Skip to content

[Snyk] Upgrade org.eclipse.jetty:apache-jsp from 9.3.3.v20150827 to 9.4.56.v20240826#4

Open
matrix-compute wants to merge 1 commit into
mainfrom
snyk-upgrade-4d32e2c341938b3cecacfe3936910beb
Open

[Snyk] Upgrade org.eclipse.jetty:apache-jsp from 9.3.3.v20150827 to 9.4.56.v20240826#4
matrix-compute wants to merge 1 commit into
mainfrom
snyk-upgrade-4d32e2c341938b3cecacfe3936910beb

Conversation

@matrix-compute

Copy link
Copy Markdown
Owner

snyk-top-banner

Snyk has created this PR to upgrade org.eclipse.jetty:apache-jsp from 9.3.3.v20150827 to 9.4.56.v20240826.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 118 versions ahead of your current version.

  • The recommended version was released 4 months ago.

Issues fixed by the recommended upgrade:

Issue Score Exploit Maturity
high severity Denial of Service (DoS)
SNYK-JAVA-ORGECLIPSEJETTY-5958847
589 No Known Exploit
high severity XML External Entity (XXE) Injection
SNYK-JAVA-ORGAPACHETAGLIBS-30064
589 No Known Exploit
high severity Privilege Escalation
SNYK-JAVA-ORGECLIPSEJETTY-1021614
589 Proof of Concept
high severity Denial of Service (DoS)
SNYK-JAVA-ORGECLIPSEJETTY-1090340
589 Proof of Concept
high severity Web Cache Poisoning
SNYK-JAVA-ORGECLIPSEJETTY-460763
589 No Known Exploit
high severity Timing Attack
SNYK-JAVA-ORGECLIPSEJETTY-32151
589 No Known Exploit
high severity Web Cache Poisoning
SNYK-JAVA-ORGECLIPSEJETTY-32383
589 No Known Exploit
medium severity Information Exposure
SNYK-JAVA-ORGECLIPSEJETTY-5969350
589 No Known Exploit
medium severity Information Exposure
SNYK-JAVA-ORGECLIPSEJETTY-174560
589 No Known Exploit
medium severity Information Exposure
SNYK-JAVA-ORGECLIPSEJETTY-461009
589 No Known Exploit
medium severity Cross-site Scripting (XSS)
SNYK-JAVA-ORGECLIPSEJETTY-480557
589 Mature
medium severity Denial of Service (DoS)
SNYK-JAVA-ORGECLIPSEJETTY-5426159
589 Proof of Concept
medium severity Cross-site Scripting (XSS)
SNYK-JAVA-ORGECLIPSEJETTY-174479
589 Mature
medium severity Information Exposure
SNYK-JAVA-ORGECLIPSEJETTY-461008
589 No Known Exploit
low severity XML External Entity (XXE) Injection
SNYK-JAVA-ORGECLIPSEJETTY-5769685
589 No Known Exploit
low severity Information Exposure
SNYK-JAVA-ORGECLIPSEJETTY-1313686
589 No Known Exploit
critical severity Authorization Bypass
SNYK-JAVA-ORGECLIPSEJETTY-32385
589 No Known Exploit
low severity Information Exposure
SNYK-JAVA-ORGECLIPSEJETTY-5426160
589 Proof of Concept
critical severity Information Exposure
SNYK-JAVA-ORGECLIPSEJETTY-31117
589 No Known Exploit
medium severity Improper Handling of Length Parameter Inconsistency
SNYK-JAVA-ORGECLIPSEJETTY-5902998
589 Proof of Concept
low severity Improper Input Validation
SNYK-JAVA-ORGECLIPSEJETTY-2945452
589 No Known Exploit
low severity Information Exposure
SNYK-JAVA-ORGECLIPSEJETTY-5426161
589 Proof of Concept

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

….56.v20240826

Snyk has created this PR to upgrade org.eclipse.jetty:apache-jsp from 9.3.3.v20150827 to 9.4.56.v20240826.

See this package in maven:
org.eclipse.jetty:apache-jsp

See this project in Snyk:
https://app.snyk.io/org/alimazloumworld/project/592394fc-2eb4-4e33-9f54-96f286a4ed51?utm_source=github&utm_medium=referral&page=upgrade-pr
@github-actions github-actions Bot added the java Pull requests that update Java code label Jan 7, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

java Pull requests that update Java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants