Conversation
…ilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JAVA-IOUNDERTOW-15967938 - https://snyk.io/vuln/SNYK-JAVA-IOUNDERTOW-15968277 - https://snyk.io/vuln/SNYK-JAVA-IOUNDERTOW-16009217 - https://snyk.io/vuln/SNYK-JAVA-COMFASTERXMLJACKSONCORE-15907551 - https://snyk.io/vuln/SNYK-JAVA-IOUNDERTOW-7433721
|
This upgrade includes a major version jump for Analysis of Upgrades
This is a significant upgrade from a pre-1.0 version to a stable Recommendation: A thorough migration and testing process is required. Developers should consult the light-4j documentation and treat this as a major migration effort.
This upgrade contains minor version updates with some behavioral changes that require verification:
Recommendation: Verify that application logic does not depend on the previous default behaviors, especially concerning error handling and enum deserialization from strings.
This is a patch release that consists of bug fixes and security updates. No breaking API changes are documented. Source: Release notes
|
✅ Snyk checks have passed. No issues have been found so far.
💻 Catch issues earlier using the plugins for VS Code, JetBrains IDEs, Visual Studio, and Eclipse. |
Snyk has created this PR to fix 5 vulnerabilities in the maven dependencies of this project.
Snyk changed the following file(s):
samples/server/petstore/java-undertow/pom.xmlVulnerabilities that will be fixed with an upgrade:
SNYK-JAVA-IOUNDERTOW-15967938
0.1.1->1.5.26com.networknt:info:
0.1.1->1.5.26com.networknt:security:
0.1.1->1.5.26com.networknt:server:
0.1.1->1.5.26Major version upgradeNo Path FoundNo Known ExploitSNYK-JAVA-IOUNDERTOW-15968277
0.1.1->1.5.26com.networknt:info:
0.1.1->1.5.26com.networknt:security:
0.1.1->1.5.26com.networknt:server:
0.1.1->1.5.26Major version upgradeNo Path FoundNo Known ExploitSNYK-JAVA-IOUNDERTOW-16009217
0.1.1->1.5.26com.networknt:info:
0.1.1->1.5.26com.networknt:security:
0.1.1->1.5.26com.networknt:server:
0.1.1->1.5.26Major version upgradeNo Path FoundNo Known ExploitSNYK-JAVA-COMFASTERXMLJACKSONCORE-15907551
2.15.2->2.21.2com.fasterxml.jackson.core:jackson-databind:
2.15.2->2.21.2com.networknt:security:
0.1.1->1.5.26No Path FoundNo Known ExploitSNYK-JAVA-IOUNDERTOW-7433721
0.1.1->1.5.26com.networknt:info:
0.1.1->1.5.26com.networknt:security:
0.1.1->1.5.26com.networknt:server:
0.1.1->1.5.26io.undertow:undertow-core:
2.3.17.Final->2.3.18.FinalMajor version upgradeNo Path FoundNo Known ExploitBreaking Change Risk
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Allocation of Resources Without Limits or Throttling
🦉 Memory Leak