[Backport 2.x] Fix bytes offset bug and duplicate readers and add uTs for derived source #2497
Mend for GitHub.com / WhiteSource Security Check
failed
Feb 6, 2025 in 4m 34s
Security Report
1 new vulnerabilities were introduced in this branch.
❌ New vulnerabilities:
CVE | Severity | Vulnerable Library | Suggested Fix | Issue | |
---|---|---|---|---|---|
CVE-2024-57699Path to dependency file: /build.gradle Path to vulnerable library: /tmp/containerbase/cache/.gradle/caches/modules-2/files-2.1/net.minidev/json-smart/2.5.0/57a64f421b472849c40e77d2e7cce3a141b41e99/json-smart-2.5.0.jar Dependency Hierarchy: -> json-path-2.9.0.jar (Root Library) -> ❌ json-smart-2.5.0.jar (Vulnerable Library) |
7.5 | json-smart-2.5.0.jar | None |
Base branch total remaining vulnerabilities: 0
Base branch commit: c22ba172219f1b908b6642af72507e8a1324afbe
Total libraries scanned: 130
Scan token: 40fe7152131248c8bedd57ace7830ecc
Loading