies of this project.
Changes included in this PR
Vulnerabilities that will be fixed
With an upgrade:
Why? Has a fix available, CVSS 7.7
SNYK-JAVA-COMGOOGLECODEGSON-1730327
com.google.cloud:google-cloud-speech:
1.8.0 -> 2.6.0
Why? Proof of Concept exploit, Has a fix available, CVSS 3.3
SNYK-JAVA-COMGOOGLEGUAVA-1015415
com.google.cloud:google-cloud-speech:
1.8.0 -> 2.6.0
Why? Has a fix available, CVSS 7.5
SNYK-JAVA-COMGOOGLEPROTOBUF-2331703
com.google.cloud:google-cloud-speech:
1.8.0 -> 2.6.0
Why? Recently disclosed, Has a fix available, CVSS 5.7
SNYK-JAVA-COMGOOGLEPROTOBUF-3040284
com.google.cloud:google-cloud-speech:
1.8.0 -> 2.6.0
Why? Has a fix available, CVSS 5.9
SNYK-JAVA-IOGRPC-571957
com.google.cloud:google-cloud-speech:
1.8.0 -> 2.6.0
Why? Has a fix available, CVSS 5.3
SNYK-JAVA-ORGAPACHEHTTPCOMPONENTS-1048058
com.google.cloud:google-cloud-speech:
1.8.0 -> 2.6.0
Why? Proof of Concept exploit, Has a fix available, CVSS 7.8
SNYK-JAVA-ORGECLIPSEJETTY-1021614
com.sparkjava:spark-core:
2.8.0 -> 2.9.4
Why? Has a fix available, CVSS 4.8
SNYK-JAVA-ORGECLIPSEJETTY-1047304
com.sparkjava:spark-core:
2.8.0 -> 2.9.4
Why? Proof of Concept exploit, Has a fix available, CVSS 5.3
SNYK-JAVA-ORGECLIPSEJETTY-1080611
com.sparkjava:spark-core:
2.8.0 -> 2.9.4
Why? Proof of Concept exploit, Has a fix available, CVSS 7.5
SNYK-JAVA-ORGECLIPSEJETTY-1090340
com.sparkjava:spark-core:
2.8.0 -> 2.9.4
Why? Has a fix available, CVSS 2.9
SNYK-JAVA-ORGECLIPSEJETTY-1313686
com.sparkjava:spark-core:
2.8.0 -> 2.9.4
Why? Has a fix available, CVSS 5.3
SNYK-JAVA-ORGECLIPSEJETTY-174560
com.sparkjava:spark-core:
2.8.0 -> 2.9.4
Why? Has a fix available, CVSS 2.7
SNYK-JAVA-ORGECLIPSEJETTY-2945452
com.sparkjava:spark-core:
2.8.0 -> 2.9.4
Why? Has a fix available, CVSS 2.7
SNYK-JAVA-ORGECLIPSEJETTY-2945453
com.sparkjava:spark-core:
2.8.0 -> 2.9.4
(*) Note that the real score may have changed since the PR was raised.
Check the changes in this PR to ensure they won't cause issues with your project.
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information: 🧐 View latest project report
🛠 Adjust project settings
📚 Read more about Snyk's upgrade and patch logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Deserialization of Untrusted Data 🦉 Denial of Service (DoS) 🦉 Denial of Service (DoS)