Skip to content

依赖库漏洞 #46

Open
Open
@qiyuey

Description

@qiyuey

Provides transitive vulnerable dependency maven:com.google.guava:guava:27.0.1-jre CVE-2023-2976 7.1 Files or Directories Accessible to External Parties vulnerability with High severity found CVE-2020-8908 3.3 Incorrect Permission Assignment for Critical Resource vulnerability with Low severity found Results powered by Checkmarx(c)

Provides transitive vulnerable dependency maven:com.google.protobuf:protobuf-java:2.4.1 CVE-2022-3509 7.5 Uncontrolled Resource Consumption vulnerability with High severity found CVE-2021-22569 5.5 Incorrect Behavior Order vulnerability with Medium severity found CVE-2022-3510 7.5 Uncontrolled Resource Consumption vulnerability with High severity found CVE-2022-3171 7.5 Uncontrolled Resource Consumption vulnerability with High severity found CVE-2015-5237 8.8 Out-of-bounds Write vulnerability with High severity found Results powered by Checkmarx(c)

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions