Closed yurake closed 2 months ago
Code Climate has analyzed commit 8f8b781d and detected 0 issues on this pull request.
View more on Code Climate.
Update on Hazelcast versions in 'consumer-hazelcast-quarkus'
The version of Hazelcast used in the 'consumer-hazelcast-quarkus' service has been upgraded from 5.3.1 to 5.3.5 in the pom.xml
file. This version update would most likely bring enhanced features and bug fixes that could improve the performance and reliability of the service. Additionally, the test Hazelcast version was also updated. The new version isn't specified yet, indicating it's expected to be set in the future or dynamically evaluated.
Additions to 'producer-service-quarkus' configuration
In the pom.xml
file of 'producer-service-quarkus', a new dependency management entry for priorVersions.STR
version 0.8
was added with relationship GE
(Greater than or Equal to), suggesting a new required software component or library in the system. Moreover, a new plugin, quarkus-maven-plugin
, was also introduced with version represented by ${quarkus.version}
parameter. This change could possibly contribute to the functionality, build process or deployment of the 'producer-service-quarkus' service.
Issues
0 New issues
Measures
0 Security Hotspots
No data about Coverage
0.0% Duplication on New Code
All modified and coverable lines are covered by tests :white_check_mark:
Project coverage is 96.12%. Comparing base (
8571a4b
) to head (8f8b781
). Report is 187 commits behind head on master.
:umbrella: View full report in Codecov by Sentry.
:loudspeaker: Have feedback on the report? Share it here.
Issues
0 New issues
Measures
0 Security Hotspots
No data about Coverage
No data about Duplication
All test runs 522e5a0
:link:
:white_check_mark: 23 Total Test Services: 0 Failed, 23 Passed
This report shows up to 10 services| Service Name | Failed | Known Flaky | New Flaky | Passed | Skipped | Wall Time | Test Service View | | ------------ | ------ | ----------- | --------- | ------ | ------- | --------- | ----------------- | | [**`consumer-activemq-quarkus`**](https://app.datadoghq.com/ci/test-commit/github.com%2Fyurake%2Fk8s-3tier-webapp/consumer-activemq-quarkus/snyk-fix-58aeb4029e61ebdd860fd6d01a43ae12/522e5a01c657d79300912fbebea70870f900396a?env=ci&index=citest&_user_click_origin_=github) | 0 | 0 | 0 | 2 | 0 | 1.74s | [Link](https://app.datadoghq.com/ci/test-branch/github.com%2Fyurake%2Fk8s-3tier-webapp/consumer-activemq-quarkus/snyk-fix-58aeb4029e61ebdd860fd6d01a43ae12?env=ci&index=citest&_user_click_origin_=github) | | [**`consumer-hazelcast-quarkus`**](https://app.datadoghq.com/ci/test-commit/github.com%2Fyurake%2Fk8s-3tier-webapp/consumer-hazelcast-quarkus/snyk-fix-58aeb4029e61ebdd860fd6d01a43ae12/522e5a01c657d79300912fbebea70870f900396a?env=ci&index=citest&_user_click_origin_=github) | 0 | 0 | 0 | 4 | 0 | 1.21s | [Link](https://app.datadoghq.com/ci/test-branch/github.com%2Fyurake%2Fk8s-3tier-webapp/consumer-hazelcast-quarkus/snyk-fix-58aeb4029e61ebdd860fd6d01a43ae12?env=ci&index=citest&_user_click_origin_=github) | | [**`consumer-kafka-quarkus`**](https://app.datadoghq.com/ci/test-commit/github.com%2Fyurake%2Fk8s-3tier-webapp/consumer-kafka-quarkus/snyk-fix-58aeb4029e61ebdd860fd6d01a43ae12/522e5a01c657d79300912fbebea70870f900396a?env=ci&index=citest&_user_click_origin_=github) | 0 | 0 | 0 | 2 | 0 | 2.31s | [Link](https://app.datadoghq.com/ci/test-branch/github.com%2Fyurake%2Fk8s-3tier-webapp/consumer-kafka-quarkus/snyk-fix-58aeb4029e61ebdd860fd6d01a43ae12?env=ci&index=citest&_user_click_origin_=github) | | [**`consumer-rabbitmq-quarkus`**](https://app.datadoghq.com/ci/test-commit/github.com%2Fyurake%2Fk8s-3tier-webapp/consumer-rabbitmq-quarkus/snyk-fix-58aeb4029e61ebdd860fd6d01a43ae12/522e5a01c657d79300912fbebea70870f900396a?env=ci&index=citest&_user_click_origin_=github) | 0 | 0 | 0 | 1 | 0 | 1.3s | [Link](https://app.datadoghq.com/ci/test-branch/github.com%2Fyurake%2Fk8s-3tier-webapp/consumer-rabbitmq-quarkus/snyk-fix-58aeb4029e61ebdd860fd6d01a43ae12?env=ci&index=citest&_user_click_origin_=github) | | [**`consumer-redis-quarkus`**](https://app.datadoghq.com/ci/test-commit/github.com%2Fyurake%2Fk8s-3tier-webapp/consumer-redis-quarkus/snyk-fix-58aeb4029e61ebdd860fd6d01a43ae12/522e5a01c657d79300912fbebea70870f900396a?env=ci&index=citest&_user_click_origin_=github) | 0 | 0 | 0 | 1 | 0 | 1.28s | [Link](https://app.datadoghq.com/ci/test-branch/github.com%2Fyurake%2Fk8s-3tier-webapp/consumer-redis-quarkus/snyk-fix-58aeb4029e61ebdd860fd6d01a43ae12?env=ci&index=citest&_user_click_origin_=github) | | [**`converter-kafka-quarkus`**](https://app.datadoghq.com/ci/test-commit/github.com%2Fyurake%2Fk8s-3tier-webapp/converter-kafka-quarkus/snyk-fix-58aeb4029e61ebdd860fd6d01a43ae12/522e5a01c657d79300912fbebea70870f900396a?env=ci&index=citest&_user_click_origin_=github) | 0 | 0 | 0 | 1 | 0 | 2.63s | [Link](https://app.datadoghq.com/ci/test-branch/github.com%2Fyurake%2Fk8s-3tier-webapp/converter-kafka-quarkus/snyk-fix-58aeb4029e61ebdd860fd6d01a43ae12?env=ci&index=citest&_user_click_origin_=github) | | [**`converter-rabbitmq-quarkus`**](https://app.datadoghq.com/ci/test-commit/github.com%2Fyurake%2Fk8s-3tier-webapp/converter-rabbitmq-quarkus/snyk-fix-58aeb4029e61ebdd860fd6d01a43ae12/522e5a01c657d79300912fbebea70870f900396a?env=ci&index=citest&_user_click_origin_=github) | 0 | 0 | 0 | 1 | 0 | 1.72s | [Link](https://app.datadoghq.com/ci/test-branch/github.com%2Fyurake%2Fk8s-3tier-webapp/converter-rabbitmq-quarkus/snyk-fix-58aeb4029e61ebdd860fd6d01a43ae12?env=ci&index=citest&_user_click_origin_=github) | | [**`jaxrs-activemq-quarkus`**](https://app.datadoghq.com/ci/test-commit/github.com%2Fyurake%2Fk8s-3tier-webapp/jaxrs-activemq-quarkus/snyk-fix-58aeb4029e61ebdd860fd6d01a43ae12/522e5a01c657d79300912fbebea70870f900396a?env=ci&index=citest&_user_click_origin_=github) | 0 | 0 | 0 | 16 | 0 | 1.34s | [Link](https://app.datadoghq.com/ci/test-branch/github.com%2Fyurake%2Fk8s-3tier-webapp/jaxrs-activemq-quarkus/snyk-fix-58aeb4029e61ebdd860fd6d01a43ae12?env=ci&index=citest&_user_click_origin_=github) | | [**`jaxrs-cassandra-quarkus`**](https://app.datadoghq.com/ci/test-commit/github.com%2Fyurake%2Fk8s-3tier-webapp/jaxrs-cassandra-quarkus/snyk-fix-58aeb4029e61ebdd860fd6d01a43ae12/522e5a01c657d79300912fbebea70870f900396a?env=ci&index=citest&_user_click_origin_=github) | 0 | 0 | 0 | 14 | 0 | 1.56s | [Link](https://app.datadoghq.com/ci/test-branch/github.com%2Fyurake%2Fk8s-3tier-webapp/jaxrs-cassandra-quarkus/snyk-fix-58aeb4029e61ebdd860fd6d01a43ae12?env=ci&index=citest&_user_click_origin_=github) | | [**`jaxrs-grpc-quarkus`**](https://app.datadoghq.com/ci/test-commit/github.com%2Fyurake%2Fk8s-3tier-webapp/jaxrs-grpc-quarkus/snyk-fix-58aeb4029e61ebdd860fd6d01a43ae12/522e5a01c657d79300912fbebea70870f900396a?env=ci&index=citest&_user_click_origin_=github) | 0 | 0 | 0 | 2 | 0 | 2.61s | [Link](https://app.datadoghq.com/ci/test-branch/github.com%2Fyurake%2Fk8s-3tier-webapp/jaxrs-grpc-quarkus/snyk-fix-58aeb4029e61ebdd860fd6d01a43ae12?env=ci&index=citest&_user_click_origin_=github) |
Issues
0 New issues
Measures
0 Security Hotspots
No data about Coverage
No data about Duplication
Issues
0 New issues
Measures
0 Security Hotspots
No data about Coverage
0.0% Duplication on New Code
Issues
0 New issues
Measures
0 Security Hotspots
No data about Coverage
No data about Duplication
Issues
0 New issues
Measures
0 Security Hotspots
No data about Coverage
No data about Duplication
Issues
0 New issues
Measures
0 Security Hotspots
No data about Coverage
No data about Duplication
Issues
0 New issues
Measures
0 Security Hotspots
No data about Coverage
No data about Duplication
Issues
0 New issues
Measures
0 Security Hotspots
No data about Coverage
No data about Duplication
Issues
0 New issues
Measures
0 Security Hotspots
No data about Coverage
No data about Duplication
Issues
0 New issues
Measures
0 Security Hotspots
No data about Coverage
