Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

DPC-4571: Mark organizations configuration complete when configuration complete #2524

Merged
merged 29 commits into from
Mar 21, 2025

Conversation

jdettmannnava
Copy link
Contributor

🎫 Ticket

https://jira.cms.gov/browse/DPC-4571

🛠 Changes

  • config_complete field added to ProviderOrganization
  • ProviderOrganization method to check if complete and update config_complete field
  • Async job to check if complete to ensure smooth flow
  • Controllers updated to have check run after configuration item added
  • Schedule to run check if complete once per week as sanity check

ℹ️ Context

We want to show users which orgs need credentials.

🧪 Validation

Automated and manual testing

christopher-maboh and others added 28 commits February 19, 2025 13:51
![snyk-top-banner](https://redirect.github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)


<h3>Snyk has created this PR to upgrade com.typesafe:config from 1.4.2
to 1.4.3.</h3>

:information_source: Keep your dependencies up-to-date. This makes it
easier to fix existing vulnerabilities and to more quickly identify and
fix newly disclosed vulnerabilities when they affect your project.

<hr/>


- The recommended version is **1 version** ahead of your current
version.

- The recommended version was released **a year ago**.



---

> [!IMPORTANT]
>
> - Check the changes in this PR to ensure they won't cause issues with
your project.
> - This PR was automatically created by Snyk using the credentials of a
real user.

---

**Note:** _You are seeing this because you or someone else with access
to this repository has authorized Snyk to open upgrade PRs._

**For more information:** <img
src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiJmN2IzN2I1OS1hY2M1LTQ4NGItYWViYS0xYWRmYmE3NzcyNWIiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6ImY3YjM3YjU5LWFjYzUtNDg0Yi1hZWJhLTFhZGZiYTc3NzI1YiJ9fQ=="
width="0" height="0"/>

> - 🧐 [View latest project
report](https://app.snyk.io/org/oeda/project/00aa2f93-25b7-4337-92d1-4e9bfa2b1411?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 📜 [Customise PR
templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates?utm_source=&utm_content=fix-pr-template)
> - 🛠 [Adjust upgrade PR
settings](https://app.snyk.io/org/oeda/project/00aa2f93-25b7-4337-92d1-4e9bfa2b1411/settings/integration?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 🔕 [Ignore this dependency or unsubscribe from future upgrade
PRs](https://app.snyk.io/org/oeda/project/00aa2f93-25b7-4337-92d1-4e9bfa2b1411/settings/integration?pkg&#x3D;com.typesafe:config&amp;utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr#auto-dep-upgrades)

[//]: #
'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"com.typesafe:config","from":"1.4.2","to":"1.4.3"}],"env":"prod","hasFixes":false,"isBreakingChange":false,"isMajorUpgrade":false,"issuesToFix":[],"prId":"f7b37b59-acc5-484b-aeba-1adfba77725b","prPublicId":"f7b37b59-acc5-484b-aeba-1adfba77725b","packageManager":"maven","priorityScoreList":[],"projectPublicId":"00aa2f93-25b7-4337-92d1-4e9bfa2b1411","projectUrl":"https://app.snyk.io/org/oeda/project/00aa2f93-25b7-4337-92d1-4e9bfa2b1411?utm_source=github&utm_medium=referral&page=upgrade-pr","prType":"upgrade","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":[],"type":"auto","upgrade":[],"upgradeInfo":{"versionsDiff":1,"publishedDate":"2023-10-17T10:04:39.000Z"},"vulns":[]}'

Co-authored-by: snyk-bot <[email protected]>
Co-authored-by: jdettmannnava <[email protected]>
…2430)

![snyk-top-banner](https://redirect.github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)


<h3>Snyk has created this PR to upgrade com.google.guava:guava from
32.0.0-jre to 32.1.3-jre.</h3>

:information_source: Keep your dependencies up-to-date. This makes it
easier to fix existing vulnerabilities and to more quickly identify and
fix newly disclosed vulnerabilities when they affect your project.

<hr/>


- The recommended version is **10 versions** ahead of your current
version.

- The recommended version was released **a year ago**.



---

> [!IMPORTANT]
>
> - Check the changes in this PR to ensure they won't cause issues with
your project.
> - This PR was automatically created by Snyk using the credentials of a
real user.

---

**Note:** _You are seeing this because you or someone else with access
to this repository has authorized Snyk to open upgrade PRs._

**For more information:** <img
src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiJjOWNkYjhhOS01NjY2LTQzNjYtYWU3YS0yZWZmY2RlYTBhNzMiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6ImM5Y2RiOGE5LTU2NjYtNDM2Ni1hZTdhLTJlZmZjZGVhMGE3MyJ9fQ=="
width="0" height="0"/>

> - 🧐 [View latest project
report](https://app.snyk.io/org/oeda/project/7fa221e3-f431-452f-a128-210ea3958e85?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 📜 [Customise PR
templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates?utm_source=&utm_content=fix-pr-template)
> - 🛠 [Adjust upgrade PR
settings](https://app.snyk.io/org/oeda/project/7fa221e3-f431-452f-a128-210ea3958e85/settings/integration?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 🔕 [Ignore this dependency or unsubscribe from future upgrade
PRs](https://app.snyk.io/org/oeda/project/7fa221e3-f431-452f-a128-210ea3958e85/settings/integration?pkg&#x3D;com.google.guava:guava&amp;utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr#auto-dep-upgrades)

[//]: #
'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"com.google.guava:guava","from":"32.0.0-jre","to":"32.1.3-jre"}],"env":"prod","hasFixes":false,"isBreakingChange":false,"isMajorUpgrade":false,"issuesToFix":[],"prId":"c9cdb8a9-5666-4366-ae7a-2effcdea0a73","prPublicId":"c9cdb8a9-5666-4366-ae7a-2effcdea0a73","packageManager":"maven","priorityScoreList":[],"projectPublicId":"7fa221e3-f431-452f-a128-210ea3958e85","projectUrl":"https://app.snyk.io/org/oeda/project/7fa221e3-f431-452f-a128-210ea3958e85?utm_source=github&utm_medium=referral&page=upgrade-pr","prType":"upgrade","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":[],"type":"auto","upgrade":[],"upgradeInfo":{"versionsDiff":10,"publishedDate":"2023-10-10T20:53:35.000Z"},"vulns":[]}'

Co-authored-by: snyk-bot <[email protected]>
Co-authored-by: jdettmannnava <[email protected]>
…2414)

![snyk-top-banner](https://redirect.github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)


<h3>Snyk has created this PR to upgrade org.testcontainers:postgresql
from 1.19.3 to 1.20.4.</h3>

:information_source: Keep your dependencies up-to-date. This makes it
easier to fix existing vulnerabilities and to more quickly identify and
fix newly disclosed vulnerabilities when they affect your project.

<hr/>


- The recommended version is **10 versions** ahead of your current
version.

- The recommended version was released **2 months ago**.



---

> [!IMPORTANT]
>
> - Check the changes in this PR to ensure they won't cause issues with
your project.
> - This PR was automatically created by Snyk using the credentials of a
real user.

---

**Note:** _You are seeing this because you or someone else with access
to this repository has authorized Snyk to open upgrade PRs._

**For more information:** <img
src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiI0ODI5MTFlNy1mMzlhLTQ2MDYtYjMzMC1hNzkxNDJmZDczZjYiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6IjQ4MjkxMWU3LWYzOWEtNDYwNi1iMzMwLWE3OTE0MmZkNzNmNiJ9fQ=="
width="0" height="0"/>

> - 🧐 [View latest project
report](https://app.snyk.io/org/oeda/project/99c000fa-d6f4-46b8-b813-631ef8478e37?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 📜 [Customise PR
templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates?utm_source=&utm_content=fix-pr-template)
> - 🛠 [Adjust upgrade PR
settings](https://app.snyk.io/org/oeda/project/99c000fa-d6f4-46b8-b813-631ef8478e37/settings/integration?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 🔕 [Ignore this dependency or unsubscribe from future upgrade
PRs](https://app.snyk.io/org/oeda/project/99c000fa-d6f4-46b8-b813-631ef8478e37/settings/integration?pkg&#x3D;org.testcontainers:postgresql&amp;utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr#auto-dep-upgrades)

[//]: #
'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"org.testcontainers:postgresql","from":"1.19.3","to":"1.20.4"}],"env":"prod","hasFixes":false,"isBreakingChange":false,"isMajorUpgrade":false,"issuesToFix":[],"prId":"482911e7-f39a-4606-b330-a79142fd73f6","prPublicId":"482911e7-f39a-4606-b330-a79142fd73f6","packageManager":"maven","priorityScoreList":[],"projectPublicId":"99c000fa-d6f4-46b8-b813-631ef8478e37","projectUrl":"https://app.snyk.io/org/oeda/project/99c000fa-d6f4-46b8-b813-631ef8478e37?utm_source=github&utm_medium=referral&page=upgrade-pr","prType":"upgrade","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":[],"type":"auto","upgrade":[],"upgradeInfo":{"versionsDiff":10,"publishedDate":"2024-11-20T16:41:59.000Z"},"vulns":[]}'

Co-authored-by: snyk-bot <[email protected]>
Co-authored-by: jdettmannnava <[email protected]>
…#2413)

![snyk-top-banner](https://redirect.github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)


<h3>Snyk has created this PR to upgrade org.testcontainers:junit-jupiter
from 1.19.3 to 1.20.4.</h3>

:information_source: Keep your dependencies up-to-date. This makes it
easier to fix existing vulnerabilities and to more quickly identify and
fix newly disclosed vulnerabilities when they affect your project.

