Skip to content

Conversation

@dev-mend-for-github-com
Copy link

@dev-mend-for-github-com dev-mend-for-github-com bot commented Jan 8, 2025

This PR contains the following updates:

Package Type Update Change
org.owasp.esapi:esapi (source) compile minor 2.3.0.0 -> 2.6.2.0

By merging this PR, the below vulnerabilities will be automatically resolved:

Severity CVSS Score Vulnerability Reachability
High High 8.8 CVE-2025-48734
Medium Medium 4.8 CVE-2021-29425

  • If you want to rebase/retry this PR, check this box

@dev-mend-for-github-com dev-mend-for-github-com bot added the security fix Security fix generated by Mend label Jan 8, 2025
@dev-mend-for-github-com dev-mend-for-github-com bot changed the title Update dependency org.owasp.esapi:esapi to v2.5.3.0 Update dependency org.owasp.esapi:esapi to v2.6.2.0 Jun 30, 2025
@dev-mend-for-github-com dev-mend-for-github-com bot force-pushed the whitesource-remediate/org.owasp.esapi-esapi-2.x branch from 2e164e0 to 4382738 Compare June 30, 2025 16:23
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

security fix Security fix generated by Mend

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant