Skip to content

Comments

Update dependency com.fasterxml.jackson.core:jackson-databind to v2.12.7.1#18

Open
mend-for-github-com[bot] wants to merge 1 commit intomasterfrom
whitesource-remediate/jackson-databind-version
Open

Update dependency com.fasterxml.jackson.core:jackson-databind to v2.12.7.1#18
mend-for-github-com[bot] wants to merge 1 commit intomasterfrom
whitesource-remediate/jackson-databind-version

Conversation

@mend-for-github-com
Copy link

@mend-for-github-com mend-for-github-com bot commented Feb 24, 2025

This PR contains the following updates:

Package Type Update Change
com.fasterxml.jackson.core:jackson-databind (source) compile minor 2.10.42.12.7.1

By merging this PR, the below issues will be automatically resolved and closed:

Severity CVSS Score Vulnerability GitHub Issue
High 7.5 CVE-2020-25649 #2
High 7.5 CVE-2021-46877 #14
High 7.5 CVE-2022-42003 #12
High 7.5 CVE-2022-42004 #11
Medium 5.9 WS-2021-0616 #5

  • If you want to rebase/retry this PR, check this box

@mend-for-github-com mend-for-github-com bot added the security fix Security fix generated by WhiteSource label Feb 24, 2025
@mend-for-github-com mend-for-github-com bot changed the title Update dependency com.fasterxml.jackson.core:jackson-databind to v2.12.7.1 Update dependency com.fasterxml.jackson.core:jackson-databind to v2.12.6.1 Mar 20, 2025
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/jackson-databind-version branch from 72f6aee to c509978 Compare March 20, 2025 02:58
@mend-for-github-com mend-for-github-com bot changed the title Update dependency com.fasterxml.jackson.core:jackson-databind to v2.12.6.1 Update dependency com.fasterxml.jackson.core:jackson-databind to v2.12.7.1 Mar 31, 2025
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/jackson-databind-version branch from c509978 to 6dc375d Compare March 31, 2025 04:48
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

security fix Security fix generated by WhiteSource

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants