Bump ktlint version to fix CVE #848
Merged
Mend for GitHub.com / Mend Security Check
failed
Feb 5, 2024 in 4m 15s
Security Report
1 new vulnerabilities were introduced in this branch.
❌ New vulnerabilities:
CVE | Severity | Vulnerable Library | Suggested Fix | Issue | |
---|---|---|---|---|---|
CVE-2023-5072Path to dependency file: /build.gradle Path to vulnerable library: /home/wss-scanner/.gradle/caches/modules-2/files-2.1/org.json/json/20230227/7a0d4aca76513d8ce81f9b044ce8126b84809ad8/json-20230227.jar Dependency Hierarchy: -> ❌ json-20230227.jar (Vulnerable Library) |
7.5 | json-20230227.jar | Upgrade to version: org.json:json:20231013 | #794 |
Base branch total remaining vulnerabilities: 2
Base branch commit: f26f7dca464d5a51b384be85fbcda7fc8b4b5d79
Total libraries scanned: 219
Scan token: 7c2217b9ff384aca87f36f3b14f852c9
Loading