FazBrowse GitHub Viewer | Trending |
URL:
| Home
Tools: [Download Repo ZIP]   [Original HTTPS Page]

[Snyk] Upgrade org.apache.tomcat.embed:tomcat-embed-core from 8.5.47 to 8.5.68 by snyk-bot · Pull Request #60 · sniten/cloudstack · GitHub

[Snyk] Upgrade org.apache.tomcat.embed:tomcat-embed-core from 8.5.47 to 8.5.68 - #60

Open
snyk-bot wants to merge 1 commit into
masterfrom
snyk-upgrade-4c238577e95fb912c9b01011c59a542f
Open

[Snyk] Upgrade org.apache.tomcat.embed:tomcat-embed-core from 8.5.47 to 8.5.68#60
snyk-bot wants to merge 1 commit into
masterfrom
snyk-upgrade-4c238577e95fb912c9b01011c59a542f

Conversation

Copy link
Copy Markdown

Snyk has created this PR to upgrade org.apache.tomcat.embed:tomcat-embed-core from 8.5.47 to 8.5.68.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 17 versions ahead of your current version.
  • The recommended version was released a month ago, on 2021-06-11.

The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Remote Code Execution (RCE)
SNYK-JAVA-ORGAPACHETOMCATEMBED-570072
791/1000
Why? Mature exploit, Has a fix available, CVSS 8.1
Mature
Remote Code Execution (RCE)
SNYK-JAVA-ORGAPACHETOMCATEMBED-1080637
791/1000
Why? Mature exploit, Has a fix available, CVSS 8.1
No Known Exploit
Denial of Service (DoS)
SNYK-JAVA-ORGAPACHETOMCATEMBED-584427
791/1000
Why? Mature exploit, Has a fix available, CVSS 8.1
No Known Exploit
HTTP Request Smuggling
SNYK-JAVA-ORGAPACHETOMCATEMBED-1080638
791/1000
Why? Mature exploit, Has a fix available, CVSS 8.1
No Known Exploit
Information Disclosure
SNYK-JAVA-ORGAPACHETOMCATEMBED-1061939
791/1000
Why? Mature exploit, Has a fix available, CVSS 8.1
No Known Exploit
Information Exposure
SNYK-JAVA-ORGAPACHETOMCATEMBED-1048292
791/1000
Why? Mature exploit, Has a fix available, CVSS 8.1
Proof of Concept
Session Fixation
SNYK-JAVA-ORGAPACHETOMCATEMBED-538488
791/1000
Why? Mature exploit, Has a fix available, CVSS 8.1
No Known Exploit

(*) Note that the real score may have changed since the PR was raised.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters. Learn more about bidirectional Unicode characters
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant


Back | FazBrowse Home | New Git URL