embedded-db-junit
embedded-db-junit copied to clipboard
[Snyk] Security upgrade org.yaml:snakeyaml from 1.30 to 1.31
Snyk has created this PR to fix one or more vulnerable packages in the `maven` dependencies of this project.
Changes included in this PR
- Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
- embedded-db-junit-liquibase/pom.xml
Vulnerabilities that will be fixed
With an upgrade:
Severity | Priority Score (*) | Issue | Upgrade | Breaking Change | Exploit Maturity |
---|---|---|---|---|---|
![]() |
661/1000 Why? Recently disclosed, Has a fix available, CVSS 7.5 |
Denial of Service (DoS) SNYK-JAVA-ORGYAML-2806360 |
org.yaml:snakeyaml: 1.30 -> 1.31 |
No | No Known Exploit |
(*) Note that the real score may have changed since the PR was raised.
Check the changes in this PR to ensure they won't cause issues with your project.
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📚 Read more about Snyk's upgrade and patch logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Learn about vulnerability in an interactive lesson of Snyk Learn.
Codecov Report
Merging #362 (e3e4e0f) into master (47e4948) will not change coverage. The diff coverage is
n/a
.
@@ Coverage Diff @@
## master #362 +/- ##
=========================================
Coverage 88.73% 88.73%
Complexity 170 170
=========================================
Files 19 19
Lines 515 515
Branches 48 48
=========================================
Hits 457 457
Misses 31 31
Partials 27 27
Flag | Coverage Δ | |
---|---|---|
tests-java-11 | 88.73% <ø> (ø) |
|
tests-java-17 | 88.73% <ø> (ø) |
|
tests-java-8 | 88.73% <ø> (ø) |
Flags with carried forward coverage won't be shown. Click here to find out more.
:mega: We’re building smart automated test selection to slash your CI/CD build times. Learn more