<hr/>


- The recommended version is **10 versions** ahead of your current
version.

- The recommended version was released **2 months ago**.



---

> [!IMPORTANT]
>
> - Check the changes in this PR to ensure they won't cause issues with
your project.
> - This PR was automatically created by Snyk using the credentials of a
real user.

---

**Note:** _You are seeing this because you or someone else with access
to this repository has authorized Snyk to open upgrade PRs._

**For more information:** <img
src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiJiMjliZTEyZS05OTYxLTRiOWEtYWU1Zi01OGYzNGFhNjQ2YmYiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6ImIyOWJlMTJlLTk5NjEtNGI5YS1hZTVmLTU4ZjM0YWE2NDZiZiJ9fQ=="
width="0" height="0"/>

> - 🧐 [View latest project
report](https://app.snyk.io/org/oeda/project/99c000fa-d6f4-46b8-b813-631ef8478e37?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 📜 [Customise PR
templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates?utm_source=&utm_content=fix-pr-template)
> - 🛠 [Adjust upgrade PR
settings](https://app.snyk.io/org/oeda/project/99c000fa-d6f4-46b8-b813-631ef8478e37/settings/integration?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 🔕 [Ignore this dependency or unsubscribe from future upgrade
PRs](https://app.snyk.io/org/oeda/project/99c000fa-d6f4-46b8-b813-631ef8478e37/settings/integration?pkg&#x3D;org.testcontainers:junit-jupiter&amp;utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr#auto-dep-upgrades)

[//]: #
'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"org.testcontainers:junit-jupiter","from":"1.19.3","to":"1.20.4"}],"env":"prod","hasFixes":false,"isBreakingChange":false,"isMajorUpgrade":false,"issuesToFix":[],"prId":"b29be12e-9961-4b9a-ae5f-58f34aa646bf","prPublicId":"b29be12e-9961-4b9a-ae5f-58f34aa646bf","packageManager":"maven","priorityScoreList":[],"projectPublicId":"99c000fa-d6f4-46b8-b813-631ef8478e37","projectUrl":"https://app.snyk.io/org/oeda/project/99c000fa-d6f4-46b8-b813-631ef8478e37?utm_source=github&utm_medium=referral&page=upgrade-pr","prType":"upgrade","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":[],"type":"auto","upgrade":[],"upgradeInfo":{"versionsDiff":10,"publishedDate":"2024-11-20T16:41:15.000Z"},"vulns":[]}'

Co-authored-by: snyk-bot <[email protected]>
Co-authored-by: jdettmannnava <[email protected]>
… 3.7.0 to 3.9.0 (#2412)

![snyk-top-banner](https://redirect.github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)


<h3>Snyk has created this PR to upgrade
io.hypersistence:hypersistence-utils-hibernate-55 from 3.7.0 to
3.9.0.</h3>

:information_source: Keep your dependencies up-to-date. This makes it
easier to fix existing vulnerabilities and to more quickly identify and
fix newly disclosed vulnerabilities when they affect your project.

<hr/>


- The recommended version is **12 versions** ahead of your current
version.

- The recommended version was released **3 months ago**.



---

> [!IMPORTANT]
>
> - Check the changes in this PR to ensure they won't cause issues with
your project.
> - This PR was automatically created by Snyk using the credentials of a
real user.

---

**Note:** _You are seeing this because you or someone else with access
to this repository has authorized Snyk to open upgrade PRs._

**For more information:** <img
src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiIzNzI5M2YzMC00MzBiLTQxMmQtYmEyMC1mZjA4MTZmMWZkNzQiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6IjM3MjkzZjMwLTQzMGItNDEyZC1iYTIwLWZmMDgxNmYxZmQ3NCJ9fQ=="
width="0" height="0"/>

> - 🧐 [View latest project
report](https://app.snyk.io/org/oeda/project/99c000fa-d6f4-46b8-b813-631ef8478e37?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 📜 [Customise PR
templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates?utm_source=&utm_content=fix-pr-template)
> - 🛠 [Adjust upgrade PR
settings](https://app.snyk.io/org/oeda/project/99c000fa-d6f4-46b8-b813-631ef8478e37/settings/integration?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 🔕 [Ignore this dependency or unsubscribe from future upgrade
PRs](https://app.snyk.io/org/oeda/project/99c000fa-d6f4-46b8-b813-631ef8478e37/settings/integration?pkg&#x3D;io.hypersistence:hypersistence-utils-hibernate-55&amp;utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr#auto-dep-upgrades)

[//]: #
'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"io.hypersistence:hypersistence-utils-hibernate-55","from":"3.7.0","to":"3.9.0"}],"env":"prod","hasFixes":false,"isBreakingChange":false,"isMajorUpgrade":false,"issuesToFix":[],"prId":"37293f30-430b-412d-ba20-ff0816f1fd74","prPublicId":"37293f30-430b-412d-ba20-ff0816f1fd74","packageManager":"maven","priorityScoreList":[],"projectPublicId":"99c000fa-d6f4-46b8-b813-631ef8478e37","projectUrl":"https://app.snyk.io/org/oeda/project/99c000fa-d6f4-46b8-b813-631ef8478e37?utm_source=github&utm_medium=referral&page=upgrade-pr","prType":"upgrade","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":[],"type":"auto","upgrade":[],"upgradeInfo":{"versionsDiff":12,"publishedDate":"2024-11-10T16:21:28.000Z"},"vulns":[]}'

Co-authored-by: snyk-bot <[email protected]>
Co-authored-by: jdettmannnava <[email protected]>
![snyk-top-banner](https://redirect.github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)


<h3>Snyk has created this PR to upgrade com.helger:ph-schematron from
5.3.0 to 5.6.5.</h3>

:information_source: Keep your dependencies up-to-date. This makes it
easier to fix existing vulnerabilities and to more quickly identify and
fix newly disclosed vulnerabilities when they affect your project.

<hr/>


- The recommended version is **9 versions** ahead of your current
version.

- The recommended version was released **4 years ago**.



---

> [!IMPORTANT]
>
> - Check the changes in this PR to ensure they won't cause issues with
your project.
> - This PR was automatically created by Snyk using the credentials of a
real user.

---

**Note:** _You are seeing this because you or someone else with access
to this repository has authorized Snyk to open upgrade PRs._

**For more information:** <img
src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiIzN2QyYzIyNy1jOTY3LTQ1YjYtYjE3Zi05NTkyZDI2ZTNlOGUiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6IjM3ZDJjMjI3LWM5NjctNDViNi1iMTdmLTk1OTJkMjZlM2U4ZSJ9fQ=="
width="0" height="0"/>

> - 🧐 [View latest project
report](https://app.snyk.io/org/oeda/project/7fa221e3-f431-452f-a128-210ea3958e85?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 📜 [Customise PR
templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates?utm_source=&utm_content=fix-pr-template)
> - 🛠 [Adjust upgrade PR
settings](https://app.snyk.io/org/oeda/project/7fa221e3-f431-452f-a128-210ea3958e85/settings/integration?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 🔕 [Ignore this dependency or unsubscribe from future upgrade
PRs](https://app.snyk.io/org/oeda/project/7fa221e3-f431-452f-a128-210ea3958e85/settings/integration?pkg&#x3D;com.helger:ph-schematron&amp;utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr#auto-dep-upgrades)

[//]: #
'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"com.helger:ph-schematron","from":"5.3.0","to":"5.6.5"}],"env":"prod","hasFixes":false,"isBreakingChange":false,"isMajorUpgrade":false,"issuesToFix":[],"prId":"37d2c227-c967-45b6-b17f-9592d26e3e8e","prPublicId":"37d2c227-c967-45b6-b17f-9592d26e3e8e","packageManager":"maven","priorityScoreList":[],"projectPublicId":"7fa221e3-f431-452f-a128-210ea3958e85","projectUrl":"https://app.snyk.io/org/oeda/project/7fa221e3-f431-452f-a128-210ea3958e85?utm_source=github&utm_medium=referral&page=upgrade-pr","prType":"upgrade","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":[],"type":"auto","upgrade":[],"upgradeInfo":{"versionsDiff":9,"publishedDate":"2020-11-19T11:01:24.000Z"},"vulns":[]}'

Co-authored-by: snyk-bot <[email protected]>
Co-authored-by: jdettmannnava <[email protected]>
…2390)

![snyk-top-banner](https://redirect.github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)


<h3>Snyk has created this PR to upgrade
org.apache.jmeter:ApacheJMeter_core from 5.5 to 5.6.3.</h3>

:information_source: Keep your dependencies up-to-date. This makes it
easier to fix existing vulnerabilities and to more quickly identify and
fix newly disclosed vulnerabilities when they affect your project.

<hr/>


- The recommended version is **4 versions** ahead of your current
version.

- The recommended version was released **a year ago**.

#### Issues fixed by the recommended upgrade:

|  | Issue | Score | Exploit Maturity |

:-------------------------:|:-------------------------|:-------------------------|:-------------------------
![medium
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png
'medium severity') | Information
Exposure<br/>[SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3063442](https://snyk.io/vuln/SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3063442)
| **45** | No Known Exploit
![critical
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/c.png
'critical severity') | Arbitrary Code
Execution<br/>[SNYK-JAVA-XALAN-2953385](https://snyk.io/vuln/SNYK-JAVA-XALAN-2953385)
| **45** | Proof of Concept
![high
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/h.png
'high severity') | Server-side Request Forgery
(SSRF)<br/>[SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3031728](https://snyk.io/vuln/SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3031728)
| **45** | No Known Exploit
![high
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/h.png
'high severity') | Server-side Request Forgery
(SSRF)<br/>[SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3031729](https://snyk.io/vuln/SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3031729)
| **45** | No Known Exploit
![high
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/h.png
'high severity') | Server-side Request Forgery
(SSRF)<br/>[SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3031730](https://snyk.io/vuln/SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3031730)
| **45** | Proof of Concept
![medium
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png
'medium severity') | Regular Expression Denial of Service
(ReDoS)<br/>[SNYK-JAVA-ORGAPACHETIKA-2936441](https://snyk.io/vuln/SNYK-JAVA-ORGAPACHETIKA-2936441)
| **45** | No Known Exploit
![medium
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png
'medium severity') | Remote Code Execution
(RCE)<br/>[SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3063691](https://snyk.io/vuln/SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3063691)
| **45** | No Known Exploit



---

> [!IMPORTANT]
>
> - Check the changes in this PR to ensure they won't cause issues with
your project.
> - This PR was automatically created by Snyk using the credentials of a
real user.
> - Max score is 1000. Note that the real score may have changed since
the PR was raised.

---

**Note:** _You are seeing this because you or someone else with access
to this repository has authorized Snyk to open upgrade PRs._

**For more information:** <img
src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiJjNTgyMTJjMC0xNmM2LTQ2NGEtYWNkNC00NmQ4OWQ1N2Q2NDIiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6ImM1ODIxMmMwLTE2YzYtNDY0YS1hY2Q0LTQ2ZDg5ZDU3ZDY0MiJ9fQ=="
width="0" height="0"/>

> - 🧐 [View latest project
report](https://app.snyk.io/org/oeda/project/5f0ecec2-51e9-4b23-8b09-1df89376b464?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 📜 [Customise PR
templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates?utm_source=&utm_content=fix-pr-template)
> - 🛠 [Adjust upgrade PR
settings](https://app.snyk.io/org/oeda/project/5f0ecec2-51e9-4b23-8b09-1df89376b464/settings/integration?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 🔕 [Ignore this dependency or unsubscribe from future upgrade
PRs](https://app.snyk.io/org/oeda/project/5f0ecec2-51e9-4b23-8b09-1df89376b464/settings/integration?pkg&#x3D;org.apache.jmeter:ApacheJMeter_core&amp;utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr#auto-dep-upgrades)

[//]: #
'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"org.apache.jmeter:ApacheJMeter_core","from":"5.5","to":"5.6.3"}],"env":"prod","hasFixes":true,"isBreakingChange":false,"isMajorUpgrade":false,"issuesToFix":["SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3063442","SNYK-JAVA-XALAN-2953385","SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3031728","SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3031729","SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3031730","SNYK-JAVA-ORGAPACHETIKA-2936441","SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3063691"],"prId":"c58212c0-16c6-464a-acd4-46d89d57d642","prPublicId":"c58212c0-16c6-464a-acd4-46d89d57d642","packageManager":"maven","priorityScoreList":[45,260,107,107,238,45,80],"projectPublicId":"5f0ecec2-51e9-4b23-8b09-1df89376b464","projectUrl":"https://app.snyk.io/org/oeda/project/5f0ecec2-51e9-4b23-8b09-1df89376b464?utm_source=github&utm_medium=referral&page=upgrade-pr","prType":"upgrade","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":["priorityScore"],"type":"auto","upgrade":["SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3063442","SNYK-JAVA-XALAN-2953385","SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3031728","SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3031729","SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3031730","SNYK-JAVA-ORGAPACHETIKA-2936441","SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3063691"],"upgradeInfo":{"versionsDiff":4,"publishedDate":"2024-01-02T15:43:34.000Z"},"vulns":["SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3063442","SNYK-JAVA-XALAN-2953385","SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3031728","SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3031729","SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3031730","SNYK-JAVA-ORGAPACHETIKA-2936441","SNYK-JAVA-ORGAPACHEXMLGRAPHICS-3063691"]}'

Co-authored-by: snyk-bot <[email protected]>
Co-authored-by: jdettmannnava <[email protected]>
…2470)

![snyk-top-banner](https://redirect.github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)


<h3>Snyk has created this PR to upgrade ca.uhn.hapi.fhir:hapi-fhir-base
from 7.6.0 to 7.6.1.</h3>

:information_source: Keep your dependencies up-to-date. This makes it
easier to fix existing vulnerabilities and to more quickly identify and
fix newly disclosed vulnerabilities when they affect your project.

<hr/>


- The recommended version is **1 version** ahead of your current
version.

- The recommended version was released **2 months ago**.



---

> [!IMPORTANT]
>
> - Check the changes in this PR to ensure they won't cause issues with
your project.
> - This PR was automatically created by Snyk using the credentials of a
real user.

---

**Note:** _You are seeing this because you or someone else with access
to this repository has authorized Snyk to open upgrade PRs._

**For more information:** <img
src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiI2NzY3NWU5Mi1lZWE2LTQ5NzItOGIwNS1hZDRmNTIwYmM2ZGIiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6IjY3Njc1ZTkyLWVlYTYtNDk3Mi04YjA1LWFkNGY1MjBiYzZkYiJ9fQ=="
width="0" height="0"/>

> - 🧐 [View latest project
report](https://app.snyk.io/org/oeda/project/d576f727-1e9e-4076-b2d9-35e89f5fb31d?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 📜 [Customise PR
templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates?utm_source=&utm_content=fix-pr-template)
> - 🛠 [Adjust upgrade PR
settings](https://app.snyk.io/org/oeda/project/d576f727-1e9e-4076-b2d9-35e89f5fb31d/settings/integration?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 🔕 [Ignore this dependency or unsubscribe from future upgrade
PRs](https://app.snyk.io/org/oeda/project/d576f727-1e9e-4076-b2d9-35e89f5fb31d/settings/integration?pkg&#x3D;ca.uhn.hapi.fhir:hapi-fhir-base&amp;utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr#auto-dep-upgrades)

[//]: #
'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"ca.uhn.hapi.fhir:hapi-fhir-base","from":"7.6.0","to":"7.6.1"}],"env":"prod","hasFixes":false,"isBreakingChange":false,"isMajorUpgrade":false,"issuesToFix":[],"prId":"67675e92-eea6-4972-8b05-ad4f520bc6db","prPublicId":"67675e92-eea6-4972-8b05-ad4f520bc6db","packageManager":"maven","priorityScoreList":[],"projectPublicId":"d576f727-1e9e-4076-b2d9-35e89f5fb31d","projectUrl":"https://app.snyk.io/org/oeda/project/d576f727-1e9e-4076-b2d9-35e89f5fb31d?utm_source=github&utm_medium=referral&page=upgrade-pr","prType":"upgrade","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":[],"type":"auto","upgrade":[],"upgradeInfo":{"versionsDiff":1,"publishedDate":"2024-12-20T07:54:14.000Z"},"vulns":[]}'

Co-authored-by: snyk-bot <[email protected]>
….0.12 (#2469)

![snyk-top-banner](https://redirect.github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)


<h3>Snyk has created this PR to upgrade
io.dropwizard:dropwizard-json-logging from 3.0.10 to 3.0.12.</h3>

:information_source: Keep your dependencies up-to-date. This makes it
easier to fix existing vulnerabilities and to more quickly identify and
fix newly disclosed vulnerabilities when they affect your project.

<hr/>


- The recommended version is **2 versions** ahead of your current
version.

- The recommended version was released **a month ago**.

#### Issues fixed by the recommended upgrade:

|  | Issue | Score | Exploit Maturity |

:-------------------------:|:-------------------------|:-------------------------|:-------------------------
![medium
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png
'medium severity') | Improper Neutralization of Special
Elements<br/>[SNYK-JAVA-CHQOSLOGBACK-8539866](https://snyk.io/vuln/SNYK-JAVA-CHQOSLOGBACK-8539866)
| **76** | No Known Exploit
![medium
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png
'medium severity') | Improper Neutralization of Special
Elements<br/>[SNYK-JAVA-CHQOSLOGBACK-8539867](https://snyk.io/vuln/SNYK-JAVA-CHQOSLOGBACK-8539867)
| **76** | No Known Exploit
![low
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/l.png
'low severity') | Server-side Request Forgery
(SSRF)<br/>[SNYK-JAVA-CHQOSLOGBACK-8539865](https://snyk.io/vuln/SNYK-JAVA-CHQOSLOGBACK-8539865)
| **76** | No Known Exploit



---

> [!IMPORTANT]
>
> - Check the changes in this PR to ensure they won't cause issues with
your project.
> - This PR was automatically created by Snyk using the credentials of a
real user.
> - Max score is 1000. Note that the real score may have changed since
the PR was raised.

---

**Note:** _You are seeing this because you or someone else with access
to this repository has authorized Snyk to open upgrade PRs._

**For more information:** <img
src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiJmMjQzMGIyMS1hM2Q2LTRiNmYtOGM5Mi04MWIyYjg3MWY3MGEiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6ImYyNDMwYjIxLWEzZDYtNGI2Zi04YzkyLTgxYjJiODcxZjcwYSJ9fQ=="
width="0" height="0"/>

> - 🧐 [View latest project
report](https://app.snyk.io/org/oeda/project/d576f727-1e9e-4076-b2d9-35e89f5fb31d?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 📜 [Customise PR
templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates?utm_source=&utm_content=fix-pr-template)
> - 🛠 [Adjust upgrade PR
settings](https://app.snyk.io/org/oeda/project/d576f727-1e9e-4076-b2d9-35e89f5fb31d/settings/integration?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 🔕 [Ignore this dependency or unsubscribe from future upgrade
PRs](https://app.snyk.io/org/oeda/project/d576f727-1e9e-4076-b2d9-35e89f5fb31d/settings/integration?pkg&#x3D;io.dropwizard:dropwizard-json-logging&amp;utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr#auto-dep-upgrades)

[//]: #
'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"io.dropwizard:dropwizard-json-logging","from":"3.0.10","to":"3.0.12"}],"env":"prod","hasFixes":true,"isBreakingChange":false,"isMajorUpgrade":false,"issuesToFix":["SNYK-JAVA-CHQOSLOGBACK-8539866","SNYK-JAVA-CHQOSLOGBACK-8539867","SNYK-JAVA-CHQOSLOGBACK-8539865"],"prId":"f2430b21-a3d6-4b6f-8c92-81b2b871f70a","prPublicId":"f2430b21-a3d6-4b6f-8c92-81b2b871f70a","packageManager":"maven","priorityScoreList":[61,61,76],"projectPublicId":"d576f727-1e9e-4076-b2d9-35e89f5fb31d","projectUrl":"https://app.snyk.io/org/oeda/project/d576f727-1e9e-4076-b2d9-35e89f5fb31d?utm_source=github&utm_medium=referral&page=upgrade-pr","prType":"upgrade","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":["priorityScore"],"type":"auto","upgrade":["SNYK-JAVA-CHQOSLOGBACK-8539866","SNYK-JAVA-CHQOSLOGBACK-8539867","SNYK-JAVA-CHQOSLOGBACK-8539865"],"upgradeInfo":{"versionsDiff":2,"publishedDate":"2025-01-15T22:29:01.000Z"},"vulns":["SNYK-JAVA-CHQOSLOGBACK-8539866","SNYK-JAVA-CHQOSLOGBACK-8539867","SNYK-JAVA-CHQOSLOGBACK-8539865"]}'

Co-authored-by: snyk-bot <[email protected]>
![snyk-top-banner](https://redirect.github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)


<h3>Snyk has created this PR to upgrade org.quartz-scheduler:quartz from
2.3.2 to 2.5.0.</h3>

:information_source: Keep your dependencies up-to-date. This makes it
easier to fix existing vulnerabilities and to more quickly identify and
fix newly disclosed vulnerabilities when they affect your project.

<hr/>


- The recommended version is **7 versions** ahead of your current
version.

- The recommended version was released **3 months ago**.



---

> [!IMPORTANT]
>
> - Check the changes in this PR to ensure they won't cause issues with
your project.
> - This PR was automatically created by Snyk using the credentials of a
real user.

---

**Note:** _You are seeing this because you or someone else with access
to this repository has authorized Snyk to open upgrade PRs._

**For more information:** <img
src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiJiYTI0MWM5NS1hZjMxLTQ4ZmQtOGU5OS1lNmY4ZTc5OTQyZDEiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6ImJhMjQxYzk1LWFmMzEtNDhmZC04ZTk5LWU2ZjhlNzk5NDJkMSJ9fQ=="
width="0" height="0"/>

> - 🧐 [View latest project
report](https://app.snyk.io/org/oeda/project/30bf8027-684e-437b-9836-e099eb4f25a8?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 📜 [Customise PR
templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates?utm_source=&utm_content=fix-pr-template)
> - 🛠 [Adjust upgrade PR
settings](https://app.snyk.io/org/oeda/project/30bf8027-684e-437b-9836-e099eb4f25a8/settings/integration?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 🔕 [Ignore this dependency or unsubscribe from future upgrade
PRs](https://app.snyk.io/org/oeda/project/30bf8027-684e-437b-9836-e099eb4f25a8/settings/integration?pkg&#x3D;org.quartz-scheduler:quartz&amp;utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr#auto-dep-upgrades)

[//]: #
'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"org.quartz-scheduler:quartz","from":"2.3.2","to":"2.5.0"}],"env":"prod","hasFixes":false,"isBreakingChange":false,"isMajorUpgrade":false,"issuesToFix":[],"prId":"ba241c95-af31-48fd-8e99-e6f8e79942d1","prPublicId":"ba241c95-af31-48fd-8e99-e6f8e79942d1","packageManager":"maven","priorityScoreList":[],"projectPublicId":"30bf8027-684e-437b-9836-e099eb4f25a8","projectUrl":"https://app.snyk.io/org/oeda/project/30bf8027-684e-437b-9836-e099eb4f25a8?utm_source=github&utm_medium=referral&page=upgrade-pr","prType":"upgrade","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":[],"type":"auto","upgrade":[],"upgradeInfo":{"versionsDiff":7,"publishedDate":"2024-11-12T23:12:15.000Z"},"vulns":[]}'

Co-authored-by: snyk-bot <[email protected]>
![snyk-top-banner](https://redirect.github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)


<h3>Snyk has created this PR to upgrade org.slf4j:slf4j-api from 2.0.12
to 2.0.16.</h3>

:information_source: Keep your dependencies up-to-date. This makes it
easier to fix existing vulnerabilities and to more quickly identify and
fix newly disclosed vulnerabilities when they affect your project.

<hr/>


- The recommended version is **4 versions** ahead of your current
version.

- The recommended version was released **6 months ago**.



---

> [!IMPORTANT]
>
> - Check the changes in this PR to ensure they won't cause issues with
your project.
> - This PR was automatically created by Snyk using the credentials of a
real user.

---

**Note:** _You are seeing this because you or someone else with access
to this repository has authorized Snyk to open upgrade PRs._

**For more information:** <img
src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiI1YzAwN2VhNi1jNTA0LTRkM2ItOTBmMS00ZTY5OTFmZjlkNGIiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6IjVjMDA3ZWE2LWM1MDQtNGQzYi05MGYxLTRlNjk5MWZmOWQ0YiJ9fQ=="
width="0" height="0"/>

> - 🧐 [View latest project
report](https://app.snyk.io/org/oeda/project/dcb0eaaf-050f-42d6-8906-22f861f5671b?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 📜 [Customise PR
templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates?utm_source=&utm_content=fix-pr-template)
> - 🛠 [Adjust upgrade PR
settings](https://app.snyk.io/org/oeda/project/dcb0eaaf-050f-42d6-8906-22f861f5671b/settings/integration?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 🔕 [Ignore this dependency or unsubscribe from future upgrade
PRs](https://app.snyk.io/org/oeda/project/dcb0eaaf-050f-42d6-8906-22f861f5671b/settings/integration?pkg&#x3D;org.slf4j:slf4j-api&amp;utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr#auto-dep-upgrades)

[//]: #
'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"org.slf4j:slf4j-api","from":"2.0.12","to":"2.0.16"}],"env":"prod","hasFixes":false,"isBreakingChange":false,"isMajorUpgrade":false,"issuesToFix":[],"prId":"5c007ea6-c504-4d3b-90f1-4e6991ff9d4b","prPublicId":"5c007ea6-c504-4d3b-90f1-4e6991ff9d4b","packageManager":"maven","priorityScoreList":[],"projectPublicId":"dcb0eaaf-050f-42d6-8906-22f861f5671b","projectUrl":"https://app.snyk.io/org/oeda/project/dcb0eaaf-050f-42d6-8906-22f861f5671b?utm_source=github&utm_medium=referral&page=upgrade-pr","prType":"upgrade","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":[],"type":"auto","upgrade":[],"upgradeInfo":{"versionsDiff":4,"publishedDate":"2024-08-10T09:15:06.000Z"},"vulns":[]}'

Co-authored-by: snyk-bot <[email protected]>
![snyk-top-banner](https://redirect.github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)


<h3>Snyk has created this PR to upgrade ansi-regex from 6.0.1 to
6.1.0.</h3>

:information_source: Keep your dependencies up-to-date. This makes it
easier to fix existing vulnerabilities and to more quickly identify and
fix newly disclosed vulnerabilities when they affect your project.

<hr/>


- The recommended version is **1 version** ahead of your current
version.

- The recommended version was released **6 months ago**.



<details>
<summary><b>Release notes</b></summary>
<br/>
  <details>
    <summary>Package name: <b>ansi-regex</b></summary>
    <ul>
      <li>
<b>6.1.0</b> - <a
href="https://redirect.github.com/chalk/ansi-regex/releases/tag/v6.1.0">2024-09-09</a></br><ul>
<li>Match cursorSave and cursorRestore escape codes (<a
class="issue-link js-issue-link" data-error-text="Failed to load title"
data-id="1037673499" data-permission-text="Title is private"
data-url="chalk/ansi-regex#45"
data-hovercard-type="pull_request"
data-hovercard-url="/chalk/ansi-regex/pull/45/hovercard"
href="https://redirect.github.com/chalk/ansi-regex/pull/45">#45</a>) <a
class="commit-link" data-hovercard-type="commit"
data-hovercard-url="https://github.com/chalk/ansi-regex/commit/02fa893d619d3da85411acc8fd4e2eea0e95a9d9/hovercard"
href="https://redirect.github.com/chalk/ansi-regex/commit/02fa893d619d3da85411acc8fd4e2eea0e95a9d9"><tt>02fa893</tt></a></li>
<li>Fix: Handle all valid ST characters (<a class="issue-link
js-issue-link" data-error-text="Failed to load title"
data-id="2505760732" data-permission-text="Title is private"
data-url="chalk/ansi-regex#58"
data-hovercard-type="pull_request"
data-hovercard-url="/chalk/ansi-regex/pull/58/hovercard"
href="https://redirect.github.com/chalk/ansi-regex/pull/58">#58</a>) <a
class="commit-link" data-hovercard-type="commit"
data-hovercard-url="https://github.com/chalk/ansi-regex/commit/9cba40dc3df00ee7316c01db4955d31ef7527012/hovercard"
href="https://redirect.github.com/chalk/ansi-regex/commit/9cba40dc3df00ee7316c01db4955d31ef7527012"><tt>9cba40d</tt></a></li>
</ul>
<p><a class="commit-link"
href="https://redirect.github.com/chalk/ansi-regex/compare/v6.0.1...v6.1.0"><tt>v6.0.1...v6.1.0</tt></a></p>
      </li>
      <li>
<b>6.0.1</b> - <a
href="https://redirect.github.com/chalk/ansi-regex/releases/tag/v6.0.1">2021-09-10</a></br><h3>Fixes</h3>
<ul>
<li>Fix <a href="https://en.wikipedia.org/wiki/ReDoS"
rel="nofollow">ReDoS</a> in certain cases (<a class="issue-link
js-issue-link" data-error-text="Failed to load title"
data-id="992144440" data-permission-text="Title is private"
data-url="chalk/ansi-regex#37"
data-hovercard-type="pull_request"
data-hovercard-url="/chalk/ansi-regex/pull/37/hovercard"
href="https://redirect.github.com/chalk/ansi-regex/pull/37">#37</a>)<br>
You are only really affected if you run the regex on untrusted user
input in a server context, which it's very unlikely anyone is doing,
since this regex is mainly used in command-line tools.</li>
</ul>
<p><a
href="https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-3807"
rel="nofollow">CVE-2021-3807</a></p>
<p><a class="commit-link"
href="https://redirect.github.com/chalk/ansi-regex/compare/v6.0.0...v6.0.1"><tt>v6.0.0...v6.0.1</tt></a></p>
<p>Thank you <a class="user-mention notranslate"
data-hovercard-type="user"
data-hovercard-url="/users/yetingli/hovercard"
data-octo-click="hovercard-link-click"
data-octo-dimensions="link_type:self"
href="https://redirect.github.com/yetingli">@ yetingli</a> for the patch
and reproduction case!</p>
      </li>
    </ul>
from <a
href="https://redirect.github.com/chalk/ansi-regex/releases">ansi-regex
GitHub release notes</a>
  </details>
</details>

---

> [!IMPORTANT]
>
> - Check the changes in this PR to ensure they won't cause issues with
your project.
> - This PR was automatically created by Snyk using the credentials of a
real user.

---

**Note:** _You are seeing this because you or someone else with access
to this repository has authorized Snyk to open upgrade PRs._

**For more information:** <img
src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiI2Yzg2ZmFlNi1kN2I5LTQyNmMtYWU3Yi03MzRhZmRmODZmYjAiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6IjZjODZmYWU2LWQ3YjktNDI2Yy1hZTdiLTczNGFmZGY4NmZiMCJ9fQ=="
width="0" height="0"/>

> - 🧐 [View latest project
report](https://app.snyk.io/org/oeda/project/1a7ace33-7e4c-495f-8b89-dccaf4d6617a?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 📜 [Customise PR
templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates?utm_source=&utm_content=fix-pr-template)
> - 🛠 [Adjust upgrade PR
settings](https://app.snyk.io/org/oeda/project/1a7ace33-7e4c-495f-8b89-dccaf4d6617a/settings/integration?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 🔕 [Ignore this dependency or unsubscribe from future upgrade
PRs](https://app.snyk.io/org/oeda/project/1a7ace33-7e4c-495f-8b89-dccaf4d6617a/settings/integration?pkg&#x3D;ansi-regex&amp;utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr#auto-dep-upgrades)

[//]: #
'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"ansi-regex","from":"6.0.1","to":"6.1.0"}],"env":"prod","hasFixes":false,"isBreakingChange":false,"isMajorUpgrade":false,"issuesToFix":[],"prId":"6c86fae6-d7b9-426c-ae7b-734afdf86fb0","prPublicId":"6c86fae6-d7b9-426c-ae7b-734afdf86fb0","packageManager":"npm","priorityScoreList":[],"projectPublicId":"1a7ace33-7e4c-495f-8b89-dccaf4d6617a","projectUrl":"https://app.snyk.io/org/oeda/project/1a7ace33-7e4c-495f-8b89-dccaf4d6617a?utm_source=github&utm_medium=referral&page=upgrade-pr","prType":"upgrade","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":[],"type":"auto","upgrade":[],"upgradeInfo":{"versionsDiff":1,"publishedDate":"2024-09-09T13:57:56.873Z"},"vulns":[]}'

Co-authored-by: snyk-bot <[email protected]>
![snyk-top-banner](https://redirect.github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)


<h3>Snyk has created this PR to upgrade ru.vyarus:dropwizard-guicey from
6.2.2 to 6.2.4.</h3>

:information_source: Keep your dependencies up-to-date. This makes it
easier to fix existing vulnerabilities and to more quickly identify and
fix newly disclosed vulnerabilities when they affect your project.

<hr/>


- The recommended version is **2 versions** ahead of your current
version.

- The recommended version was released **5 months ago**.



---

> [!IMPORTANT]
>
> - Check the changes in this PR to ensure they won't cause issues with
your project.
> - This PR was automatically created by Snyk using the credentials of a
real user.

---

**Note:** _You are seeing this because you or someone else with access
to this repository has authorized Snyk to open upgrade PRs._

**For more information:** <img
src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiI1ZWUyNDMzNC02ZTBhLTQzMTctYmVhOC01N2E1ODIwZjQ3ODgiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6IjVlZTI0MzM0LTZlMGEtNDMxNy1iZWE4LTU3YTU4MjBmNDc4OCJ9fQ=="
width="0" height="0"/>

> - 🧐 [View latest project
report](https://app.snyk.io/org/oeda/project/30bf8027-684e-437b-9836-e099eb4f25a8?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 📜 [Customise PR
templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates?utm_source=&utm_content=fix-pr-template)
> - 🛠 [Adjust upgrade PR
settings](https://app.snyk.io/org/oeda/project/30bf8027-684e-437b-9836-e099eb4f25a8/settings/integration?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 🔕 [Ignore this dependency or unsubscribe from future upgrade
PRs](https://app.snyk.io/org/oeda/project/30bf8027-684e-437b-9836-e099eb4f25a8/settings/integration?pkg&#x3D;ru.vyarus:dropwizard-guicey&amp;utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr#auto-dep-upgrades)

[//]: #
'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"ru.vyarus:dropwizard-guicey","from":"6.2.2","to":"6.2.4"}],"env":"prod","hasFixes":false,"isBreakingChange":false,"isMajorUpgrade":false,"issuesToFix":[],"prId":"5ee24334-6e0a-4317-bea8-57a5820f4788","prPublicId":"5ee24334-6e0a-4317-bea8-57a5820f4788","packageManager":"maven","priorityScoreList":[],"projectPublicId":"30bf8027-684e-437b-9836-e099eb4f25a8","projectUrl":"https://app.snyk.io/org/oeda/project/30bf8027-684e-437b-9836-e099eb4f25a8?utm_source=github&utm_medium=referral&page=upgrade-pr","prType":"upgrade","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":[],"type":"auto","upgrade":[],"upgradeInfo":{"versionsDiff":2,"publishedDate":"2024-09-14T15:27:48.000Z"},"vulns":[]}'

Co-authored-by: snyk-bot <[email protected]>
…2473)

![snyk-top-banner](https://redirect.github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)


<h3>Snyk has created this PR to upgrade org.apache.commons:commons-csv
from 1.12.0 to 1.13.0.</h3>

:information_source: Keep your dependencies up-to-date. This makes it
easier to fix existing vulnerabilities and to more quickly identify and
fix newly disclosed vulnerabilities when they affect your project.

<hr/>


- The recommended version is **1 version** ahead of your current
version.

- The recommended version was released **a month ago**.

#### Issues fixed by the recommended upgrade:

|  | Issue | Score | Exploit Maturity |

:-------------------------:|:-------------------------|:-------------------------|:-------------------------
![medium
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png
'medium severity') | Improper Neutralization of Special
Elements<br/>[SNYK-JAVA-CHQOSLOGBACK-8539866](https://snyk.io/vuln/SNYK-JAVA-CHQOSLOGBACK-8539866)
| **76** | No Known Exploit
![medium
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png
'medium severity') | Improper Neutralization of Special
Elements<br/>[SNYK-JAVA-CHQOSLOGBACK-8539867](https://snyk.io/vuln/SNYK-JAVA-CHQOSLOGBACK-8539867)
| **76** | No Known Exploit
![low
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/l.png
'low severity') | Server-side Request Forgery
(SSRF)<br/>[SNYK-JAVA-CHQOSLOGBACK-8539865](https://snyk.io/vuln/SNYK-JAVA-CHQOSLOGBACK-8539865)
| **76** | No Known Exploit



---

> [!IMPORTANT]
>
> - Check the changes in this PR to ensure they won't cause issues with
your project.
> - This PR was automatically created by Snyk using the credentials of a
real user.
> - Max score is 1000. Note that the real score may have changed since
the PR was raised.

---

**Note:** _You are seeing this because you or someone else with access
to this repository has authorized Snyk to open upgrade PRs._

**For more information:** <img
src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiI4NWU1NjNhOS0yYmEwLTRkNmUtYjNiOC0zMjQ5ZDNmMDgxNTAiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6Ijg1ZTU2M2E5LTJiYTAtNGQ2ZS1iM2I4LTMyNDlkM2YwODE1MCJ9fQ=="
width="0" height="0"/>

> - 🧐 [View latest project
report](https://app.snyk.io/org/oeda/project/d576f727-1e9e-4076-b2d9-35e89f5fb31d?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 📜 [Customise PR
templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates?utm_source=&utm_content=fix-pr-template)
> - 🛠 [Adjust upgrade PR
settings](https://app.snyk.io/org/oeda/project/d576f727-1e9e-4076-b2d9-35e89f5fb31d/settings/integration?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 🔕 [Ignore this dependency or unsubscribe from future upgrade
PRs](https://app.snyk.io/org/oeda/project/d576f727-1e9e-4076-b2d9-35e89f5fb31d/settings/integration?pkg&#x3D;org.apache.commons:commons-csv&amp;utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr#auto-dep-upgrades)

[//]: #
'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"org.apache.commons:commons-csv","from":"1.12.0","to":"1.13.0"}],"env":"prod","hasFixes":true,"isBreakingChange":false,"isMajorUpgrade":false,"issuesToFix":["SNYK-JAVA-CHQOSLOGBACK-8539866","SNYK-JAVA-CHQOSLOGBACK-8539867","SNYK-JAVA-CHQOSLOGBACK-8539865"],"prId":"85e563a9-2ba0-4d6e-b3b8-3249d3f08150","prPublicId":"85e563a9-2ba0-4d6e-b3b8-3249d3f08150","packageManager":"maven","priorityScoreList":[61,61,76],"projectPublicId":"d576f727-1e9e-4076-b2d9-35e89f5fb31d","projectUrl":"https://app.snyk.io/org/oeda/project/d576f727-1e9e-4076-b2d9-35e89f5fb31d?utm_source=github&utm_medium=referral&page=upgrade-pr","prType":"upgrade","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":["priorityScore"],"type":"auto","upgrade":["SNYK-JAVA-CHQOSLOGBACK-8539866","SNYK-JAVA-CHQOSLOGBACK-8539867","SNYK-JAVA-CHQOSLOGBACK-8539865"],"upgradeInfo":{"versionsDiff":1,"publishedDate":"2025-01-08T13:52:40.000Z"},"vulns":["SNYK-JAVA-CHQOSLOGBACK-8539866","SNYK-JAVA-CHQOSLOGBACK-8539867","SNYK-JAVA-CHQOSLOGBACK-8539865"]}'

Co-authored-by: snyk-bot <[email protected]>
…7.Final (#2474)

![snyk-top-banner](https://redirect.github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)


<h3>Snyk has created this PR to upgrade io.netty:netty-codec-socks from
4.1.90.Final to 4.1.117.Final.</h3>

:information_source: Keep your dependencies up-to-date. This makes it
easier to fix existing vulnerabilities and to more quickly identify and
fix newly disclosed vulnerabilities when they affect your project.

<hr/>


- The recommended version is **27 versions** ahead of your current
version.

- The recommended version was released **a month ago**.

#### Issues fixed by the recommended upgrade:

|  | Issue | Score | Exploit Maturity |

:-------------------------:|:-------------------------|:-------------------------|:-------------------------
![medium
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png
'medium severity') | Improper Neutralization of Special
Elements<br/>[SNYK-JAVA-CHQOSLOGBACK-8539866](https://snyk.io/vuln/SNYK-JAVA-CHQOSLOGBACK-8539866)
| **76** | No Known Exploit
![medium
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png
'medium severity') | Improper Neutralization of Special
Elements<br/>[SNYK-JAVA-CHQOSLOGBACK-8539867](https://snyk.io/vuln/SNYK-JAVA-CHQOSLOGBACK-8539867)
| **76** | No Known Exploit
![medium
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png
'medium severity') | Denial of Service
(DoS)<br/>[SNYK-JAVA-IONETTY-8367012](https://snyk.io/vuln/SNYK-JAVA-IONETTY-8367012)
| **76** | Proof of Concept
![low
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/l.png
'low severity') | Server-side Request Forgery
(SSRF)<br/>[SNYK-JAVA-CHQOSLOGBACK-8539865](https://snyk.io/vuln/SNYK-JAVA-CHQOSLOGBACK-8539865)
| **76** | No Known Exploit



---

> [!IMPORTANT]
>
> - Check the changes in this PR to ensure they won't cause issues with
your project.
> - This PR was automatically created by Snyk using the credentials of a
real user.
> - Max score is 1000. Note that the real score may have changed since
the PR was raised.

---

**Note:** _You are seeing this because you or someone else with access
to this repository has authorized Snyk to open upgrade PRs._

**For more information:** <img
src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiIzZDdhZjA2NS04OTc5LTRjNGItYjc5YS1mNzEyYjRjYzliOGMiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6IjNkN2FmMDY1LTg5NzktNGM0Yi1iNzlhLWY3MTJiNGNjOWI4YyJ9fQ=="
width="0" height="0"/>

> - 🧐 [View latest project
report](https://app.snyk.io/org/oeda/project/ae6d1922-d85f-4cb5-b481-b40c5d93982c?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 📜 [Customise PR
templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates?utm_source=&utm_content=fix-pr-template)
> - 🛠 [Adjust upgrade PR
settings](https://app.snyk.io/org/oeda/project/ae6d1922-d85f-4cb5-b481-b40c5d93982c/settings/integration?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 🔕 [Ignore this dependency or unsubscribe from future upgrade
PRs](https://app.snyk.io/org/oeda/project/ae6d1922-d85f-4cb5-b481-b40c5d93982c/settings/integration?pkg&#x3D;io.netty:netty-codec-socks&amp;utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr#auto-dep-upgrades)

