mend-for-github-com[bot]
mend-for-github-com[bot]
This PR contains the following updates: | Package | Change | Age | Adoption | Passing | Confidence | |---|---|---|---|---|---| | [com.fasterxml.jackson.core:jackson-core](https://togithub.com/FasterXML/jackson-core) | `2.17.2` -> `2.18.0` | [](https://docs.renovatebot.com/merge-confidence/) | [](https://docs.renovatebot.com/merge-confidence/)...
This issue lists Renovate updates and detected dependencies. Read the [Dependency Dashboard](https://docs.renovatebot.com/key-concepts/dashboard/) docs to learn more. ## Repository problems Renovate tried to run on this repository, but found these problems....
Welcome to [WhiteSource for GitHub.com](https://github.com/apps/whitesource-for-github-com)! This is an onboarding PR to help you understand and configure settings before WhiteSource starts scanning your repository for security vulnerabilities. :vertical_traffic_light: WhiteSource for GitHub.com...
Added .whitesource file. Configuration will now be inherited from the 'repo-config.json' file in the 'whitesource-config' repository.
Vulnerable Library - jetty-server-9.4.55.v20240627.jar The core jetty server artifact. Library home page: https://jetty.org/ Path to dependency file: /test/fixtures/hdfs-fixture/build.gradle Path to vulnerable library: /home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.eclipse.jetty/jetty-server/9.4.55.v20240627/6acd4d3dba5c237cc4315e68f9a602d6d175992a/jetty-server-9.4.55.v20240627.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.eclipse.jetty/jetty-server/9.4.55.v20240627/6acd4d3dba5c237cc4315e68f9a602d6d175992a/jetty-server-9.4.55.v20240627.jar,/home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.eclipse.jetty/jetty-server/9.4.55.v20240627/6acd4d3dba5c237cc4315e68f9a602d6d175992a/jetty-server-9.4.55.v20240627.jar Found in HEAD commit: 4456d559a425271fb35e8d4fb1a000ceb1e2e273 ## Vulnerabilities...
## CVE-2024-47764 - Medium Severity Vulnerability Vulnerable Library - cookie-0.5.0.tgz HTTP server cookie parsing and serialization Library home page: https://registry.npmjs.org/cookie/-/cookie-0.5.0.tgz Path to dependency file: /package.json Path to vulnerable library: /node_modules/cookie/package.json...
This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [npm-run-all2](https://redirect.github.com/bcomnes/npm-run-all2) | dependencies | patch | [`6.2.2` -> `6.2.6`](https://renovatebot.com/diffs/npm/npm-run-all2/6.2.2/6.2.6) | --- ### Release...
This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [@mathigon/boost](https://mathigon.io/boost) ([source](https://redirect.github.com/mathigon/boost.js)) | dependencies | patch | [`1.2.27` -> `1.2.31`](https://renovatebot.com/diffs/npm/@mathigon%2fboost/1.2.27/1.2.31) | | [@mathigon/core](https://mathigon.io/core)...
This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [typescript](https://www.typescriptlang.org/) ([source](https://redirect.github.com/microsoft/TypeScript)) | dependencies | minor | [`5.5.4` -> `5.7.3`](https://renovatebot.com/diffs/npm/typescript/5.5.4/5.7.3) | --- ###...
Vulnerable Library - @mathigon/studio-0.1.43.tgz Path to dependency file: /package.json Found in HEAD commit: e6074fcec914ba67263df74a09b5558e03981df6 ## Vulnerabilities | CVE | Severity | CVSS | Dependency | Type | Fixed in (@mathigon/studio...