Update dependency org.hibernate:hibernate-core to v5 #26
Dev - Mend for GitHub.com / Mend Security Check
failed
Jun 30, 2025 in 23m 7s
Security Report
You have successfully remediated 4 vulnerabilities, but introduced 1 new vulnerabilities in this branch.
❌ New vulnerabilities:
| Vulnerability | Severity | Vulnerable Library | Suggested Fix | Issue | Reachability | |
|---|---|---|---|---|---|---|
CVE-50240-896950Path to dependency file: /pom.xml Path to vulnerable library: /home/wss-scanner/.m2/repository/com/fasterxml/classmate/1.5.1/classmate-1.5.1.jar Dependency Hierarchy: -> hibernate-core-5.5.0.Beta1.jar (Root Library) -> ❌ classmate-1.5.1.jar (Vulnerable Library) |
9.8 | classmate-1.5.1.jar | None |
✔️ Remediated vulnerabilities:
| Vulnerability | Vulnerable Library |
|---|---|
| GHSA-7c2q-5qmr-v76q | esapi-2.3.0.0.jar |
| CVE-2019-14900 | hibernate-core-3.6.10.Final.jar |
| GHSA-r68h-jhhj-9jvm | esapi-2.3.0.0.jar |
| CVE-2020-25638 | hibernate-core-3.6.10.Final.jar |
Base branch total remaining vulnerabilities: 57
Base branch commit: null
Total libraries scanned: 108
Scan token: 91314bc7913d4f5e96b4f223a4b3641c
Loading