mend-for-github-com[bot]
mend-for-github-com[bot]
## WS-2020-0408 - High Severity Vulnerability Vulnerable Libraries - netty-handler-4.1.8.Final.jar, netty-handler-4.0.42.Final.jar netty-handler-4.1.8.Final.jar Netty is an asynchronous event-driven network application framework for rapid development of maintainable high performance protocol servers and...
## CVE-2022-25647 - High Severity Vulnerability Vulnerable Libraries - gson-2.8.5.jar, gson-2.7.jar, gson-2.8.1.jar, gson-2.3.1.jar gson-2.8.5.jar Gson JSON library Library home page: https://github.com/google/gson Path to dependency file: /samples/client/petstore/java/retrofit2/build.gradle Path to vulnerable library:...
## CVE-2017-17485 - High Severity Vulnerability Vulnerable Libraries - jackson-databind-2.4.5.jar, jackson-databind-2.6.4.jar jackson-databind-2.4.5.jar General data-binding functionality for Jackson: works on core streaming API Library home page: http://github.com/FasterXML/jackson Path to dependency file:...
## CVE-2020-10969 - High Severity Vulnerability Vulnerable Libraries - jackson-databind-2.7.2.jar, jackson-databind-2.7.8.jar, jackson-databind-2.6.4.jar, jackson-databind-2.7.5.jar, jackson-databind-2.8.9.jar jackson-databind-2.7.2.jar General data-binding functionality for Jackson: works on core streaming API Library home page: http://github.com/FasterXML/jackson Path...
## CVE-2020-10968 - High Severity Vulnerability Vulnerable Libraries - jackson-databind-2.7.2.jar, jackson-databind-2.6.4.jar, jackson-databind-2.7.5.jar, jackson-databind-2.7.8.jar, jackson-databind-2.8.9.jar jackson-databind-2.7.2.jar General data-binding functionality for Jackson: works on core streaming API Library home page: http://github.com/FasterXML/jackson Path...
## CVE-2021-23337 - High Severity Vulnerability Vulnerable Libraries - lodash-4.17.11.tgz, lodash-4.17.10.tgz, lodash-4.17.20.tgz lodash-4.17.11.tgz Lodash modular utilities. Library home page: https://registry.npmjs.org/lodash/-/lodash-4.17.11.tgz Path to dependency file: /samples/client/petstore/javascript-es6/package.json Path to vulnerable library: /samples/client/petstore/javascript-es6/node_modules/lodash/package.json,/samples/client/petstore/javascript-promise-es6/node_modules/lodash/package.json...
## CVE-2020-25649 - High Severity Vulnerability Vulnerable Libraries - jackson-databind-2.6.4.jar, jackson-databind-2.4.5.jar jackson-databind-2.6.4.jar General data-binding functionality for Jackson: works on core streaming API Library home page: http://github.com/FasterXML/jackson Path to dependency file:...
## WS-2021-0170 - High Severity Vulnerability Vulnerable Library - spring-core-4.1.6.RELEASE.jar Spring Core Library home page: https://github.com/spring-projects/spring-framework Path to dependency file: /samples/client/petstore/java/retrofit2-play24/build.gradle Path to vulnerable library: /home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.springframework/spring-core/4.1.6.RELEASE/e2f486124d5dea2d91a9c2ea7d4456bc343ca2cc/spring-core-4.1.6.RELEASE.jar Dependency Hierarchy: - play-java-ws_2.11-2.4.11.jar...
## CVE-2017-15095 - High Severity Vulnerability Vulnerable Libraries - jackson-databind-2.7.2.jar, jackson-databind-2.7.5.jar, jackson-databind-2.6.4.jar, jackson-databind-2.7.8.jar, jackson-databind-2.8.9.jar jackson-databind-2.7.2.jar General data-binding functionality for Jackson: works on core streaming API Library home page: http://github.com/FasterXML/jackson Path...
## CVE-2016-1000027 - High Severity Vulnerability Vulnerable Library - spring-web-4.3.9.RELEASE.jar Spring Web Library home page: https://github.com/spring-projects/spring-framework Path to dependency file: /samples/client/petstore/java/resttemplate-withXml/build.gradle Path to vulnerable library: /aches/modules-2/files-2.1/org.springframework/spring-web/4.3.9.RELEASE/91dae64c4280093ad5fb4736a10913c9233479c1/spring-web-4.3.9.RELEASE.jar,/aches/modules-2/files-2.1/org.springframework/spring-web/4.3.9.RELEASE/91dae64c4280093ad5fb4736a10913c9233479c1/spring-web-4.3.9.RELEASE.jar Dependency Hierarchy: - :x:...