-
-
Notifications
You must be signed in to change notification settings - Fork 88
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Security Vulns Fixes 2024-07-27 #506
base: main
Are you sure you want to change the base?
Conversation
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JAVA-COMNIMBUSDS-6247633 - https://snyk.io/vuln/SNYK-JAVA-CHQOSLOGBACK-6097493
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JAVA-ORGXERIALSNAPPY-5710960 - https://snyk.io/vuln/SNYK-JAVA-ORGXERIALSNAPPY-5918282 - https://snyk.io/vuln/SNYK-JAVA-ORGAPACHEZOOKEEPER-5961102 - https://snyk.io/vuln/SNYK-JAVA-ORGXERIALSNAPPY-5710959 - https://snyk.io/vuln/SNYK-JAVA-ORGXERIALSNAPPY-5710961 - https://snyk.io/vuln/SNYK-JAVA-ORGAPACHEZOOKEEPER-6447882
…3adcab13 Security upgrade org.apache.kafka:kafka_2.13 from 3.3.1 to 3.6.1
…ff3ba179 Fix for 2 vulnerabilities
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JAVA-ORGBITBUCKETBC-6139942
…addd9c28 [Snyk] Security upgrade org.apache.kafka:kafka_2.13 from 3.6.1 to 3.6.2
@Haarolean - I think we need to update Springboot to atleast 3.2.7 in order to fix some critical vulnerabilities. But whenever I try to update it beyond 3.1.11, I ma getting 2 backend tests failure here:
} And this is the error. --->>> I tried to figure it out but I am not that good with Java. So could you please help me in free time to upgrade springboot to atleast 3.2.7? Regards. |
If spring bump had been easy, we would've merged it already :) |
What changes did you make? (Give an overview)
Upgrade a few components in order to mitigate some high severity vulnerabilities.
Is there anything you'd like reviewers to focus on?
No.
How Has This Been Tested? (put an "x" (case-sensitive!) next to an item)
Checklist (put an "x" (case-sensitive!) next to all the items, otherwise the build will fail)
Check out Contributing and Code of Conduct
A picture of a cute animal (not mandatory but encouraged)