[//]: #
'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"io.netty:netty-codec-socks","from":"4.1.90.Final","to":"4.1.117.Final"}],"env":"prod","hasFixes":true,"isBreakingChange":false,"isMajorUpgrade":false,"issuesToFix":["SNYK-JAVA-CHQOSLOGBACK-8539866","SNYK-JAVA-CHQOSLOGBACK-8539867","SNYK-JAVA-IONETTY-8367012","SNYK-JAVA-CHQOSLOGBACK-8539865"],"prId":"3d7af065-8979-4c4b-b79a-f712b4cc9b8c","prPublicId":"3d7af065-8979-4c4b-b79a-f712b4cc9b8c","packageManager":"maven","priorityScoreList":[61,61,130,76],"projectPublicId":"ae6d1922-d85f-4cb5-b481-b40c5d93982c","projectUrl":"https://app.snyk.io/org/oeda/project/ae6d1922-d85f-4cb5-b481-b40c5d93982c?utm_source=github&utm_medium=referral&page=upgrade-pr","prType":"upgrade","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":["priorityScore"],"type":"auto","upgrade":["SNYK-JAVA-CHQOSLOGBACK-8539866","SNYK-JAVA-CHQOSLOGBACK-8539867","SNYK-JAVA-IONETTY-8367012","SNYK-JAVA-CHQOSLOGBACK-8539865"],"upgradeInfo":{"versionsDiff":27,"publishedDate":"2025-01-14T07:27:44.000Z"},"vulns":["SNYK-JAVA-CHQOSLOGBACK-8539866","SNYK-JAVA-CHQOSLOGBACK-8539867","SNYK-JAVA-IONETTY-8367012","SNYK-JAVA-CHQOSLOGBACK-8539865"]}'

Co-authored-by: snyk-bot <[email protected]>
….117.Final (#2475)

![snyk-top-banner](https://redirect.github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)


<h3>Snyk has created this PR to upgrade io.netty:netty-handler-proxy
from 4.1.107.Final to 4.1.117.Final.</h3>

:information_source: Keep your dependencies up-to-date. This makes it
easier to fix existing vulnerabilities and to more quickly identify and
fix newly disclosed vulnerabilities when they affect your project.

<hr/>


- The recommended version is **10 versions** ahead of your current
version.

- The recommended version was released **a month ago**.

#### Issues fixed by the recommended upgrade:

|  | Issue | Score | Exploit Maturity |

:-------------------------:|:-------------------------|:-------------------------|:-------------------------
![medium
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png
'medium severity') | Improper Neutralization of Special
Elements<br/>[SNYK-JAVA-CHQOSLOGBACK-8539866](https://snyk.io/vuln/SNYK-JAVA-CHQOSLOGBACK-8539866)
| **76** | No Known Exploit
![medium
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png
'medium severity') | Improper Neutralization of Special
Elements<br/>[SNYK-JAVA-CHQOSLOGBACK-8539867](https://snyk.io/vuln/SNYK-JAVA-CHQOSLOGBACK-8539867)
| **76** | No Known Exploit
![low
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/l.png
'low severity') | Server-side Request Forgery
(SSRF)<br/>[SNYK-JAVA-CHQOSLOGBACK-8539865](https://snyk.io/vuln/SNYK-JAVA-CHQOSLOGBACK-8539865)
| **76** | No Known Exploit



---

> [!IMPORTANT]
>
> - Check the changes in this PR to ensure they won't cause issues with
your project.
> - This PR was automatically created by Snyk using the credentials of a
real user.
> - Max score is 1000. Note that the real score may have changed since
the PR was raised.

---

**Note:** _You are seeing this because you or someone else with access
to this repository has authorized Snyk to open upgrade PRs._

**For more information:** <img
src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiI0MWQxMTI4ZS1hYjIyLTRiMjYtYmRiMi0xMTg4NDZmMDlmY2MiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6IjQxZDExMjhlLWFiMjItNGIyNi1iZGIyLTExODg0NmYwOWZjYyJ9fQ=="
width="0" height="0"/>

> - 🧐 [View latest project
report](https://app.snyk.io/org/oeda/project/ae6d1922-d85f-4cb5-b481-b40c5d93982c?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 📜 [Customise PR
templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates?utm_source=&utm_content=fix-pr-template)
> - 🛠 [Adjust upgrade PR
settings](https://app.snyk.io/org/oeda/project/ae6d1922-d85f-4cb5-b481-b40c5d93982c/settings/integration?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 🔕 [Ignore this dependency or unsubscribe from future upgrade
PRs](https://app.snyk.io/org/oeda/project/ae6d1922-d85f-4cb5-b481-b40c5d93982c/settings/integration?pkg&#x3D;io.netty:netty-handler-proxy&amp;utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr#auto-dep-upgrades)

[//]: #
'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"io.netty:netty-handler-proxy","from":"4.1.107.Final","to":"4.1.117.Final"}],"env":"prod","hasFixes":true,"isBreakingChange":false,"isMajorUpgrade":false,"issuesToFix":["SNYK-JAVA-CHQOSLOGBACK-8539866","SNYK-JAVA-CHQOSLOGBACK-8539867","SNYK-JAVA-CHQOSLOGBACK-8539865"],"prId":"41d1128e-ab22-4b26-bdb2-118846f09fcc","prPublicId":"41d1128e-ab22-4b26-bdb2-118846f09fcc","packageManager":"maven","priorityScoreList":[61,61,76],"projectPublicId":"ae6d1922-d85f-4cb5-b481-b40c5d93982c","projectUrl":"https://app.snyk.io/org/oeda/project/ae6d1922-d85f-4cb5-b481-b40c5d93982c?utm_source=github&utm_medium=referral&page=upgrade-pr","prType":"upgrade","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":["priorityScore"],"type":"auto","upgrade":["SNYK-JAVA-CHQOSLOGBACK-8539866","SNYK-JAVA-CHQOSLOGBACK-8539867","SNYK-JAVA-CHQOSLOGBACK-8539865"],"upgradeInfo":{"versionsDiff":10,"publishedDate":"2025-01-14T07:28:18.000Z"},"vulns":["SNYK-JAVA-CHQOSLOGBACK-8539866","SNYK-JAVA-CHQOSLOGBACK-8539867","SNYK-JAVA-CHQOSLOGBACK-8539865"]}'

Co-authored-by: snyk-bot <[email protected]>
…7.Final (#2476)

![snyk-top-banner](https://redirect.github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)


<h3>Snyk has created this PR to upgrade io.netty:netty-codec-http from
4.1.108.Final to 4.1.117.Final.</h3>

:information_source: Keep your dependencies up-to-date. This makes it
easier to fix existing vulnerabilities and to more quickly identify and
fix newly disclosed vulnerabilities when they affect your project.

<hr/>


- The recommended version is **9 versions** ahead of your current
version.

- The recommended version was released **a month ago**.

#### Issues fixed by the recommended upgrade:

|  | Issue | Score | Exploit Maturity |

:-------------------------:|:-------------------------|:-------------------------|:-------------------------
![medium
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png
'medium severity') | Improper Neutralization of Special
Elements<br/>[SNYK-JAVA-CHQOSLOGBACK-8539866](https://snyk.io/vuln/SNYK-JAVA-CHQOSLOGBACK-8539866)
| **76** | No Known Exploit
![medium
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png
'medium severity') | Improper Neutralization of Special
Elements<br/>[SNYK-JAVA-CHQOSLOGBACK-8539867](https://snyk.io/vuln/SNYK-JAVA-CHQOSLOGBACK-8539867)
| **76** | No Known Exploit
![low
severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/l.png
'low severity') | Server-side Request Forgery
(SSRF)<br/>[SNYK-JAVA-CHQOSLOGBACK-8539865](https://snyk.io/vuln/SNYK-JAVA-CHQOSLOGBACK-8539865)
| **76** | No Known Exploit



---

> [!IMPORTANT]
>
> - Check the changes in this PR to ensure they won't cause issues with
your project.
> - This PR was automatically created by Snyk using the credentials of a
real user.
> - Max score is 1000. Note that the real score may have changed since
the PR was raised.