No data about Duplication
Issues
0 New issues
Measures
0 Security Hotspots
No data about Coverage
No data about Duplication
Issues
0 New issues
Measures
0 Security Hotspots
No data about Coverage
No data about Duplication
Issues
0 New issues
Measures
0 Security Hotspots
No data about Coverage
No data about Duplication
Issues
0 New issues
Measures
0 Security Hotspots
No data about Coverage
No data about Duplication
Issues
0 New issues
Measures
0 Security Hotspots
No data about Coverage
No data about Duplication
Issues
0 New issues
Measures
0 Security Hotspots
No data about Coverage
No data about Duplication
Issues
0 New issues
Measures
0 Security Hotspots
No data about Coverage
No data about Duplication
Issues
0 New issues
Measures
0 Security Hotspots
No data about Coverage
No data about Duplication
Issues
0 New issues
Measures
0 Security Hotspots
No data about Coverage
No data about Duplication
Issues
0 New issues
Measures
0 Security Hotspots
No data about Coverage
No data about Duplication
Issues
0 New issues
Measures
0 Security Hotspots
No data about Coverage
No data about Duplication
Issues
0 New issues
Measures
0 Security Hotspots
No data about Coverage
No data about Duplication
Issues
0 New issues
Measures
0 Security Hotspots
No data about Coverage
No data about Duplication
This PR was automatically created by Snyk using the credentials of a real user.
Snyk has created this PR to fix one or more vulnerable packages in the `maven` dependencies of this project.
#### Changes included in this PR - Changes to the following files to upgrade the vulnerable dependencies to a fixed version: - application/consumer-hazelcast-quarkus/pom.xml #### Vulnerabilities that will be fixed ##### With an upgrade: Severity | Priority Score (*) | Issue | Upgrade | Breaking Change | Exploit Maturity | Reachability :-------------------------:|-------------------------|:-------------------------|:-------------------------|:-------------------------|:-------------------------|:------------------------- ![medium severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png "medium severity") | **525/1000****Why?** Recently disclosed, Has a fix available, CVSS 6.5 | Improper Access Control
[SNYK-JAVA-COMHAZELCAST-6249443](https://snyk.io/vuln/SNYK-JAVA-COMHAZELCAST-6249443) | `com.hazelcast:hazelcast:`
`5.3.1 -> 5.3.5`
| No | No Known Exploit | No Path Found (*) Note that the real score may have changed since the PR was raised. Check the changes in this PR to ensure they won't cause issues with your project. ------------ **Note:** *You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.* For more information: đ§ [View latest project report](https://app.snyk.io/org/yurake/project/fbe8a1a2-d89f-4f05-a14d-245f31b1f022?utm_source=github&utm_medium=referral&page=fix-pr) đ [Adjust project settings](https://app.snyk.io/org/yurake/project/fbe8a1a2-d89f-4f05-a14d-245f31b1f022?utm_source=github&utm_medium=referral&page=fix-pr/settings) đ [Read more about Snyk's upgrade and patch logic](https://support.snyk.io/hc/en-us/articles/360003891078-Snyk-patches-to-fix-vulnerabilities) [//]: # (snyk:metadata:{"prId":"e3bba272-291b-4888-86c4-87dbfc12ad5c","prPublicId":"e3bba272-291b-4888-86c4-87dbfc12ad5c","dependencies":[{"name":"com.hazelcast:hazelcast","from":"5.3.1","to":"5.3.5"}],"packageManager":"maven","projectPublicId":"fbe8a1a2-d89f-4f05-a14d-245f31b1f022","projectUrl":"https://app.snyk.io/org/yurake/project/fbe8a1a2-d89f-4f05-a14d-245f31b1f022?utm_source=github&utm_medium=referral&page=fix-pr","type":"auto","patch":[],"vulns":["SNYK-JAVA-COMHAZELCAST-6249443"],"upgrade":["SNYK-JAVA-COMHAZELCAST-6249443"],"isBreakingChange":false,"env":"prod","prType":"fix","templateVariants":["updated-fix-title","priorityScore"],"priorityScoreList":[525],"remediationStrategy":"vuln"}) --- **Learn how to fix vulnerabilities with free interactive lessons:** đŠ [Improper Access Control](https://learn.snyk.io/lesson/broken-access-control/?loc=fix-pr)