zerocode icon indicating copy to clipboard operation
zerocode copied to clipboard

Are both these jars required or only one needed also 1.3.33 version has vulunerabilities reported

Open nagkumar opened this issue 2 years ago • 1 comments

   implementation("org.jsmart:zerocode-tdd:1.3.33")
    implementation("org.jsmart:zerocode-tdd-jupiter:1.3.33")

nagkumar avatar May 30 '23 04:05 nagkumar

image

Provides transitive vulnerable dependency maven:ch.qos.logback:logback-core:1.0.7
CVE-2017-5929 9.8 Deserialization of Untrusted Data vulnerability pending CVSS allocation
CVE-2021-42550 6.6 Deserialization of Untrusted Data vulnerability pending CVSS allocation
Results powered by Checkmarx(c)

nagkumar avatar May 30 '23 04:05 nagkumar