---

**Note:** _You are seeing this because you or someone else with access
to this repository has authorized Snyk to open upgrade PRs._

**For more information:** <img
src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiJkYzIxNGJkMi04YzYwLTQ3ZjctOTRmMC1kNWQzZjk1ZDM3Y2IiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6ImRjMjE0YmQyLThjNjAtNDdmNy05NGYwLWQ1ZDNmOTVkMzdjYiJ9fQ=="
width="0" height="0"/>

> - 🧐 [View latest project
report](https://app.snyk.io/org/oeda/project/ae6d1922-d85f-4cb5-b481-b40c5d93982c?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 📜 [Customise PR
templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates?utm_source=&utm_content=fix-pr-template)
> - 🛠 [Adjust upgrade PR
settings](https://app.snyk.io/org/oeda/project/ae6d1922-d85f-4cb5-b481-b40c5d93982c/settings/integration?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 🔕 [Ignore this dependency or unsubscribe from future upgrade
PRs](https://app.snyk.io/org/oeda/project/ae6d1922-d85f-4cb5-b481-b40c5d93982c/settings/integration?pkg&#x3D;io.netty:netty-codec-http&amp;utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr#auto-dep-upgrades)

[//]: #
'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"io.netty:netty-codec-http","from":"4.1.108.Final","to":"4.1.117.Final"}],"env":"prod","hasFixes":true,"isBreakingChange":false,"isMajorUpgrade":false,"issuesToFix":["SNYK-JAVA-CHQOSLOGBACK-8539866","SNYK-JAVA-CHQOSLOGBACK-8539867","SNYK-JAVA-CHQOSLOGBACK-8539865"],"prId":"dc214bd2-8c60-47f7-94f0-d5d3f95d37cb","prPublicId":"dc214bd2-8c60-47f7-94f0-d5d3f95d37cb","packageManager":"maven","priorityScoreList":[61,61,76],"projectPublicId":"ae6d1922-d85f-4cb5-b481-b40c5d93982c","projectUrl":"https://app.snyk.io/org/oeda/project/ae6d1922-d85f-4cb5-b481-b40c5d93982c?utm_source=github&utm_medium=referral&page=upgrade-pr","prType":"upgrade","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":["priorityScore"],"type":"auto","upgrade":["SNYK-JAVA-CHQOSLOGBACK-8539866","SNYK-JAVA-CHQOSLOGBACK-8539867","SNYK-JAVA-CHQOSLOGBACK-8539865"],"upgradeInfo":{"versionsDiff":9,"publishedDate":"2025-01-14T07:55:07.000Z"},"vulns":["SNYK-JAVA-CHQOSLOGBACK-8539866","SNYK-JAVA-CHQOSLOGBACK-8539867","SNYK-JAVA-CHQOSLOGBACK-8539865"]}'

Co-authored-by: snyk-bot <[email protected]>
![snyk-top-banner](https://redirect.github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)


<h3>Snyk has created this PR to upgrade ru.vyarus:dropwizard-guicey from
6.2.2 to 6.2.4.</h3>

:information_source: Keep your dependencies up-to-date. This makes it
easier to fix existing vulnerabilities and to more quickly identify and
fix newly disclosed vulnerabilities when they affect your project.

<hr/>


- The recommended version is **2 versions** ahead of your current
version.

- The recommended version was released **5 months ago**.



---

> [!IMPORTANT]
>
> - Check the changes in this PR to ensure they won't cause issues with
your project.
> - This PR was automatically created by Snyk using the credentials of a
real user.

---

**Note:** _You are seeing this because you or someone else with access
to this repository has authorized Snyk to open upgrade PRs._

**For more information:** <img
src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiJlYzgyNzdiMC0yYzI0LTQ2MmUtODIwNy0wOGFlZTlmMWRjOWMiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6ImVjODI3N2IwLTJjMjQtNDYyZS04MjA3LTA4YWVlOWYxZGM5YyJ9fQ=="
width="0" height="0"/>

> - 🧐 [View latest project
report](https://app.snyk.io/org/oeda/project/dcb0eaaf-050f-42d6-8906-22f861f5671b?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 📜 [Customise PR
templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates?utm_source=&utm_content=fix-pr-template)
> - 🛠 [Adjust upgrade PR
settings](https://app.snyk.io/org/oeda/project/dcb0eaaf-050f-42d6-8906-22f861f5671b/settings/integration?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 🔕 [Ignore this dependency or unsubscribe from future upgrade
PRs](https://app.snyk.io/org/oeda/project/dcb0eaaf-050f-42d6-8906-22f861f5671b/settings/integration?pkg&#x3D;ru.vyarus:dropwizard-guicey&amp;utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr#auto-dep-upgrades)

[//]: #
'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"ru.vyarus:dropwizard-guicey","from":"6.2.2","to":"6.2.4"}],"env":"prod","hasFixes":false,"isBreakingChange":false,"isMajorUpgrade":false,"issuesToFix":[],"prId":"ec8277b0-2c24-462e-8207-08aee9f1dc9c","prPublicId":"ec8277b0-2c24-462e-8207-08aee9f1dc9c","packageManager":"maven","priorityScoreList":[],"projectPublicId":"dcb0eaaf-050f-42d6-8906-22f861f5671b","projectUrl":"https://app.snyk.io/org/oeda/project/dcb0eaaf-050f-42d6-8906-22f861f5671b?utm_source=github&utm_medium=referral&page=upgrade-pr","prType":"upgrade","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":[],"type":"auto","upgrade":[],"upgradeInfo":{"versionsDiff":2,"publishedDate":"2024-09-14T15:27:48.000Z"},"vulns":[]}'

Co-authored-by: snyk-bot <[email protected]>
![snyk-top-banner](https://redirect.github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)


<h3>Snyk has created this PR to upgrade newman from 6.1.3 to 6.2.1.</h3>

:information_source: Keep your dependencies up-to-date. This makes it
easier to fix existing vulnerabilities and to more quickly identify and
fix newly disclosed vulnerabilities when they affect your project.

<hr/>


- The recommended version is **2 versions** ahead of your current
version.

- The recommended version was released **6 months ago**.



<details>
<summary><b>Release notes</b></summary>
<br/>
  <details>
    <summary>Package name: <b>newman</b></summary>
    <ul>
      <li>
<b>6.2.1</b> - <a
href="https://redirect.github.com/postmanlabs/newman/releases/tag/v6.2.1">2024-08-20</a></br><p>Release
v6.2.1</p>
      </li>
      <li>
<b>6.2.0</b> - <a
href="https://redirect.github.com/postmanlabs/newman/releases/tag/v6.2.0">2024-08-16</a></br><p>Release
v6.2.0</p>
      </li>
      <li>
<b>6.1.3</b> - <a
href="https://redirect.github.com/postmanlabs/newman/releases/tag/v6.1.3">2024-06-10</a></br><p>Release
v6.1.3</p>
      </li>
    </ul>
from <a
href="https://redirect.github.com/postmanlabs/newman/releases">newman
GitHub release notes</a>
  </details>
</details>

---

> [!IMPORTANT]
>
> - Check the changes in this PR to ensure they won't cause issues with
your project.
> - This PR was automatically created by Snyk using the credentials of a
real user.

---

**Note:** _You are seeing this because you or someone else with access
to this repository has authorized Snyk to open upgrade PRs._

**For more information:** <img
src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiJkZWI5ODA5Ni00MzI0LTRjMGItODA4OC0xMWE3Njc1Njk0YWQiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6ImRlYjk4MDk2LTQzMjQtNGMwYi04MDg4LTExYTc2NzU2OTRhZCJ9fQ=="
width="0" height="0"/>

> - 🧐 [View latest project
report](https://app.snyk.io/org/oeda/project/1a7ace33-7e4c-495f-8b89-dccaf4d6617a?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 📜 [Customise PR
templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates?utm_source=&utm_content=fix-pr-template)
> - 🛠 [Adjust upgrade PR
settings](https://app.snyk.io/org/oeda/project/1a7ace33-7e4c-495f-8b89-dccaf4d6617a/settings/integration?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr)
> - 🔕 [Ignore this dependency or unsubscribe from future upgrade
PRs](https://app.snyk.io/org/oeda/project/1a7ace33-7e4c-495f-8b89-dccaf4d6617a/settings/integration?pkg&#x3D;newman&amp;utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr#auto-dep-upgrades)

[//]: #
'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"newman","from":"6.1.3","to":"6.2.1"}],"env":"prod","hasFixes":false,"isBreakingChange":false,"isMajorUpgrade":false,"issuesToFix":[],"prId":"deb98096-4324-4c0b-8088-11a7675694ad","prPublicId":"deb98096-4324-4c0b-8088-11a7675694ad","packageManager":"npm","priorityScoreList":[],"projectPublicId":"1a7ace33-7e4c-495f-8b89-dccaf4d6617a","projectUrl":"https://app.snyk.io/org/oeda/project/1a7ace33-7e4c-495f-8b89-dccaf4d6617a?utm_source=github&utm_medium=referral&page=upgrade-pr","prType":"upgrade","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":[],"type":"auto","upgrade":[],"upgradeInfo":{"versionsDiff":2,"publishedDate":"2024-08-20T10:36:11.364Z"},"vulns":[]}'

Co-authored-by: snyk-bot <[email protected]>
Co-authored-by: MEspositoE14s <[email protected]>
# Conflicts:
#	dpc-bluebutton/pom.xml
@jdettmannnava jdettmannnava marked this pull request as ready for review March 20, 2025 14:50
response: default_get_ip_addresses['entities'].first)
post "/organizations/#{org.id}/ip_addresses", params: { label: 'Public IP 1', ip_address: '136.226.19.87' }
end
it 'does not check for complete of complete = true' do
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

nit-pick: "if* complete = true"?

Copy link
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

d'oh!
Fixing this gives a chance for a reset because ci keeps failing in the api...

Copy link
Contributor

@ashley-weaver ashley-weaver left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@jdettmannnava jdettmannnava merged commit d52771b into main Mar 21, 2025
8 checks passed
@jdettmannnava jdettmannnava deleted the jd/dpc-4571-mark-config-needed branch March 21, 2025 14:40
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

5 participants